NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 37359 | CVE-2013-1109 | Cross-site request forgery (CSRF) vulnerability in testingLibraryAction.do in the Training Center testing library in Cisco WebEx Training Center allows remote attackers to hijack the authentication of arbitrary users for requests that delete tests, aka Bug ID CSCzu81067. | 2 | 6.8 | Medium | 2017-01-18 | 2013-02-02 | View | |
| 37615 | CVE-2013-1397 | Symfony 2.0.x before 2.0.22, 2.1.x before 2.1.7, and 2.2.x remote attackers to execute arbitrary PHP code via a serialized PHP object to the (1) Yaml::parse or (2) YamlParser::parse function, a different vulnerability than CVE-2013-1348. | 2 | 7.5 | High | 2017-01-18 | 2014-06-03 | View | |
| 37871 | CVE-2013-1708 | Mozilla Firefox before 23.0 and SeaMonkey before 2.20 allow remote attackers to cause a denial of service (application crash) via a crafted WAV file that is not properly handled by the nsCString::CharAt function. | 2 | 4.3 | Medium | 2017-01-18 | 2013-11-02 | View | |
| 38127 | CVE-2013-2004 | The (1) GetDatabase and (2) _XimParseStringFile functions in X.org libX11 1.5.99.901 (1.6 RC1) and earlier do not restrict the recursion depth when processing directives to include files, which allows X servers to cause a denial of service (stack consumption) via a crafted file. | 2 | 6.8 | Medium | 2017-01-18 | 2013-06-20 | View | |
| 38383 | CVE-2013-2318 | The Content Provider in the MovatwiTouch application before 1.793 and MovatwiTouch Paid application before 1.793 for Android does not properly restrict access to authorization information, which allows attackers to hijack Twitter accounts via a crafted application. | 2 | 2.6 | Low | 2017-01-18 | 2013-06-07 | View |
Page 14482 of 17672, showing 5 records out of 88360 total, starting on record 72406, ending on 72410