NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
38146 | CVE-2013-2031 | MediaWiki before 1.19.6 and 1.20.x before 1.20.5 allows remote attackers to conduct cross-site scripting (XSS) attacks, as demonstrated by a CDATA section containing valid UTF-7 encoded sequences in a SVG file, which is then incorrectly interpreted as UTF-8 by Chrome and Firefox. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-30 | View | |
38914 | CVE-2013-3038 | Unspecified vulnerability in IBM Rational Requirements Composer before 4.0.4 makes it easier for remote attackers to discover credentials via unknown vectors. | 2 | 5.4 | Medium | 2017-01-18 | 2013-09-13 | View | |
39426 | CVE-2013-3671 | The format_line function in log.c in libavutil in FFmpeg before 1.2.1 uses inapplicable offset data during a certain category calculation, which allows remote attackers to cause a denial of service (invalid pointer dereference and application crash) via crafted data that triggers a log message. | 2 | 4.3 | Medium | 2017-01-18 | 2013-06-10 | View | |
39682 | CVE-2013-3988 | The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 allows remote attackers to conduct clickjacking attacks via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-18 | 2014-02-18 | View | |
40194 | CVE-2013-4617 | Jahia xCM before 6.6.2 does not include the HTTPOnly flag in a Set-Cookie header for the JSESSIONID cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie. | 2 | 5 | Medium | 2017-01-18 | 2013-11-29 | View |
Page 101 of 17672, showing 5 records out of 88360 total, starting on record 501, ending on 505