NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
41411  CVE-2013-6339  The dissect_openwire_type function in epan/dissectors/packet-openwire.c in the OpenWire dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before 1.10.3 allows remote attackers to cause a denial of service (loop) via a crafted packet.    4.3  Medium  2017-01-18  2014-04-19  View
41923  CVE-2013-7129  Cross-site scripting (XSS) vulnerability in ThemeBeans Blooog theme 1.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the jQuery parameter to assets/js/jplayer.swf.    4.3  Medium  2017-01-18  2016-12-30  View
42179  CVE-2012-0030  Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated users to bypass access restrictions for tenants of other users via an OSAPI request with a modified project_id URI parameter.    4.9  Medium  2017-01-19  2012-01-17  View
42435  CVE-2012-0304  Symantec LiveUpdate Administrator before 2.3.1 uses weak permissions (Everyone: Full Control) for the installation directory, which allows local users to gain privileges via a Trojan horse file.    6.9  Medium  2017-01-19  2013-04-01  View
42947  CVE-2012-0885  chan_sip.c in Asterisk Open Source 1.8.x before 1.8.8.2 and 10.x before 10.0.1, when the res_srtp module is used and media support is improperly configured, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted SDP message with a crypto attribute and a (1) video or (2) text media type, as demonstrated by CSipSimple.    4.3  Medium  2017-01-19  2012-01-26  View

Page 15535 of 17672, showing 5 records out of 88360 total, starting on record 77671, ending on 77675

Actions