NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 41671 | CVE-2013-6787 | SQL injection vulnerability in the check_user_password function in main/auth/profile.php in Chamilo LMS 1.9.6 and earlier, when using the non-encrypted passwords mode set at installation, allows remote authenticated users to execute arbitrary SQL commands via the "password0" parameter. | 2 | 6 | Medium | 2017-01-18 | 2013-12-27 | View | |
| 42439 | CVE-2012-0308 | Cross-site request forgery (CSRF) vulnerability in Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers to hijack the authentication of administrators. | 2 | 6.8 | Medium | 2017-01-19 | 2013-10-03 | View | |
| 42951 | CVE-2012-0897 | Stack-based buffer overflow in the JPEG2000 plugin in IrfanView PlugIns before 4.33 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a crafted Quantization Default (QCD) marker segment. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 43207 | CVE-2012-1203 | Cross-site request forgery (CSRF) vulnerability in starnet/index.php in SyndeoCMS 3.0 and earlier allows remote attackers to hijack the authentication of administrators for requests that add user accounts via a save_user action. | 2 | 6.8 | Medium | 2017-01-19 | 2014-12-29 | View | |
| 43463 | CVE-2012-1585 | OpenStack Compute (Nova) Essex before 2011.3 allows remote authenticated users to cause a denial of service (Nova-API log file and disk consumption) via a long server name. | 2 | 4 | Medium | 2017-01-19 | 2012-08-17 | View |
Page 15672 of 17672, showing 5 records out of 88360 total, starting on record 78356, ending on 78360