NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 46606 | CVE-2012-5478 | The AuthorizationInterceptor in JBoss Enterprise Application Platform (EAP) before 5.2.0, Web Platform (EWP) before 5.2.0, BRMS Platform before 5.3.1, and SOA Platform before 5.3.1 does not properly restrict access, which allows remote authenticated users to bypass intended role restrictions and perform arbitrary JMX operations via unspecified vectors. | 2 | 4.9 | Medium | 2017-01-19 | 2015-01-17 | View | |
| 46862 | CVE-2012-5825 | Tweepy does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, related to use of the Python httplib library. | 2 | 5.8 | Medium | 2017-01-19 | 2012-11-19 | View | |
| 47118 | CVE-2012-6336 | The Missing Device feature in Lookout allows physically proximate attackers to provide arbitrary location data via a "commonly available simple GPS location spoofer." | 2 | 3.3 | Low | 2017-01-19 | 2013-01-08 | View | |
| 16655 | CVE-2016-0147 | Microsoft XML Core Services 3.0 allows remote attackers to execute arbitrary code via a crafted web site, aka "MSXML 3.0 Remote Code Execution Vulnerability." | 2 | 9.3 | High | 2017-01-19 | 2016-12-02 | View | |
| 16911 | CVE-2016-0495 | Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 4.3.36 and 5.0.14 allows remote attackers to affect availability via unknown vectors related to Core. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-07 | View |
Page 2665 of 17672, showing 5 records out of 88360 total, starting on record 13321, ending on 13325