NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
41970 | CVE-2013-7226 | Integer overflow in the gdImageCrop function in ext/gd/gd.c in PHP 5.5.x before 5.5.9 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an imagecrop function call with a large x dimension value, leading to a heap-based buffer overflow. | 2 | 6.8 | Medium | 2017-01-18 | 2014-03-13 | View | |
42226 | CVE-2012-0083 | Unspecified vulnerability in the Oracle WebCenter Content component in Oracle Fusion Middleware 7.5.2, 10.1.3.5.1, 11.1.1.3, 11.1.1.4, and 11.1.1.5 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Search. | 2 | 6.4 | Medium | 2017-01-19 | 2012-01-30 | View | |
42482 | CVE-2012-0366 | Cisco Unity Connection before 7.1.3b(Su2) allows remote authenticated users to change the administrative password by leveraging the Help Desk Administrator role, aka Bug ID CSCtd45141. | 2 | 9 | High | 2017-01-19 | 2012-03-01 | View | |
42738 | CVE-2012-0648 | WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1. | 2 | 7.6 | High | 2017-01-19 | 2013-11-02 | View | |
42994 | CVE-2012-0944 | Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote attackers to install arbitrary packages via a man-in-the-middle attack. | 2 | 4.3 | Medium | 2017-01-19 | 2012-06-20 | View |
Page 16871 of 17672, showing 5 records out of 88360 total, starting on record 84351, ending on 84355