NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
38879 | CVE-2013-2984 | Directory traversal vulnerability in IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allows remote authenticated users to read or modify files via unspecified vectors. | 2 | 6.5 | Medium | 2017-01-18 | 2013-07-03 | View | |
39391 | CVE-2013-3630 | Moodle through 2.5.2 allows remote authenticated administrators to execute arbitrary programs by configuring the aspell pathname and then triggering a spell-check operation within the TinyMCE editor. | 2 | 4.6 | Medium | 2017-01-18 | 2014-03-07 | View | |
39903 | CVE-2013-4273 | The Entity API module 7.x-1.x before 7.x-1.2 for Drupal does not properly restrict access to node comments, which allows remote authenticated users to read the comments via unspecified vectors. NOTE: this identifier was SPLIT per ADT5 due to different researcher organizations. CVE-2013-7391 was assigned for the View vector. | 2 | 4 | Medium | 2017-01-18 | 2015-02-27 | View | |
40159 | CVE-2013-4568 | Incomplete blacklist vulnerability in Sanitizer::checkCss in MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3 allows remote attackers to conduct cross-site scripting (XSS) attacks via certain non-ASCII characters in CSS, as demonstrated using variations of "expression" containing (1) full width characters or (2) IPA extensions, which are converted and rendered by Internet Explorer. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-30 | View | |
40415 | CVE-2013-4931 | epan/proto.c in Wireshark 1.8.x before 1.8.9 and 1.10.x before 1.10.1 allows remote attackers to cause a denial of service (loop) via a crafted packet that is not properly handled by the GSM RR dissector. | 2 | 5 | Medium | 2017-01-18 | 2014-09-23 | View |
Page 16521 of 17672, showing 5 records out of 88360 total, starting on record 82601, ending on 82605