NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 43599 | CVE-2012-1728 | Unspecified vulnerability in the Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Portal Framework. | 2 | 5.8 | Medium | 2017-01-19 | 2013-10-10 | View | |
| 44111 | CVE-2012-2296 | The Janrain Engage (formerly RPX) module for Drupal 6.x-1.x. 6.x-2.x before 6.x-2.2, and 7.x-2.x before 7.x-2.2 stores user profile data from Engage in session tables, which might allow remote attackers to obtain sensitive information by leveraging a separate vulnerability. | 2 | 5 | Medium | 2017-01-19 | 2017-01-18 | View | |
| 44367 | CVE-2012-2644 | Cross-site scripting (XSS) vulnerability in the MT4i plugin 3.1 beta 4 and earlier for Movable Type allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2012-2642. | 2 | 4.3 | Medium | 2017-01-19 | 2012-07-09 | View | |
| 44623 | CVE-2012-2935 | Cross-site scripting (XSS) vulnerability in osCommerce/OM/Core/Site/Shop/Application/Checkout/pages/main.php in OSCommerce Online Merchant 3.0.2 allows remote attackers to inject arbitrary web script or HTML via the value_title parameter, a different vulnerability than CVE-2012-1059. | 2 | 4.3 | Medium | 2017-01-19 | 2012-08-13 | View | |
| 45135 | CVE-2012-3546 | org/apache/catalina/realm/RealmBase.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.30, when FORM authentication is used, allows remote attackers to bypass security-constraint checks by leveraging a previous setUserPrincipal call and then placing /j_security_check at the end of a URI. | 2 | 4.3 | Medium | 2017-05-27 | 2017-05-22 | View |
Page 2854 of 17672, showing 5 records out of 88360 total, starting on record 14266, ending on 14270