NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
39210 | CVE-2013-3406 | The "Files Available for Download" implementation in the Cisco Intelligent Automation for Cloud component in Cisco Services Portal 9.4(1) allows remote authenticated users to read arbitrary files via a crafted request, aka Bug ID CSCug65687. | 2 | 6.8 | Medium | 2017-01-18 | 2013-11-19 | View | |
39722 | CVE-2013-4038 | The Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) on IBM BladeCenter, Flex System, System x iDataPlex, and System x3### servers uses cleartext for password storage, which allows context-dependent attackers to obtain sensitive information by reading a file. | 2 | 4 | Medium | 2017-01-18 | 2013-08-12 | View | |
41258 | CVE-2013-6077 | Citrix XenDesktop 7.0, when upgraded from XenDesktop 5.x, does not properly enforce policy rule permissions, which allows remote attackers to bypass intended restrictions. | 2 | 5.8 | Medium | 2017-01-18 | 2013-11-06 | View | |
41770 | CVE-2013-6919 | The default configuration of phpThumb before 1.7.12 has a false value for the disable_debug option, which allows remote attackers to conduct Server-Side Request Forgery (SSRF) attacks via the src parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2014-12-29 | View | |
42026 | CVE-2013-7296 | The JBIG2Stream::readSegments method in JBIG2Stream.cc in Poppler before 0.24.5 does not use the correct specifier within a format string, which allows context-dependent attackers to cause a denial of service (segmentation fault and application crash) via a crafted PDF file. | 2 | 5 | Medium | 2017-01-18 | 2014-02-06 | View |
Page 1544 of 17672, showing 5 records out of 88360 total, starting on record 7716, ending on 7720