NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 40146 | CVE-2013-4554 | Xen 3.0.3 through 4.1.x (possibly 4.1.6.1), 4.2.x (possibly 4.2.3), and 4.3.x (possibly 4.3.1) does not properly prevent access to hypercalls, which allows local guest users to gain privileges via a crafted application running in ring 1 or 2. | 2 | 5.2 | Medium | 2017-01-18 | 2017-01-06 | View | |
| 40402 | CVE-2013-4911 | Cross-site request forgery (CSRF) vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to hijack the authentication of unspecified victims by leveraging improper configuration of SIMATIC HMI panels by the WinCC product. | 2 | 6.8 | Medium | 2017-01-18 | 2013-08-19 | View | |
| 40658 | CVE-2013-5328 | Adobe ColdFusion 10 before Update 12 allows remote attackers to read arbitrary files via unspecified vectors. | 2 | 7.8 | High | 2017-01-18 | 2013-11-13 | View | |
| 40914 | CVE-2013-5645 | Multiple cross-site scripting (XSS) vulnerabilities in Roundcube webmail before 0.9.3 allow user-assisted remote attackers to inject arbitrary web script or HTML via the body of a message visited in (1) new or (2) draft mode, related to compose.inc; and (3) might allow remote authenticated users to inject arbitrary web script or HTML via an HTML signature, related to save_identity.inc. | 2 | 4.3 | Medium | 2017-01-18 | 2013-09-11 | View | |
| 41170 | CVE-2013-5956 | Cross-site scripting (XSS) vulnerability in includes/flvthumbnail.php in the Youtube Gallery (com_youtubegallery) component 3.4.0 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the videofile parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2014-04-25 | View |
Page 14589 of 17672, showing 5 records out of 88360 total, starting on record 72941, ending on 72945