NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
41444  CVE-2013-6385  The form API in Drupal 6.x before 6.29 and 7.x before 7.24, when used with unspecified third-party modules, performs form validation even when CSRF validation has failed, which might allow remote attackers to trigger application-specific impacts such as arbitrary code execution via application-specific vectors.    5.1  Medium  2017-01-18  2014-01-13  View
41700  CVE-2013-6821  Directory traversal vulnerability in the Exportability Check Service in SAP NetWeaver allows remote attackers to read arbitrary files via unspecified vectors.    Medium  2017-01-18  2013-11-20  View
41956  CVE-2013-7195  PHPFox 3.7.3 and 3.7.4 allows remote authenticated users to bypass intended "Only Me" restrictions and "like" a publication via a request that specifies the ID for the publication.    5.5  Medium  2017-01-18  2014-04-21  View
42212  CVE-2012-0068  The lanalyzer_read function in wiretap/lanalyzer.c in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers to cause a denial of service (application crash) via a Novell catpure file containing a record that is too small.    4.3  Medium  2017-01-19  2015-12-02  View
42468  CVE-2012-0340  Cross-site scripting (XSS) vulnerability in the management interface on the Cisco IronPort Encryption Appliance with software before 6.5.3 allows remote attackers to inject arbitrary web script or HTML via the header parameter to the default URI under admin/, aka bug ID 72410.    4.3  Medium  2017-01-19  2013-10-03  View

Page 15468 of 17672, showing 5 records out of 88360 total, starting on record 77336, ending on 77340

Actions