NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
44096  CVE-2012-2280  EMC RSA Authentication Manager 7.1 before SP4 P14 and RSA SecurID Appliance 3.0 before SP4 P14 do not properly use frames, which allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a "Cross frame scripting vulnerability."    Medium  2017-01-19  2012-07-16  View
44608  CVE-2012-2917  Cross-site scripting (XSS) vulnerability in the Share and Follow plugin 1.80.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via the CDN API Key (cnd-key) in a share-and-follow-menu page to wp-admin/admin.php.    4.3  Medium  2017-01-19  2012-05-22  View
45376  CVE-2012-3837  Multiple cross-site scripting (XSS) vulnerabilities in apps/users/registration.template.php in Baby Gekko 1.2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) username, (2) email_address, (3) password, (4) password_verify, (5) firstname, (6) lastname, or (7) verification_code parameter to users/action/register. NOTE: some of these details are obtained from third party information.    4.3  Medium  2017-01-19  2012-07-17  View
45888  CVE-2012-4506  Directory traversal vulnerability in gitolite 3.x before 3.1, when wild card repositories and a pattern matching "../" are enabled, allows remote authenticated users to create arbitrary repositories and possibly perform other actions via a .. (dot dot) in a repository name.    4.6  Medium  2017-01-19  2012-10-23  View
46400  CVE-2012-5192  Directory traversal vulnerability in gmap/view_overlay.php in Bitweaver 2.8.1 and earlier allows remote attackers to read arbitrary files via """%2F" (dot dot encoded slash) sequences in the overlay_type parameter.    Medium  2017-01-19  2014-02-21  View

Page 2330 of 17672, showing 5 records out of 88360 total, starting on record 11646, ending on 11650

Actions