NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 40158 | CVE-2013-4567 | Incomplete blacklist vulnerability in Sanitizer::checkCss in MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3 allows remote attackers to conduct cross-site scripting (XSS) attacks via a (backspace) character in CSS. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-30 | View | |
| 40414 | CVE-2013-4930 | The dissect_dvbci_tpdu_hdr function in epan/dissectors/packet-dvbci.c in the DVB-CI dissector in Wireshark 1.8.x before 1.8.9 and 1.10.x before 1.10.1 does not validate a certain length value before decrementing it, which allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted packet. | 2 | 5 | Medium | 2017-01-18 | 2014-09-23 | View | |
| 40670 | CVE-2013-5354 | Multiple SQL injection vulnerabilities in Sharetronix 3.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) fb_user_id or (2) tw_user_id parameter to signup. | 2 | 7.5 | High | 2017-01-18 | 2014-06-18 | View | |
| 40926 | CVE-2013-5667 | The Thecus NAS server N8800 with firmware 5.03.01 allows remote attackers to execute arbitrary commands via a get_userid action with shell metacharacters in the username parameter. | 2 | 10 | High | 2017-01-18 | 2014-01-24 | View | |
| 41182 | CVE-2013-5968 | Cross-site scripting (XSS) vulnerability in CA SiteMinder 12.0 through 12.51, and SiteMinder 6 Web Agents, allows remote attackers to inject arbitrary web script or HTML via vectors involving a " (double quote) character. | 2 | 4.3 | Medium | 2017-01-18 | 2013-11-06 | View |
Page 15409 of 17672, showing 5 records out of 88360 total, starting on record 77041, ending on 77045