NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
36821 | CVE-2013-0479 | IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 do not properly restrict file types and extensions, which allows remote authenticated users to bypass intended access restrictions via a crafted filename. | 2 | 4 | Medium | 2017-01-18 | 2013-10-11 | View | |
37333 | CVE-2013-1070 | Cross-site scripting (XSS) vulnerability in the API in Ubuntu Metal as a Service (MaaS) 1.2 and 1.4 allows remote attackers to inject arbitrary web script or HTML via the op parameter to nodes/. | 2 | 4.3 | Medium | 2017-01-18 | 2015-10-08 | View | |
38101 | CVE-2013-1978 | Heap-based buffer overflow in the read_xwd_cols function in file-xwd.c in the X Window Dump (XWD) plug-in in GIMP 2.6.9 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an X Window System (XWD) image dump with more colors than color map entries. | 2 | 6.8 | Medium | 2017-01-18 | 2016-12-02 | View | |
38357 | CVE-2013-2289 | Cross-site scripting (XSS) vulnerability in admin/templates/default.php in Batavi 1.2.2 allows remote attackers to inject arbitrary web script or HTML via the QUERY_STRING to admin/index.php. | 2 | 4.3 | Medium | 2017-01-18 | 2014-03-11 | View | |
38869 | CVE-2013-2970 | Unspecified vulnerability in IBM QRadar Security Information and Event Manager (SIEM) 7.x before 7.1 MR2 Patch 1 allows remote authenticated users to execute operating-system commands via unknown vectors. | 2 | 6.5 | Medium | 2017-01-18 | 2013-06-14 | View |
Page 16168 of 17672, showing 5 records out of 88360 total, starting on record 80836, ending on 80840