NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
46080 | CVE-2012-4768 | Cross-site scripting (XSS) vulnerability in the Download Monitor plugin before 3.3.5.9 for WordPress allows remote attackers to inject arbitrary web script or HTML via the dlsearch parameter to the default URI. | 2 | 4.3 | Medium | 2017-01-19 | 2014-09-05 | View | |
46336 | CVE-2012-5124 | Google Chrome before 23.0.1271.64 does not properly handle textures, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors. | 2 | 7.5 | High | 2017-01-19 | 2016-09-28 | View | |
46592 | CVE-2012-5454 | user/index_inline_editor_submit.php in ATutor AContent 1.2-1 does not properly restrict access, which allows remote authenticated users to modify arbitrary user passwords via a crafted request. NOTE: this might be due to an incomplete fix for CVE-2012-5168. | 2 | 6.5 | Medium | 2017-01-19 | 2013-04-10 | View | |
46848 | CVE-2012-5811 | The Breezy application for Android does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate. | 2 | 5.8 | Medium | 2017-01-19 | 2015-11-04 | View | |
47104 | CVE-2012-6303 | Heap-based buffer overflow in the GetWavHeader function in generic/jkSoundFile.c in the Snack Sound Toolkit, as used in WaveSurfer 1.8.8p4, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large chunk size in a WAV file. | 2 | 6.8 | Medium | 2017-01-19 | 2016-09-02 | View |
Page 404 of 17672, showing 5 records out of 88360 total, starting on record 2016, ending on 2020