NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 40926 | CVE-2013-5667 | The Thecus NAS server N8800 with firmware 5.03.01 allows remote attackers to execute arbitrary commands via a get_userid action with shell metacharacters in the username parameter. | 2 | 10 | High | 2017-01-18 | 2014-01-24 | View | |
| 41182 | CVE-2013-5968 | Cross-site scripting (XSS) vulnerability in CA SiteMinder 12.0 through 12.51, and SiteMinder 6 Web Agents, allows remote attackers to inject arbitrary web script or HTML via vectors involving a " (double quote) character. | 2 | 4.3 | Medium | 2017-01-18 | 2013-11-06 | View | |
| 41694 | CVE-2013-6815 | The SHSTI_UPLOAD_XML function in the Application Server for ABAP (AS ABAP) in SAP NetWeaver 7.31 and earlier allows remote attackers to cause a denial of service via unspecified vectors, related to an XML External Entity (XXE) issue. | 2 | 5 | Medium | 2017-01-18 | 2013-11-21 | View | |
| 41950 | CVE-2013-7189 | Multiple SQL injection vulnerabilities in iScripts AutoHoster, possibly 2.4, allow remote attackers to execute arbitrary SQL commands via the cmbdomain parameter to (1) checktransferstatus.php, (2) checktransferstatusbck.php, or (3) additionalsettings.php; or (4) invno parameter to payinvoiceothers.php. | 2 | 7.5 | High | 2017-01-18 | 2013-12-26 | View | |
| 42206 | CVE-2012-0061 | The headerLoad function in lib/header.c in RPM before 4.9.1.3 does not properly validate region tags, which allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large region size in a package header. | 2 | 6.8 | Medium | 2017-01-19 | 2016-09-08 | View |
Page 15654 of 17672, showing 5 records out of 88360 total, starting on record 78266, ending on 78270