NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
43506  CVE-2012-1633  Cross-site request forgery (CSRF) vulnerability in the Password Policy module before 6.x-1.4 and 7.x-1.0 beta3 for Drupal allows remote attackers to hijack the authentication of admistrative users for requests that unblock a user.    6.8  Medium  2017-01-19  2012-09-21  View
43762  CVE-2012-1899  Multiple cross-site scripting (XSS) vulnerabilities in webfolio/admin/users/edit in Webfolio CMS 1.1.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) First name, (2) Last name or (3) Email (required) fields.    4.3  Medium  2017-01-19  2012-09-19  View
45042  CVE-2012-3447  virt/disk/api.py in OpenStack Compute (Nova) 2012.1.x before 2012.1.2 and Folsom before Folsom-3 allows remote authenticated users to overwrite arbitrary files via a symlink attack on a file in an image that uses a symlink that is only readable by root. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-3361.    4.9  Medium  2017-01-19  2012-08-21  View
45298  CVE-2012-3715  Apple Safari before 6.0.1 makes http requests for https URIs in certain circumstances involving a paste into the address bar, which allows user-assisted remote attackers to obtain sensitive information by sniffing the network.    4.3  Medium  2017-01-19  2013-03-22  View
45554  CVE-2012-4087  A cluster setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands via invalid parameters, aka Bug ID CSCtg20793.    5.1  Medium  2017-01-19  2016-09-22  View

Page 17194 of 17672, showing 5 records out of 88360 total, starting on record 85966, ending on 85970

Actions