NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
38088 | CVE-2013-1963 | The contacts application in ownCloud before 4.5.10 and 5.x before 5.0.5 does not properly check the ownership of contacts, which allows remote authenticated users to download arbitrary contacts via unspecified vectors. | 2 | 4 | Medium | 2017-01-18 | 2014-03-17 | View | |
38856 | CVE-2013-2953 | IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 relies on the MD5 algorithm for signatures in X.509 certificates, which makes it easier for man-in-the-middle attackers to spoof SSL servers via a crafted certificate. | 2 | 4.3 | Medium | 2017-01-18 | 2013-05-28 | View | |
39112 | CVE-2013-3279 | EMC Atmos before 2.1.4 has a blank password for the PostgreSQL account, which allows remote attackers to obtain sensitive administrative information via a database-server connection. | 2 | 5 | Medium | 2017-01-18 | 2013-10-17 | View | |
39368 | CVE-2013-3601 | Coursemill Learning Management System (LMS) 6.6 does not properly restrict JSP function calls, which allows remote authenticated users to perform arbitrary JSP operations by leveraging the Student role and providing an op parameter. | 2 | 6 | Medium | 2017-01-18 | 2013-09-30 | View | |
39624 | CVE-2013-3909 | Microsoft Internet Explorer 6 through 8 allows remote attackers to read content from a different (1) domain or (2) zone via crafted characters in Cascading Style Sheets (CSS) token sequences, aka "Internet Explorer Information Disclosure Vulnerability." | 2 | 4.3 | Medium | 2017-01-18 | 2013-12-19 | View |
Page 15706 of 17672, showing 5 records out of 88360 total, starting on record 78526, ending on 78530