NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
39844  CVE-2013-4196  The object manager implementation (objectmanager.py) in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 does not properly restrict access to internal methods, which allows remote attackers to obtain sensitive information via a crafted request.    Medium  2017-01-18  2014-03-11  View
40100  CVE-2013-4502  The FileField Sources module 6.x-1.x before 6.x-1.9 and 7.x-1.x before 7.x-1.9 for Drupal does not properly check file permissions, which allows remote authenticated users to read arbitrary files by attaching a file.    Medium  2017-01-18  2014-05-14  View
40356  CVE-2013-4832  HP Service Manager 9.30 through 9.32 allows remote authenticated users to obtain sensitive information via unspecified vectors.    Medium  2017-01-18  2013-10-16  View
40868  CVE-2013-5593  The SELECT element implementation in Mozilla Firefox before 25.0, Firefox ESR 24.x before 24.1, Thunderbird before 24.1, and SeaMonkey before 2.22 does not properly restrict the nature or placement of HTML within a dropdown menu, which allows remote attackers to spoof the address bar or conduct clickjacking attacks via vectors that trigger navigation off of a page containing this element.    4.3  Medium  2017-01-18  2016-12-21  View
41124  CVE-2013-5894  Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.6.13 and earlier allows remote authenticated users to affect availability via unknown vectors related to InnoDB.    Medium  2017-01-18  2017-01-06  View

Page 14445 of 17672, showing 5 records out of 88360 total, starting on record 72221, ending on 72225

Actions