NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 43240 | CVE-2012-1243 | The TwitRocker2 application before 1.0.23 for Android does not properly implement the WebView class, which allows remote attackers to obtain sensitive information via a crafted application. | 2 | 5 | Medium | 2017-01-19 | 2012-04-23 | View | |
| 34448 | CVE-2014-6975 | The Twin Lin (aka com.twinlin.twmo) application 5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.4 | Medium | 2017-01-19 | 2014-11-14 | View | |
| 35844 | CVE-2014-9023 | The Twilio module 7.x-1.x before 7.x-1.9 for Drupal does not properly restrict access to the Twilio administration pages, which allows remote authenticated users to read and modify authentication tokens by leveraging the "access administration pages" Drupal permission. | 2 | 5.5 | Medium | 2017-01-19 | 2016-06-01 | View | |
| 42457 | CVE-2012-0326 | The twicca application 0.7.0 through 0.9.30 for Android does not properly restrict the use of network privileges, which allows remote attackers to read media files on an SD card via a crafted application. | 2 | 5 | Medium | 2017-01-19 | 2012-11-19 | View | |
| 27650 | CVE-2015-6828 | The tweet_info function in class/__functions.php in the SecureMoz Security Audit plugin 1.0.5 and earlier for WordPress does not use an HTTPS session for downloading serialized data, which allows man-in-the-middle attackers to conduct PHP object injection attacks and execute arbitrary PHP code by modifying the client-server data stream. NOTE: some of these details are obtained from third party information. | 2 | 6.8 | Medium | 2017-01-19 | 2015-09-17 | View |
Page 2874 of 17672, showing 5 records out of 88360 total, starting on record 14366, ending on 14370