NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 45654 | CVE-2012-4209 | Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 do not prevent use of a "top" frame name-attribute value to access the location property, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via vectors involving a binary plugin. | 2 | 4.3 | Medium | 2017-01-19 | 2013-11-02 | View | |
| 46166 | CVE-2012-4901 | Cross-site scripting (XSS) vulnerability in Template CMS 2.1.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the themes_editor parameter in an add_template action to admin/index.php. | 2 | 4.3 | Medium | 2017-01-19 | 2016-05-27 | View | |
| 46422 | CVE-2012-5216 | Cross-site request forgery (CSRF) vulnerability on HP ProCurve 1700-8 (aka J9079A) switches with software before VA.02.09 and 1700-24 (aka J9080A) switches with software before VB.02.09 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. | 2 | 6.8 | Medium | 2017-01-19 | 2013-04-09 | View | |
| 46678 | CVE-2012-5556 | Multiple cross-site request forgery (CSRF) vulnerabilities in the RESTful Web Services (RESTWS) module 7.x-1.x before 7.x-1.1 and 7.x-2.x before 7.x-2.0-alpha3 for Drupal allow remote attackers to hijack the authentication of arbitrary users via unknown vectors. | 2 | 6.8 | Medium | 2017-01-19 | 2012-12-04 | View | |
| 46934 | CVE-2012-5918 | razorCMS 1.2 allows remote authenticated users to access administrator directories and files by creating and deleting a directory. | 2 | 4 | Medium | 2017-01-19 | 2012-11-19 | View |
Page 3114 of 17672, showing 5 records out of 88360 total, starting on record 15566, ending on 15570