NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
41713 | CVE-2013-6834 | The ql_eioctl function in sys/dev/qlxgbe/ql_ioctl.c in the kernel in FreeBSD 10 and earlier does not validate a certain size parameter, which allows local users to obtain sensitive information from kernel memory via a crafted ioctl call. | 2 | 4.9 | Medium | 2017-01-18 | 2014-03-04 | View | |
41969 | CVE-2013-7225 | Multiple SQL injection vulnerabilities in app/controllers/home_controller.rb in Fat Free CRM before 0.12.1 allow remote authenticated users to execute arbitrary SQL commands via (1) the homepage timeline feature or (2) the activity feature. | 2 | 6.5 | Medium | 2017-01-18 | 2014-01-03 | View | |
42225 | CVE-2012-0082 | Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.1.0.5, 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to affect integrity and availability via unknown vectors. | 2 | 5.5 | Medium | 2017-01-19 | 2012-01-30 | View | |
42737 | CVE-2012-0647 | WebKit in Apple Safari before 5.1.4 does not properly handle redirects in conjunction with HTTP authentication, which might allow remote web servers to capture credentials by logging the Authorization HTTP header. | 2 | 5 | Medium | 2017-01-19 | 2012-03-13 | View | |
43249 | CVE-2012-1252 | Cross-site scripting (XSS) vulnerability in RSSOwl before 2.1.1 allows remote attackers to inject arbitrary web script or HTML via a feed, a different vulnerability than CVE-2006-4760. | 2 | 4.3 | Medium | 2017-01-19 | 2012-06-05 | View |
Page 17156 of 17672, showing 5 records out of 88360 total, starting on record 85776, ending on 85780