NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
40146  CVE-2013-4554  Xen 3.0.3 through 4.1.x (possibly 4.1.6.1), 4.2.x (possibly 4.2.3), and 4.3.x (possibly 4.3.1) does not properly prevent access to hypercalls, which allows local guest users to gain privileges via a crafted application running in ring 1 or 2.    5.2  Medium  2017-01-18  2017-01-06  View
40402  CVE-2013-4911  Cross-site request forgery (CSRF) vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to hijack the authentication of unspecified victims by leveraging improper configuration of SIMATIC HMI panels by the WinCC product.    6.8  Medium  2017-01-18  2013-08-19  View
40658  CVE-2013-5328  Adobe ColdFusion 10 before Update 12 allows remote attackers to read arbitrary files via unspecified vectors.    7.8  High  2017-01-18  2013-11-13  View
40914  CVE-2013-5645  Multiple cross-site scripting (XSS) vulnerabilities in Roundcube webmail before 0.9.3 allow user-assisted remote attackers to inject arbitrary web script or HTML via the body of a message visited in (1) new or (2) draft mode, related to compose.inc; and (3) might allow remote authenticated users to inject arbitrary web script or HTML via an HTML signature, related to save_identity.inc.    4.3  Medium  2017-01-18  2013-09-11  View
41170  CVE-2013-5956  Cross-site scripting (XSS) vulnerability in includes/flvthumbnail.php in the Youtube Gallery (com_youtubegallery) component 3.4.0 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the videofile parameter.    4.3  Medium  2017-01-18  2014-04-25  View

Page 14589 of 17672, showing 5 records out of 88360 total, starting on record 72941, ending on 72945

Actions