NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
44327  CVE-2012-2587  Multiple cross-site scripting (XSS) vulnerabilities in AfterLogic MailSuite Pro 6.3 allow remote attackers to inject arbitrary web script or HTML via an e-mail message body with a crafted SRC attribute of (1) an IFRAME element or (2) a SCRIPT element.    4.3  Medium  2017-01-19  2012-08-29  View
44583  CVE-2012-2892  Unspecified vulnerability in Google Chrome before 22.0.1229.79 allows remote attackers to bypass the pop-up blocker via unknown vectors.    Medium  2017-01-19  2013-11-02  View
44839  CVE-2012-3213  Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11 and 6 through Update 38 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Scripting.    10  High  2017-01-19  2013-12-05  View
45095  CVE-2012-3503  The installation script in Katello 1.0 and earlier does not properly generate the Application.config.secret_token value, which causes each default installation to have the same secret token, and allows remote attackers to authenticate to the CloudForms System Engine web interface as an arbitrary user by creating a cookie using the default secret_token.    6.5  Medium  2017-01-19  2013-03-21  View
45351  CVE-2012-3799  Multiple cross-site request forgery (CSRF) vulnerabilities in the Maestro module 7.x-1.x before 7.x-1.2 for Drupal allow remote attackers to hijack the authentication of administrators for requests that (1) change workflows or (2) insert cross-site scripting (XSS) sequences.    5.1  Medium  2017-01-19  2012-06-27  View

Page 2699 of 17672, showing 5 records out of 88360 total, starting on record 13491, ending on 13495

Actions