NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 41444 | CVE-2013-6385 | The form API in Drupal 6.x before 6.29 and 7.x before 7.24, when used with unspecified third-party modules, performs form validation even when CSRF validation has failed, which might allow remote attackers to trigger application-specific impacts such as arbitrary code execution via application-specific vectors. | 2 | 5.1 | Medium | 2017-01-18 | 2014-01-13 | View | |
| 41700 | CVE-2013-6821 | Directory traversal vulnerability in the Exportability Check Service in SAP NetWeaver allows remote attackers to read arbitrary files via unspecified vectors. | 2 | 5 | Medium | 2017-01-18 | 2013-11-20 | View | |
| 41956 | CVE-2013-7195 | PHPFox 3.7.3 and 3.7.4 allows remote authenticated users to bypass intended "Only Me" restrictions and "like" a publication via a request that specifies the ID for the publication. | 2 | 5.5 | Medium | 2017-01-18 | 2014-04-21 | View | |
| 42212 | CVE-2012-0068 | The lanalyzer_read function in wiretap/lanalyzer.c in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers to cause a denial of service (application crash) via a Novell catpure file containing a record that is too small. | 2 | 4.3 | Medium | 2017-01-19 | 2015-12-02 | View | |
| 42468 | CVE-2012-0340 | Cross-site scripting (XSS) vulnerability in the management interface on the Cisco IronPort Encryption Appliance with software before 6.5.3 allows remote attackers to inject arbitrary web script or HTML via the header parameter to the default URI under admin/, aka bug ID 72410. | 2 | 4.3 | Medium | 2017-01-19 | 2013-10-03 | View |
Page 15468 of 17672, showing 5 records out of 88360 total, starting on record 77336, ending on 77340