NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 45931 | CVE-2012-4555 | The token processing system (pki-tps) in Red Hat Certificate System (RHCS) before 8.1.3 does not properly handle interruptions of token format operations, which allows remote attackers to cause a denial of service (NULL pointer dereference and Apache httpd web server child process crash) via unspecified vectors. | 2 | 4 | Medium | 2017-01-19 | 2013-01-07 | View | |
| 45932 | CVE-2012-4556 | The token processing system (pki-tps) in Red Hat Certificate System (RHCS) before 8.1.3 allows remote attackers to cause a denial of service (Apache httpd web server child process restart) via certain unspecified empty search fields in a user certificate search query. | 2 | 4 | Medium | 2017-01-19 | 2013-01-15 | View | |
| 28699 | CVE-2015-8602 | The Token Insert Entity module 7.x-1.x before 7.x-1.1 for Drupal does not properly check permissions, which allows remote authenticated users with certain permissions to bypass intended access restrictions and possibly obtain sensitive information by inserting a token, which embeds a rendered entity in the main node. | 2 | 3.5 | Low | 2017-01-19 | 2015-12-18 | View | |
| 45778 | CVE-2012-4386 | The token check mechanism in Apache Struts 2.0.0 through 2.3.4 does not properly validate the token name configuration parameter, which allows remote attackers to perform cross-site request forgery (CSRF) attacks by setting the token name configuration parameter to a session attribute. | 2 | 6.8 | Medium | 2017-01-19 | 2012-09-06 | View | |
| 44436 | CVE-2012-2720 | The Token Authentication (tokenauth) module 6.x-1.x before 6.x-1.7 for Drupal does not properly revert user sessions, which might allow remote attackers to perform requests with extra privileges. | 2 | 5 | Medium | 2017-01-19 | 2012-06-27 | View |
Page 2905 of 17672, showing 5 records out of 88360 total, starting on record 14521, ending on 14525