NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
40926  CVE-2013-5667  The Thecus NAS server N8800 with firmware 5.03.01 allows remote attackers to execute arbitrary commands via a get_userid action with shell metacharacters in the username parameter.    10  High  2017-01-18  2014-01-24  View
41182  CVE-2013-5968  Cross-site scripting (XSS) vulnerability in CA SiteMinder 12.0 through 12.51, and SiteMinder 6 Web Agents, allows remote attackers to inject arbitrary web script or HTML via vectors involving a " (double quote) character.    4.3  Medium  2017-01-18  2013-11-06  View
41694  CVE-2013-6815  The SHSTI_UPLOAD_XML function in the Application Server for ABAP (AS ABAP) in SAP NetWeaver 7.31 and earlier allows remote attackers to cause a denial of service via unspecified vectors, related to an XML External Entity (XXE) issue.    Medium  2017-01-18  2013-11-21  View
41950  CVE-2013-7189  Multiple SQL injection vulnerabilities in iScripts AutoHoster, possibly 2.4, allow remote attackers to execute arbitrary SQL commands via the cmbdomain parameter to (1) checktransferstatus.php, (2) checktransferstatusbck.php, or (3) additionalsettings.php; or (4) invno parameter to payinvoiceothers.php.    7.5  High  2017-01-18  2013-12-26  View
42206  CVE-2012-0061  The headerLoad function in lib/header.c in RPM before 4.9.1.3 does not properly validate region tags, which allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large region size in a package header.    6.8  Medium  2017-01-19  2016-09-08  View

Page 15654 of 17672, showing 5 records out of 88360 total, starting on record 78266, ending on 78270

Actions