NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 41174 | CVE-2013-5960 | The authenticated-encryption feature in the symmetric-encryption implementation in the OWASP Enterprise Security API (ESAPI) for Java 2.x before 2.1.1 does not properly resist tampering with serialized ciphertext, which makes it easier for remote attackers to bypass intended cryptographic protection mechanisms via an attack against the intended cipher mode in a non-default configuration, a different vulnerability than CVE-2013-5679. | 2 | 5.8 | Medium | 2017-01-18 | 2016-05-05 | View | |
| 41430 | CVE-2013-6371 | The hash functionality in json-c before 0.12 allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted JSON data, involving collisions. | 2 | 5 | Medium | 2017-01-18 | 2016-11-21 | View | |
| 41686 | CVE-2013-6805 | OpenText Exceed OnDemand (EoD) 8 uses weak encryption for passwords, which makes it easier for (1) remote attackers to discover credentials by sniffing the network or (2) local users to discover credentials by reading a .eod8 file. | 2 | 5 | Medium | 2017-01-18 | 2014-05-19 | View | |
| 41942 | CVE-2013-7180 | Cobham SAILOR 900 VSAT; SAILOR FleetBroadBand 150, 250, and 500; EXPLORER BGAN; and AVIATOR 200, 300, 350, and 700D devices do not properly restrict password recovery, which allows attackers to obtain administrative privileges by leveraging physical access or terminal access to spoof a reset code. | 2 | 7.8 | High | 2017-01-18 | 2014-08-15 | View | |
| 42198 | CVE-2012-0052 | Red Hat JBoss Operations Network (JON) before 2.4.2 and 3.0.x before 3.0.1 does not check the JON agent key, which allows remote attackers to spoof the identity of arbitrary agents via the registered agent name. | 2 | 5.8 | Medium | 2017-01-19 | 2014-02-14 | View |
Page 14863 of 17672, showing 5 records out of 88360 total, starting on record 74311, ending on 74315