NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
42502  CVE-2012-0393  The ParameterInterceptor component in Apache Struts before 2.3.1.1 does not prevent access to public constructors, which allows remote attackers to create or overwrite arbitrary files via a crafted parameter that triggers the creation of a Java object.    6.4  Medium  2017-01-19  2012-01-12  View
43014  CVE-2012-0979  Cross-site scripting (XSS) vulnerability in TWiki allows remote attackers to inject arbitrary web script or HTML via the organization field in a profile, involving (1) registration or (2) editing of the user.    4.3  Medium  2017-01-19  2012-02-06  View
44294  CVE-2012-2549  The IP-HTTPS server in Windows Server 2008 R2 and R2 SP1 and Server 2012 does not properly validate certificates, which allows remote attackers to bypass intended access restrictions via a revoked certificate, aka "Revoked Certificate Bypass Vulnerability."    5.8  Medium  2017-01-19  2013-11-02  View
44550  CVE-2012-2857  Use-after-free vulnerability in the Cascading Style Sheets (CSS) DOM implementation in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted document.    6.8  Medium  2017-01-19  2013-09-30  View
44806  CVE-2012-3180  Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.65 and earlier, and 5.5.27 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer.    Medium  2017-01-19  2014-02-20  View

Page 249 of 17672, showing 5 records out of 88360 total, starting on record 1241, ending on 1245

Actions