NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
45122  CVE-2012-3530  Incomplete blacklist vulnerability in the t3lib_div::quoteJSvalue API function in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote attackers to conduct cross-site scripting (XSS) attacks via certain HTML5 JavaScript events.    4.3  Medium  2017-01-19  2012-11-06  View
46146  CVE-2012-4878  Absolute path traversal vulnerability in controlcenter.php in FlatnuX CMS 2011 08.09.2 allows remote administrators to read arbitrary files via a full pathname in the dir parameter in a contents/Files action.    Medium  2017-01-19  2012-09-10  View
46914  CVE-2012-5898  Cross-site request forgery (CSRF) vulnerability in SAMEDIA LandShop 0.9.2 allows remote attackers to hijack the authentication of administrators for requests that change account settings.    6.8  Medium  2017-01-19  2012-11-19  View
48194  CVE-2009-0879  The CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers to cause a denial of service (daemon crash) via a long consumer name, as demonstrated by an M-POST request to a long /CIMListener/ URI.    Medium  2017-01-07  2009-04-01  View
48962  CVE-2009-1693  WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to read images from arbitrary web sites via a CANVAS element with an SVG image, related to a "cross-site image capture issue."    5.8  Medium  2017-01-07  2011-02-17  View

Page 2404 of 17672, showing 5 records out of 88360 total, starting on record 12016, ending on 12020

Actions