NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 44327 | CVE-2012-2587 | Multiple cross-site scripting (XSS) vulnerabilities in AfterLogic MailSuite Pro 6.3 allow remote attackers to inject arbitrary web script or HTML via an e-mail message body with a crafted SRC attribute of (1) an IFRAME element or (2) a SCRIPT element. | 2 | 4.3 | Medium | 2017-01-19 | 2012-08-29 | View | |
| 44583 | CVE-2012-2892 | Unspecified vulnerability in Google Chrome before 22.0.1229.79 allows remote attackers to bypass the pop-up blocker via unknown vectors. | 2 | 5 | Medium | 2017-01-19 | 2013-11-02 | View | |
| 44839 | CVE-2012-3213 | Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 through Update 11 and 6 through Update 38 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Scripting. | 2 | 10 | High | 2017-01-19 | 2013-12-05 | View | |
| 45095 | CVE-2012-3503 | The installation script in Katello 1.0 and earlier does not properly generate the Application.config.secret_token value, which causes each default installation to have the same secret token, and allows remote attackers to authenticate to the CloudForms System Engine web interface as an arbitrary user by creating a cookie using the default secret_token. | 2 | 6.5 | Medium | 2017-01-19 | 2013-03-21 | View | |
| 45351 | CVE-2012-3799 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Maestro module 7.x-1.x before 7.x-1.2 for Drupal allow remote attackers to hijack the authentication of administrators for requests that (1) change workflows or (2) insert cross-site scripting (XSS) sequences. | 2 | 5.1 | Medium | 2017-01-19 | 2012-06-27 | View |
Page 2699 of 17672, showing 5 records out of 88360 total, starting on record 13491, ending on 13495