NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
37590 | CVE-2013-1364 | The user.login function in Zabbix before 1.8.16 and 2.x before 2.0.5rc1 allows remote attackers to override LDAP configuration via the cnf parameter. | 2 | 5 | Medium | 2017-01-18 | 2013-12-16 | View | |
38102 | CVE-2013-1979 | The scm_set_cred function in include/net/scm.h in the Linux kernel before 3.8.11 uses incorrect uid and gid values during credentials passing, which allows local users to gain privileges via a crafted application. | 2 | 6.9 | Medium | 2017-01-18 | 2014-12-06 | View | |
38358 | CVE-2013-2290 | Cross-site scripting (XSS) vulnerability in the dashboard of the ArubaOS Administration WebUI in Aruba Networks ArubaOS 6.2.x before 6.2.0.3, 6.1.3.x before 6.1.3.7, 6.1.x-FIPS before 6.1.4.3-FIPS, and 6.1.x-AirGroup before 6.1.3.6-AirGroup, as used by Mobility Controller, allows remote wireless access points to inject arbitrary web script or HTML via a crafted SSID. | 2 | 4.3 | Medium | 2017-01-18 | 2013-03-29 | View | |
39126 | CVE-2013-3300 | The JsonParser class in json/JsonParser.scala in Lift before 2.5 interprets a certain end-index value as a length value, which allows remote authenticated users to obtain sensitive information from other users" sessions via invalid input data containing a < (less than) character. | 2 | 4 | Medium | 2017-01-18 | 2013-07-29 | View | |
39638 | CVE-2013-3925 | Atlassian Crowd 2.5.x before 2.5.4, 2.6.x before 2.6.3, 2.3.8, and 2.4.9 allows remote attackers to read arbitrary files and send HTTP requests to intranet servers via a request to (1) /services/2 or (2) services/latest with a DTD containing an XML external entity declaration in conjunction with an entity reference. | 2 | 5.8 | Medium | 2017-01-18 | 2013-07-02 | View |
Page 16203 of 17672, showing 5 records out of 88360 total, starting on record 81011, ending on 81015