NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 38096 | CVE-2013-1971 | Cross-site scripting (XSS) vulnerability in the MP3 Player module for Drupal 6.x allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via the file name of a MP3 file. | 2 | 2.1 | Low | 2017-01-18 | 2013-07-15 | View | |
| 38352 | CVE-2013-2276 | The avcodec_decode_audio4 function in utils.c in libavcodec in FFmpeg before 1.1.3 does not verify the decoding state before proceeding with certain skip operations, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted audio data. | 2 | 7.5 | High | 2017-01-18 | 2013-02-27 | View | |
| 38608 | CVE-2013-2628 | Multiple cross-site request forgery (CSRF) vulnerabilities in action.php in Leed (Light Feed), possibly before 1.5 Stable, allow remote attackers to hijack the authentication of administrators for unspecified requests, related to the lack of an anti-CSRF token. | 2 | 6.8 | Medium | 2017-01-18 | 2013-12-23 | View | |
| 38864 | CVE-2013-2962 | Buffer overflow in the Launcher in IBM WebSphere Transformation Extender 8.4.x before 8.4.0.4 allows local users to cause a denial of service (process crash or Admin Console command-stream outage) via unspecified vectors. | 2 | 4.9 | Medium | 2017-01-18 | 2014-02-07 | View | |
| 39120 | CVE-2013-3287 | EMC Unisphere for VMAX before 1.6.1.6, when using an unspecified level of debug logging in LDAP configurations, allows local users to discover the cleartext LDAP bind password by reading the console. | 2 | 1.9 | Low | 2017-01-18 | 2013-11-05 | View |
Page 14452 of 17672, showing 5 records out of 88360 total, starting on record 72256, ending on 72260