NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
37590  CVE-2013-1364  The user.login function in Zabbix before 1.8.16 and 2.x before 2.0.5rc1 allows remote attackers to override LDAP configuration via the cnf parameter.    Medium  2017-01-18  2013-12-16  View
38102  CVE-2013-1979  The scm_set_cred function in include/net/scm.h in the Linux kernel before 3.8.11 uses incorrect uid and gid values during credentials passing, which allows local users to gain privileges via a crafted application.    6.9  Medium  2017-01-18  2014-12-06  View
38358  CVE-2013-2290  Cross-site scripting (XSS) vulnerability in the dashboard of the ArubaOS Administration WebUI in Aruba Networks ArubaOS 6.2.x before 6.2.0.3, 6.1.3.x before 6.1.3.7, 6.1.x-FIPS before 6.1.4.3-FIPS, and 6.1.x-AirGroup before 6.1.3.6-AirGroup, as used by Mobility Controller, allows remote wireless access points to inject arbitrary web script or HTML via a crafted SSID.    4.3  Medium  2017-01-18  2013-03-29  View
39126  CVE-2013-3300  The JsonParser class in json/JsonParser.scala in Lift before 2.5 interprets a certain end-index value as a length value, which allows remote authenticated users to obtain sensitive information from other users" sessions via invalid input data containing a < (less than) character.    Medium  2017-01-18  2013-07-29  View
39638  CVE-2013-3925  Atlassian Crowd 2.5.x before 2.5.4, 2.6.x before 2.6.3, 2.3.8, and 2.4.9 allows remote attackers to read arbitrary files and send HTTP requests to intranet servers via a request to (1) /services/2 or (2) services/latest with a DTD containing an XML external entity declaration in conjunction with an entity reference.    5.8  Medium  2017-01-18  2013-07-02  View

Page 16203 of 17672, showing 5 records out of 88360 total, starting on record 81011, ending on 81015

Actions