NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
45654  CVE-2012-4209  Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 do not prevent use of a "top" frame name-attribute value to access the location property, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via vectors involving a binary plugin.    4.3  Medium  2017-01-19  2013-11-02  View
46166  CVE-2012-4901  Cross-site scripting (XSS) vulnerability in Template CMS 2.1.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the themes_editor parameter in an add_template action to admin/index.php.    4.3  Medium  2017-01-19  2016-05-27  View
46422  CVE-2012-5216  Cross-site request forgery (CSRF) vulnerability on HP ProCurve 1700-8 (aka J9079A) switches with software before VA.02.09 and 1700-24 (aka J9080A) switches with software before VB.02.09 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.    6.8  Medium  2017-01-19  2013-04-09  View
46678  CVE-2012-5556  Multiple cross-site request forgery (CSRF) vulnerabilities in the RESTful Web Services (RESTWS) module 7.x-1.x before 7.x-1.1 and 7.x-2.x before 7.x-2.0-alpha3 for Drupal allow remote attackers to hijack the authentication of arbitrary users via unknown vectors.    6.8  Medium  2017-01-19  2012-12-04  View
46934  CVE-2012-5918  razorCMS 1.2 allows remote authenticated users to access administrator directories and files by creating and deleting a directory.    Medium  2017-01-19  2012-11-19  View

Page 3114 of 17672, showing 5 records out of 88360 total, starting on record 15566, ending on 15570

Actions