NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 41171 | CVE-2013-5957 | Multiple SQL injection vulnerabilities in CRM/Core/Page/AJAX/Location.php in CiviCRM before 4.2.12, 4.3.x before 4.3.7, and 4.4.x before 4.4.beta4 allow remote attackers to execute arbitrary SQL commands via the _value parameter to (1) ajax/jqState or (2) ajax/jqcounty. | 2 | 7.5 | High | 2017-01-18 | 2013-11-29 | View | |
| 41427 | CVE-2013-6368 | The KVM subsystem in the Linux kernel through 3.12.5 allows local users to gain privileges or cause a denial of service (system crash) via a VAPIC synchronization operation involving a page-end address. | 2 | 6.2 | Medium | 2017-01-18 | 2014-03-26 | View | |
| 41683 | CVE-2013-6801 | Microsoft Word 2003 SP2 and SP3 on Windows XP SP3 allows remote attackers to cause a denial of service (CPU consumption) via a malformed .doc file containing an embedded image, as demonstrated by word2003forkbomb.doc, related to a "fork bomb" issue. | 2 | 7.1 | High | 2017-01-18 | 2013-11-19 | View | |
| 41939 | CVE-2013-7176 | config/filter.d/postfix.conf in the postfix filter in Fail2ban before 0.8.11 allows remote attackers to trigger the blocking of an arbitrary IP address via a crafted e-mail address that matches an improperly designed regular expression. | 2 | 5 | Medium | 2017-01-18 | 2014-11-18 | View | |
| 42195 | CVE-2012-0047 | Cross-site scripting (XSS) vulnerability in Apache Wicket 1.4.x before 1.4.20 allows remote attackers to inject arbitrary web script or HTML via the wicket:pageMapName parameter. | 2 | 4.3 | Medium | 2017-01-19 | 2012-10-29 | View |
Page 14985 of 17672, showing 5 records out of 88360 total, starting on record 74921, ending on 74925