NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
45931  CVE-2012-4555  The token processing system (pki-tps) in Red Hat Certificate System (RHCS) before 8.1.3 does not properly handle interruptions of token format operations, which allows remote attackers to cause a denial of service (NULL pointer dereference and Apache httpd web server child process crash) via unspecified vectors.    Medium  2017-01-19  2013-01-07  View
45932  CVE-2012-4556  The token processing system (pki-tps) in Red Hat Certificate System (RHCS) before 8.1.3 allows remote attackers to cause a denial of service (Apache httpd web server child process restart) via certain unspecified empty search fields in a user certificate search query.    Medium  2017-01-19  2013-01-15  View
28699  CVE-2015-8602  The Token Insert Entity module 7.x-1.x before 7.x-1.1 for Drupal does not properly check permissions, which allows remote authenticated users with certain permissions to bypass intended access restrictions and possibly obtain sensitive information by inserting a token, which embeds a rendered entity in the main node.    3.5  Low  2017-01-19  2015-12-18  View
45778  CVE-2012-4386  The token check mechanism in Apache Struts 2.0.0 through 2.3.4 does not properly validate the token name configuration parameter, which allows remote attackers to perform cross-site request forgery (CSRF) attacks by setting the token name configuration parameter to a session attribute.    6.8  Medium  2017-01-19  2012-09-06  View
44436  CVE-2012-2720  The Token Authentication (tokenauth) module 6.x-1.x before 6.x-1.7 for Drupal does not properly revert user sessions, which might allow remote attackers to perform requests with extra privileges.    Medium  2017-01-19  2012-06-27  View

Page 2905 of 17672, showing 5 records out of 88360 total, starting on record 14521, ending on 14525

Actions