NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
41671  CVE-2013-6787  SQL injection vulnerability in the check_user_password function in main/auth/profile.php in Chamilo LMS 1.9.6 and earlier, when using the non-encrypted passwords mode set at installation, allows remote authenticated users to execute arbitrary SQL commands via the "password0" parameter.    Medium  2017-01-18  2013-12-27  View
42439  CVE-2012-0308  Cross-site request forgery (CSRF) vulnerability in Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers to hijack the authentication of administrators.    6.8  Medium  2017-01-19  2013-10-03  View
42951  CVE-2012-0897  Stack-based buffer overflow in the JPEG2000 plugin in IrfanView PlugIns before 4.33 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a crafted Quantization Default (QCD) marker segment.    6.8  Medium  2017-01-19  2016-12-30  View
43207  CVE-2012-1203  Cross-site request forgery (CSRF) vulnerability in starnet/index.php in SyndeoCMS 3.0 and earlier allows remote attackers to hijack the authentication of administrators for requests that add user accounts via a save_user action.    6.8  Medium  2017-01-19  2014-12-29  View
43463  CVE-2012-1585  OpenStack Compute (Nova) Essex before 2011.3 allows remote authenticated users to cause a denial of service (Nova-API log file and disk consumption) via a long server name.    Medium  2017-01-19  2012-08-17  View

Page 15672 of 17672, showing 5 records out of 88360 total, starting on record 78356, ending on 78360

Actions