NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 39844 | CVE-2013-4196 | The object manager implementation (objectmanager.py) in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 does not properly restrict access to internal methods, which allows remote attackers to obtain sensitive information via a crafted request. | 2 | 5 | Medium | 2017-01-18 | 2014-03-11 | View | |
| 40100 | CVE-2013-4502 | The FileField Sources module 6.x-1.x before 6.x-1.9 and 7.x-1.x before 7.x-1.9 for Drupal does not properly check file permissions, which allows remote authenticated users to read arbitrary files by attaching a file. | 2 | 4 | Medium | 2017-01-18 | 2014-05-14 | View | |
| 40356 | CVE-2013-4832 | HP Service Manager 9.30 through 9.32 allows remote authenticated users to obtain sensitive information via unspecified vectors. | 2 | 4 | Medium | 2017-01-18 | 2013-10-16 | View | |
| 40868 | CVE-2013-5593 | The SELECT element implementation in Mozilla Firefox before 25.0, Firefox ESR 24.x before 24.1, Thunderbird before 24.1, and SeaMonkey before 2.22 does not properly restrict the nature or placement of HTML within a dropdown menu, which allows remote attackers to spoof the address bar or conduct clickjacking attacks via vectors that trigger navigation off of a page containing this element. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-21 | View | |
| 41124 | CVE-2013-5894 | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.6.13 and earlier allows remote authenticated users to affect availability via unknown vectors related to InnoDB. | 2 | 4 | Medium | 2017-01-18 | 2017-01-06 | View |
Page 14445 of 17672, showing 5 records out of 88360 total, starting on record 72221, ending on 72225