NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 37630 | CVE-2013-1418 | The setup_server_realm function in main.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.10.7, when multiple realms are configured, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request. | 2 | 4.3 | Medium | 2017-01-18 | 2017-01-06 | View | |
| 37886 | CVE-2013-1724 | Use-after-free vulnerability in the mozilla::dom::HTMLFormElement::IsDefaultSubmitElement function in Mozilla Firefox before 24.0, Thunderbird before 24.0, and SeaMonkey before 2.21 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving a destroyed SELECT element. | 2 | 9.3 | High | 2017-01-18 | 2017-01-06 | View | |
| 38142 | CVE-2013-2027 | Jython 2.2.1 uses the current umask to set the privileges of the class cache files, which allows local users to bypass intended access restrictions via unspecified vectors. | 2 | 4.6 | Medium | 2017-01-18 | 2016-08-29 | View | |
| 38398 | CVE-2013-2334 | Unspecified vulnerability in HP Storage Data Protector 6.20, 6.21, 7.00, and 7.01 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1681. | 2 | 10 | High | 2017-01-18 | 2013-06-06 | View | |
| 38654 | CVE-2013-2713 | Cross-site request forgery (CSRF) vulnerability in users_maint.html in KrisonAV CMS before 3.0.2 allows remote attackers to hijack the authentication of administrators for requests that create user accounts via a crafted request. | 2 | 6.8 | Medium | 2017-01-18 | 2014-05-29 | View |
Page 15388 of 17672, showing 5 records out of 88360 total, starting on record 76936, ending on 76940