NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
41171  CVE-2013-5957  Multiple SQL injection vulnerabilities in CRM/Core/Page/AJAX/Location.php in CiviCRM before 4.2.12, 4.3.x before 4.3.7, and 4.4.x before 4.4.beta4 allow remote attackers to execute arbitrary SQL commands via the _value parameter to (1) ajax/jqState or (2) ajax/jqcounty.    7.5  High  2017-01-18  2013-11-29  View
41427  CVE-2013-6368  The KVM subsystem in the Linux kernel through 3.12.5 allows local users to gain privileges or cause a denial of service (system crash) via a VAPIC synchronization operation involving a page-end address.    6.2  Medium  2017-01-18  2014-03-26  View
41683  CVE-2013-6801  Microsoft Word 2003 SP2 and SP3 on Windows XP SP3 allows remote attackers to cause a denial of service (CPU consumption) via a malformed .doc file containing an embedded image, as demonstrated by word2003forkbomb.doc, related to a "fork bomb" issue.    7.1  High  2017-01-18  2013-11-19  View
41939  CVE-2013-7176  config/filter.d/postfix.conf in the postfix filter in Fail2ban before 0.8.11 allows remote attackers to trigger the blocking of an arbitrary IP address via a crafted e-mail address that matches an improperly designed regular expression.    Medium  2017-01-18  2014-11-18  View
42195  CVE-2012-0047  Cross-site scripting (XSS) vulnerability in Apache Wicket 1.4.x before 1.4.20 allows remote attackers to inject arbitrary web script or HTML via the wicket:pageMapName parameter.    4.3  Medium  2017-01-19  2012-10-29  View

Page 14985 of 17672, showing 5 records out of 88360 total, starting on record 74921, ending on 74925

Actions