NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
45855  CVE-2012-4472  Unrestricted file upload vulnerability in upload.php in the Drag & Drop Gallery module 6.x-1.5 and earlier for Drupal allows remote attackers to execute arbitrary PHP code by uploading a file with an executable extension followed by a safe extension, then accessing it via a direct request to the directory specified by the filedir parameter.    5.1  Medium  2017-01-19  2013-01-29  View
46111  CVE-2012-4837  IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10.1.1 before IF2, and 10.2 before IF1 allows remote authenticated users to conduct XPath injection attacks, and read arbitrary XML files, via unspecified vectors.    Medium  2017-01-19  2013-03-05  View
46367  CVE-2012-5155  Google Chrome before 24.0.1312.52 on Mac OS X does not use an appropriate sandboxing approach for worker processes, which makes it easier for remote attackers to bypass intended access restrictions via unspecified vectors.    Medium  2017-01-19  2013-01-16  View
46623  CVE-2012-5495  python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to execute Python code via a crafted URL, related to "go_back."    Medium  2017-01-19  2014-10-02  View
46879  CVE-2012-5854  Heap-based buffer overflow in WeeChat 0.3.6 through 0.3.9 allows remote attackers to cause a denial of service (crash or hang) and possibly execute arbitrary code via crafted IRC colors that are not properly decoded.    7.5  High  2017-01-19  2014-02-06  View

Page 2507 of 17672, showing 5 records out of 88360 total, starting on record 12531, ending on 12535

Actions