NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
46635  CVE-2012-5507  AccessControl/AuthEncoding.py in Zope before 2.13.19, as used in Plone before 4.2.3 and 4.3 before beta 1, allows remote attackers to obtain passwords via vectors involving timing discrepancies in password validation.    4.3  Medium  2017-01-19  2014-10-02  View
46891  CVE-2012-5868  WordPress 3.4.2 does not invalidate a wordpress_sec session cookie upon an administrator"s logout action, which makes it easier for remote attackers to discover valid session identifiers via a brute-force attack, or modify data via a replay attack.    2.6  Low  2017-01-19  2013-01-08  View
47147  CVE-2012-6433  Cross-site request forgery (CSRF) vulnerability in e107_admin/newspost.php in e107 1.0.1 allows remote attackers to hijack the authentication of administrators for requests that conduct XSS attacks via the news_title parameter in a create action.    6.8  Medium  2017-01-19  2013-01-07  View
47403  CVE-2009-0057  The Certificate Authority Proxy Function (CAPF) service in Cisco Unified Communications Manager 5.x before 5.1(3e) and 6.x before 6.1(3) allows remote attackers to cause a denial of service (voice service outage) by sending malformed input over a TCP session in which the "client terminates prematurely."    4.3  Medium  2017-01-07  2011-03-07  View
47659  CVE-2009-0327  SQL injection vulnerability in readbible.php in Free Bible Search PHP Script 1.0 allows remote attackers to execute arbitrary SQL commands via the version parameter.    7.5  High  2017-01-07  2009-01-29  View

Page 2972 of 17672, showing 5 records out of 88360 total, starting on record 14856, ending on 14860

Actions