NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
45110  CVE-2012-3518  The networkstatus_parse_vote_from_string function in routerparse.c in Tor before 0.2.2.38 does not properly handle an invalid flavor name, which allows remote attackers to cause a denial of service (out-of-bounds read and daemon crash) via a crafted (1) vote document or (2) consensus document.    Medium  2017-01-19  2013-08-21  View
46134  CVE-2012-4866  Untrusted search path vulnerability in Xtreme RAT 3.5 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as the current working directory. NOTE: some of these details are obtained from third party information.    6.9  Medium  2017-01-19  2012-09-07  View
46390  CVE-2012-5180  The Opera Mobile application before 12.1 and Opera Mini application before 7.5 for Android do not properly implement the WebView class, which allows attackers to obtain sensitive information via a crafted application.    4.3  Medium  2017-01-19  2013-01-08  View
46902  CVE-2012-5886  The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 caches information about the authenticated user within the session state, which makes it easier for remote attackers to bypass authentication via vectors related to the session ID.    Medium  2017-01-19  2013-08-19  View
47158  CVE-2012-6452  Axway Secure Messenger before 6.5 Updated Release 7, as used in Axway Email Firewall, provides different responses to authentication requests depending on whether the user exists, which allows remote attackers to enumerate users via a series of requests.    Medium  2017-01-19  2014-05-28  View

Page 1968 of 17672, showing 5 records out of 88360 total, starting on record 9836, ending on 9840

Actions