NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 45640 | CVE-2012-4194 | Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 do not prevent use of the valueOf method to shadow the location object (aka window.location), which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via vectors involving a plugin. | 2 | 4.3 | Medium | 2017-01-19 | 2013-11-02 | View | |
| 45896 | CVE-2012-4516 | librdmacm 1.0.16, when ibacm.port is not specified, connects to port 6125, which allows remote attackers to specify the address resolution information for the application via a malicious ib_acm service. | 2 | 5.8 | Medium | 2017-01-19 | 2012-11-08 | View | |
| 46152 | CVE-2012-4884 | Argument injection vulnerability in Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x before 4.0.8 allows remote attackers to create arbitrary files via unspecified vectors related to the GnuPG client. | 2 | 5 | Medium | 2017-01-19 | 2012-11-15 | View | |
| 46664 | CVE-2012-5541 | Cross-site scripting (XSS) vulnerability in the Twitter Pull module 6.x-1.x before 6.x-1.3 and 7.x-1.x before 7.x-1.0-rc3 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "data coming from Twitter." | 2 | 4.3 | Medium | 2017-01-19 | 2012-12-04 | View | |
| 46920 | CVE-2012-5904 | Heap-based buffer overflow in IrfanView before 4.33 allows remote attackers to execute arbitrary code via a crafted RLE compressed bitmap file such as a DIB, RLE, or BMP image. | 2 | 6.8 | Medium | 2017-01-19 | 2012-11-19 | View |
Page 2618 of 17672, showing 5 records out of 88360 total, starting on record 13086, ending on 13090