NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
41479  CVE-2013-6421  The unpack_zip function in archive_unpacker.rb in the sprout gem 0.7.246 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a (1) filename or (2) path.    7.5  High  2017-01-18  2013-12-19  View
43015  CVE-2012-0980  SQL injection vulnerability in download.php in phux Download Manager allows remote attackers to execute arbitrary SQL commands via the file parameter.    7.5  High  2017-01-19  2012-02-08  View
44039  CVE-2012-2203  IBM Global Security Kit (aka GSKit) before 8.0.14.22, as used in IBM Rational Directory Server, IBM Tivoli Directory Server, and other products, uses the PKCS #12 file format for certificate objects without enforcing file integrity, which makes it easier for remote attackers to spoof SSL servers via vectors involving insertion of an arbitrary root Certification Authority (CA) certificate.    7.5  High  2017-01-19  2013-08-17  View
45063  CVE-2012-3470  Multiple SQL injection vulnerabilities in application/libraries/api/MY_Countries_Api_Object.php in the Ushahidi Platform before 2.5 allow remote attackers to execute arbitrary SQL commands via vectors related to _get_countries functions.    7.5  High  2017-01-19  2012-08-13  View
46343  CVE-2012-5131  Google Chrome before 23.0.1271.91 on Mac OS X does not properly mitigate improper rendering behavior in the Intel GPU driver, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.    7.5  High  2017-01-19  2013-08-17  View

Page 2018 of 17672, showing 5 records out of 88360 total, starting on record 10086, ending on 10090

Actions