NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
39426  CVE-2013-3671  The format_line function in log.c in libavutil in FFmpeg before 1.2.1 uses inapplicable offset data during a certain category calculation, which allows remote attackers to cause a denial of service (invalid pointer dereference and application crash) via crafted data that triggers a log message.    4.3  Medium  2017-01-18  2013-06-10  View
39682  CVE-2013-3988  The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 allows remote attackers to conduct clickjacking attacks via unspecified vectors.    6.8  Medium  2017-01-18  2014-02-18  View
39938  CVE-2013-4313  Moodle through 2.2.11, 2.3.x before 2.3.9, 2.4.x before 2.4.6, and 2.5.x before 2.5.2 does not prevent use of "" characters in query strings, which might allow remote attackers to conduct SQL injection attacks against Microsoft SQL Server via a crafted string.    7.5  High  2017-01-18  2013-09-25  View
40194  CVE-2013-4617  Jahia xCM before 6.6.2 does not include the HTTPOnly flag in a Set-Cookie header for the JSESSIONID cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.    Medium  2017-01-18  2013-11-29  View
40450  CVE-2013-4967  Puppet Enterprise before 3.0.1 allows remote attackers to obtain the database password via vectors related to how the password is "seeded as a console parameter," External Node Classifiers, and the lack of access control for /nodes.    Medium  2017-01-18  2013-10-07  View

Page 161 of 17672, showing 5 records out of 88360 total, starting on record 801, ending on 805

Actions