NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 38100 | CVE-2013-1977 | OpenStack devstack uses world-readable permissions for keystone.conf, which allows local users to obtain sensitive information such as the LDAP password and admin_token secret by reading the file. | 2 | 2.1 | Low | 2017-01-18 | 2013-05-22 | View | |
| 38356 | CVE-2013-2287 | Multiple cross-site scripting (XSS) vulnerabilities in views/notify.php in the Uploader plugin 1.0.4 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) notify or (2) blog parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2014-04-04 | View | |
| 38612 | CVE-2013-2633 | Piwik before 1.11 accepts input from a POST request instead of a GET request in unspecified circumstances, which might allow attackers to obtain sensitive information by leveraging the logging of parameters. | 2 | 5 | Medium | 2017-01-18 | 2013-04-09 | View | |
| 38868 | CVE-2013-2969 | Cross-site scripting (XSS) vulnerability in IBM Sterling Control Center (SCC) 5.2 before 5.2.0.9, 5.3 before 5.3.0.4, and 5.4 through 5.4.0.1 allows remote authenticated users to inject arbitrary web script or HTML via vectors involving invalid characters. | 2 | 3.5 | Low | 2017-01-18 | 2013-06-20 | View | |
| 39124 | CVE-2013-3295 | Directory traversal vulnerability in install/popup.php in Exponent CMS before 2.2.0 RC1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. | 2 | 7.5 | High | 2017-01-18 | 2014-12-30 | View |
Page 15043 of 17672, showing 5 records out of 88360 total, starting on record 75211, ending on 75215