NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
43506 | CVE-2012-1633 | Cross-site request forgery (CSRF) vulnerability in the Password Policy module before 6.x-1.4 and 7.x-1.0 beta3 for Drupal allows remote attackers to hijack the authentication of admistrative users for requests that unblock a user. | 2 | 6.8 | Medium | 2017-01-19 | 2012-09-21 | View | |
43762 | CVE-2012-1899 | Multiple cross-site scripting (XSS) vulnerabilities in webfolio/admin/users/edit in Webfolio CMS 1.1.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) First name, (2) Last name or (3) Email (required) fields. | 2 | 4.3 | Medium | 2017-01-19 | 2012-09-19 | View | |
45042 | CVE-2012-3447 | virt/disk/api.py in OpenStack Compute (Nova) 2012.1.x before 2012.1.2 and Folsom before Folsom-3 allows remote authenticated users to overwrite arbitrary files via a symlink attack on a file in an image that uses a symlink that is only readable by root. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-3361. | 2 | 4.9 | Medium | 2017-01-19 | 2012-08-21 | View | |
45298 | CVE-2012-3715 | Apple Safari before 6.0.1 makes http requests for https URIs in certain circumstances involving a paste into the address bar, which allows user-assisted remote attackers to obtain sensitive information by sniffing the network. | 2 | 4.3 | Medium | 2017-01-19 | 2013-03-22 | View | |
45554 | CVE-2012-4087 | A cluster setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands via invalid parameters, aka Bug ID CSCtg20793. | 2 | 5.1 | Medium | 2017-01-19 | 2016-09-22 | View |
Page 17194 of 17672, showing 5 records out of 88360 total, starting on record 85966, ending on 85970