NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
38177  CVE-2013-2065  (1) DL and (2) Fiddle in Ruby 1.9 before 1.9.3 patchlevel 426, and 2.0 before 2.0.0 patchlevel 195, do not perform taint checking for native functions, which allows context-dependent attackers to bypass intended $SAFE level restrictions.    6.4  Medium  2017-01-18  2013-11-24  View
39201  CVE-2013-3397  Cross-site request forgery (CSRF) vulnerability in the Unified Serviceability component in Cisco Unified Communications Manager (CUCM) allows remote attackers to hijack the authentication of arbitrary users for requests that perform Unified Serviceability actions, aka Bug ID CSCuh10298.    6.8  Medium  2017-01-18  2013-10-11  View
39457  CVE-2013-3724  The mk_request_header_process function in mk_request.c in Monkey 1.1.1 allows remote attackers to cause a denial of service (thread crash and service outage) via a "" character in an HTTP request.    Medium  2017-01-18  2013-08-01  View
39969  CVE-2013-4350  The IPv6 SCTP implementation in net/sctp/ipv6.c in the Linux kernel through 3.11.1 uses data structures and function calls that do not trigger an intended configuration of IPsec encryption, which allows remote attackers to obtain sensitive information by sniffing the network.    Medium  2017-01-18  2014-01-03  View
40481  CVE-2013-5013  Multiple cross-site scripting (XSS) vulnerabilities in the management console on the Symantec Web Gateway (SWG) appliance before 5.2 allow remote attackers to inject arbitrary web script or HTML via (1) vectors involving PHP scripts and (2) unspecified other vectors.    4.3  Medium  2017-01-18  2015-07-30  View

Page 1219 of 17672, showing 5 records out of 88360 total, starting on record 6091, ending on 6095

Actions