NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 41432 | CVE-2013-6373 | The Exclusion plugin before 0.9 for Jenkins does not properly prevent access to resource locks, which allows remote authenticated users to list and release resources via unspecified vectors. | 2 | 5.5 | Medium | 2017-01-18 | 2016-07-15 | View | |
| 41688 | CVE-2013-6807 | The client in OpenText Exceed OnDemand (EoD) 8 supports anonymous ciphers by default, which allows man-in-the-middle attackers to bypass server certificate validation, redirect a connection, and obtain sensitive information via crafted responses. | 2 | 6.8 | Medium | 2017-01-18 | 2014-05-19 | View | |
| 41944 | CVE-2013-7182 | Cross-site scripting (XSS) vulnerability in firewall/schedule/recurrdlg in Fortinet FortiOS 5.0.5 allows remote attackers to inject arbitrary web script or HTML via the mkey parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2014-02-11 | View | |
| 42200 | CVE-2012-0054 | libs/updater.py in GoLismero 0.6.3, and other versions before Git revision 2b3bb43d6867, as used in backtrack and possibly other products, allows local users to overwrite arbitrary files via a symlink attack on GoLismero-controlled files, as demonstrated using Admin/changes.dat. | 2 | 3.3 | Low | 2017-01-19 | 2012-08-03 | View | |
| 42456 | CVE-2012-0325 | Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.13 and 1.424.x before 1.424.5.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2012-0324. | 2 | 4.3 | Medium | 2017-01-19 | 2016-07-15 | View |
Page 14649 of 17672, showing 5 records out of 88360 total, starting on record 73241, ending on 73245