NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
45818 | CVE-2012-4427 | The gnome-shell plugin 3.4.1 in GNOME allows remote attackers to force the download and installation of arbitrary extensions from extensions.gnome.org via a crafted web page. | 2 | 6.8 | Medium | 2017-01-19 | 2012-10-02 | View | |
46074 | CVE-2012-4754 | Multiple untrusted search path vulnerabilities in MindManager 2012 10.0.493 allow local users to gain privileges via a Trojan horse (1) ssgp.dll or (2) dwmapi.dll file in the current working directory, as demonstrated by a directory that contains a .mmap file. NOTE: some of these details are obtained from third party information. | 2 | 6.3 | Medium | 2017-01-19 | 2012-09-06 | View | |
46586 | CVE-2012-5444 | Cisco TelePresence Video Communication Server (VCS) X7.0.3 does not properly process certain search rules, which allows remote attackers to create conferences via an unspecified Conductor request, aka Bug ID CSCub67989. | 2 | 5 | Medium | 2017-01-19 | 2013-01-29 | View | |
46842 | CVE-2012-5805 | The PayPal IPN functionality in Zen Cart does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, a different vulnerability than CVE-2012-5806. | 2 | 5.8 | Medium | 2017-01-19 | 2012-11-06 | View | |
47610 | CVE-2009-0276 | Cross-domain vulnerability in the V8 JavaScript engine in Google Chrome before 1.0.154.46 allows remote attackers to bypass the Same Origin Policy via a crafted script that accesses another frame and reads its full URL and possibly other sensitive information, or modifies the URL of this frame. | 2 | 5 | Medium | 2017-01-07 | 2009-02-04 | View |
Page 17492 of 17672, showing 5 records out of 88360 total, starting on record 87456, ending on 87460