NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 41987 | CVE-2013-7251 | Multiple cross-site request forgery (CSRF) vulnerabilities in ProjectForge before 5.3 allow remote attackers to hijack the authentication of arbitrary users via vectors related to (1) web/admin/, (2) web/core/, (3) web/dialog/, (4) web/fibu/, (5) web/mobile/, (6) web/task/, or (7) web/wicket/. | 2 | 6.8 | Medium | 2017-01-18 | 2016-12-30 | View | |
| 42243 | CVE-2012-0100 | Unspecified vulnerability in Oracle Solaris 9, 10, and 11 Express allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Kerberos. | 2 | 6.8 | Medium | 2017-01-19 | 2012-01-30 | View | |
| 42499 | CVE-2012-0390 | The DTLS implementation in GnuTLS 3.0.10 and earlier executes certain error-handling code only if there is a specific relationship between a padding length and the ciphertext size, which makes it easier for remote attackers to recover partial plaintext via a timing side-channel attack, a related issue to CVE-2011-4108. | 2 | 4.3 | Medium | 2017-01-19 | 2014-03-26 | View | |
| 42755 | CVE-2012-0666 | Stack-based buffer overflow in the plugin in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted QTMovie object. | 2 | 9.3 | High | 2017-01-19 | 2013-11-02 | View | |
| 43011 | CVE-2012-0976 | Cross-site scripting (XSS) vulnerability in admin/EditForm in SilverStripe 2.4.6 allows remote authenticated users with Content Authors privileges to inject arbitrary web script or HTML via the Title parameter. NOTE: some of these details are obtained from third party information. | 2 | 2.1 | Low | 2017-01-19 | 2012-09-18 | View |
Page 2427 of 17672, showing 5 records out of 88360 total, starting on record 12131, ending on 12135