NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
36643  CVE-2013-0296  Race condition in pigz before 2.2.5 uses permissions derived from the umask when compressing a file before setting that file"s permissions to match those of the original file, which might allow local users to bypass intended access permissions while compression is occurring.    4.4  Medium  2017-01-18  2014-04-28  View
36899  CVE-2013-0596  Cross-site scripting (XSS) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-18  2013-09-23  View
37923  CVE-2013-1773  Buffer overflow in the VFAT filesystem implementation in the Linux kernel before 3.3 allows local users to gain privileges or cause a denial of service (system crash) via a VFAT write operation on a filesystem with the utf8 mount option, which is not properly handled during UTF-8 to UTF-16 conversion.    6.2  Medium  2017-01-18  2016-12-07  View
38179  CVE-2013-2067  java/org/apache/catalina/authenticator/FormAuthenticator.java in the form authentication feature in Apache Tomcat 6.0.21 through 6.0.36 and 7.x before 7.0.33 does not properly handle the relationships between authentication requirements and sessions, which allows remote attackers to inject a request into a session by sending this request during completion of the login form, a variant of a session fixation attack.    6.8  Medium  2017-01-18  2016-11-28  View
38435  CVE-2013-2372  Cross-site scripting (XSS) vulnerability in the Engine in TIBCO Spotfire Web Player 3.3.x before 3.3.3, 4.0.x before 4.0.3, 4.5.x before 4.5.1, and 5.0.x before 5.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    4.3  Medium  2017-01-18  2013-03-21  View

Page 1295 of 17672, showing 5 records out of 88360 total, starting on record 6471, ending on 6475

Actions