NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 45110 | CVE-2012-3518 | The networkstatus_parse_vote_from_string function in routerparse.c in Tor before 0.2.2.38 does not properly handle an invalid flavor name, which allows remote attackers to cause a denial of service (out-of-bounds read and daemon crash) via a crafted (1) vote document or (2) consensus document. | 2 | 5 | Medium | 2017-01-19 | 2013-08-21 | View | |
| 46134 | CVE-2012-4866 | Untrusted search path vulnerability in Xtreme RAT 3.5 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as the current working directory. NOTE: some of these details are obtained from third party information. | 2 | 6.9 | Medium | 2017-01-19 | 2012-09-07 | View | |
| 46390 | CVE-2012-5180 | The Opera Mobile application before 12.1 and Opera Mini application before 7.5 for Android do not properly implement the WebView class, which allows attackers to obtain sensitive information via a crafted application. | 2 | 4.3 | Medium | 2017-01-19 | 2013-01-08 | View | |
| 46902 | CVE-2012-5886 | The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 caches information about the authenticated user within the session state, which makes it easier for remote attackers to bypass authentication via vectors related to the session ID. | 2 | 5 | Medium | 2017-01-19 | 2013-08-19 | View | |
| 47158 | CVE-2012-6452 | Axway Secure Messenger before 6.5 Updated Release 7, as used in Axway Email Firewall, provides different responses to authentication requests depending on whether the user exists, which allows remote attackers to enumerate users via a series of requests. | 2 | 5 | Medium | 2017-01-19 | 2014-05-28 | View |
Page 1968 of 17672, showing 5 records out of 88360 total, starting on record 9836, ending on 9840