NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
36609 | CVE-2013-0254 | The QSharedMemory class in Qt 5.0.0, 4.8.x before 4.8.5, 4.7.x before 4.7.6, and other versions including 4.4.0 uses weak permissions (world-readable and world-writable) for shared memory segments, which allows local users to read sensitive information or modify critical program data, as demonstrated by reading a pixmap being sent to an X server. | 2 | 3.6 | Low | 2017-01-18 | 2013-05-14 | View | |
36865 | CVE-2013-0540 | IBM WebSphere Application Server (WAS) Liberty Profile 8.5 before 8.5.0.2, when SSL is not enabled, does not properly validate authentication cookies, which allows remote authenticated users to bypass intended access restrictions via an HTTP session. | 2 | 3.5 | Low | 2017-01-18 | 2013-04-24 | View | |
37121 | CVE-2013-0851 | The decode_frame function in libavcodec/eamad.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted Electronic Arts Madcow video data, which triggers an out-of-bounds array access. | 2 | 9.3 | High | 2017-01-18 | 2013-12-27 | View | |
37377 | CVE-2013-1129 | Memory leak in Cisco Unity Connection 9.x allows remote attackers to cause a denial of service (memory consumption and process crash) by sending many TCP requests, aka Bug ID CSCud59736. | 2 | 5 | Medium | 2017-01-18 | 2013-02-20 | View | |
37633 | CVE-2013-1427 | The configuration file for the FastCGI PHP support for lighttpd before 1.4.28 on Debian GNU/Linux creates a socket file with a predictable name in /tmp, which allows local users to hijack the PHP control socket and perform unauthorized actions such as forcing the use of a different version of PHP via a symlink attack or a race condition. | 2 | 1.9 | Low | 2017-01-18 | 2016-06-01 | View |
Page 114 of 17672, showing 5 records out of 88360 total, starting on record 566, ending on 570