NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
44046 | CVE-2012-2212 | ** DISPUTED ** McAfee Web Gateway 7.0 allows remote attackers to bypass the access configuration for the CONNECT method by providing an arbitrary allowed hostname in the Host HTTP header. NOTE: this issue might not be reproducible, because the researcher did not provide configuration details for the vulnerable system, and the observed behavior might be consistent with a configuration that was (perhaps inadvertently) designed to allow access based on Host HTTP headers. | 2 | 5 | Medium | 2017-01-19 | 2014-03-19 | View | |
44302 | CVE-2012-2560 | Directory traversal vulnerability in WellinTech KingView 6.53 allows remote attackers to read arbitrary files via a crafted HTTP request to port 8001. | 2 | 5 | Medium | 2017-01-19 | 2012-07-17 | View | |
45326 | CVE-2012-3744 | Telephony in Apple iOS before 6 uses an SMS message"s return address as the displayed sender address, which allows remote attackers to spoof text communication via a message in which the return address does not match the originating address. | 2 | 5 | Medium | 2017-01-19 | 2013-03-25 | View | |
45582 | CVE-2012-4117 | The fabric-interconnect component in Cisco Unified Computing System (UCS) does not properly verify X.509 certificates, which allows man-in-the-middle attackers to watch SSL KVM video-channel traffic or modify this traffic via a crafted certificate, aka Bug ID CSCtr73033. | 2 | 5.8 | Medium | 2017-01-19 | 2013-10-21 | View | |
45838 | CVE-2012-4455 | openCryptoki 2.4.1 allows local users to create or set world-writable permissions on arbitrary files via a symlink attack on the (1) LCK..opencryptoki or (2) LCK..opencryptoki_stdll file in /var/lock/. | 2 | 6.2 | Medium | 2017-01-19 | 2013-04-10 | View |
Page 533 of 17672, showing 5 records out of 88360 total, starting on record 2661, ending on 2665