NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 39900 | CVE-2013-4270 | The net_ctl_permissions function in net/sysctl_net.c in the Linux kernel before 3.11.5 does not properly determine uid and gid values, which allows local users to bypass intended /proc/sys/net restrictions via a crafted application. | 2 | 3.6 | Low | 2017-01-18 | 2014-03-05 | View | |
| 40156 | CVE-2013-4565 | Heap-based buffer overflow in the __OLEdecode function in ppthtml 0.5.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted .ppt file. | 2 | 6.8 | Medium | 2017-01-18 | 2014-04-25 | View | |
| 40412 | CVE-2013-4928 | Integer signedness error in the dissect_headers function in epan/dissectors/packet-btobex.c in the Bluetooth OBEX dissector in Wireshark 1.10.x before 1.10.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. | 2 | 7.8 | High | 2017-01-18 | 2014-09-23 | View | |
| 40668 | CVE-2013-5352 | Sharetronix 3.1.1.3, 3.1.1, and earlier allows remote attackers to execute arbitrary PHP code via the (1) activities_text parameter to services/activities/set or (2) comments_text parameter to services/comments/set, which is not properly handled when executing the preg_replace function with the e modifier. | 2 | 6.8 | Medium | 2017-01-18 | 2014-06-13 | View | |
| 40924 | CVE-2013-5664 | Cross-site scripting (XSS) vulnerability in the web-based device-management API browser in Palo Alto Networks PAN-OS before 4.1.13 and 5.0.x before 5.0.6 allows remote attackers to inject arbitrary web script or HTML via crafted data, aka Ref ID 50908. | 2 | 4.3 | Medium | 2017-01-18 | 2013-09-30 | View |
Page 15532 of 17672, showing 5 records out of 88360 total, starting on record 77656, ending on 77660