NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
46585 | CVE-2012-5429 | The VPN driver in Cisco VPN Client on Windows does not properly interact with the kernel, which allows local users to cause a denial of service (kernel fault and system crash) via a crafted application, aka Bug ID CSCuc81669. | 2 | 4.6 | Medium | 2017-01-19 | 2013-01-18 | View | |
46841 | CVE-2012-5804 | The CyberSource module in Ubercart does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | 2 | 5.8 | Medium | 2017-01-19 | 2013-02-07 | View | |
47097 | CVE-2012-6274 | BigAntSoft BigAnt IM Message Server does not require authentication for file uploading, which allows remote attackers to create arbitrary files under AntServerDocDataPublic via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2013-02-26 | View | |
47353 | CVE-2009-0004 | Buffer overflow in Apple QuickTime before 7.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted MP3 audio file. | 2 | 9.3 | High | 2017-01-07 | 2011-03-07 | View | |
47609 | CVE-2009-0275 | Static code injection vulnerability in admin.php in Ryneezy phoSheezy 0.2 allows remote authenticated administrators to inject arbitrary PHP code into config/header via the header parameter. NOTE: this can be exploited by unauthenticated attackers by leveraging CVE-2009-0250. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 6.5 | Medium | 2017-01-07 | 2009-01-26 | View |
Page 16901 of 17672, showing 5 records out of 88360 total, starting on record 84501, ending on 84505