NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 45854 | CVE-2012-4471 | The Search Autocomplete module 7.x-2.x before 7.x-2.4 for Drupal does not properly restrict access to the module admin page, which allows remote attackers to disable an autocompletion or change the priority order via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2013-01-29 | View | |
| 46110 | CVE-2012-4836 | Cross-site scripting (XSS) vulnerability in IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10.1.1 before IF2, and 10.2 before IF1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted string that is not properly handled during rendering of stored data. | 2 | 3.5 | Low | 2017-01-19 | 2013-03-05 | View | |
| 46366 | CVE-2012-5154 | Integer overflow in Google Chrome before 24.0.1312.52 on Windows allows attackers to cause a denial of service or possibly have unspecified other impact via vectors related to allocation of shared memory. | 2 | 7.5 | High | 2017-01-19 | 2016-10-06 | View | |
| 46622 | CVE-2012-5494 | Cross-site scripting (XSS) vulnerability in python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to "{u,}translate." | 2 | 4.3 | Medium | 2017-01-19 | 2014-10-01 | View | |
| 46878 | CVE-2012-5853 | SQL injection vulnerability in the "the_search_function" function in cardoza_ajax_search.php in the AJAX Post Search (cardoza-ajax-search) plugin before 1.3 for WordPress allows remote attackers to execute arbitrary SQL commands via the srch_txt parameter in a "the_search_text" action to wp-admin/admin-ajax.php. | 2 | 7.5 | High | 2017-01-19 | 2015-01-08 | View |
Page 2971 of 17672, showing 5 records out of 88360 total, starting on record 14851, ending on 14855