NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
38884 | CVE-2013-2992 | The Search component in IBM WebSphere Commerce 7.0 FP4 through FP6, in certain search-term association configurations, allows remote attackers to cause a denial of service via a crafted query. | 2 | 4.3 | Medium | 2017-01-18 | 2013-09-18 | View | |
39396 | CVE-2013-3639 | Multiple cross-site scripting (XSS) vulnerabilities in Xaraya 2.4.0-b1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) id, (2) interface, (3) name, or (4) tabmodule parameter to index.php. | 2 | 4.3 | Medium | 2017-01-18 | 2014-02-24 | View | |
39652 | CVE-2013-3951 | sys/openbsd/stack_protector.c in libc in Apple iOS 6.1.3 and Mac OS X 10.8.x does not properly parse the Apple strings employed in the user-space stack-cookie implementation, which allows local users to bypass cookie randomization by executing a program with a call-path beginning with the stack-guard= substring, as demonstrated by an iOS untethering attack or an attack against a setuid Mac OS X program. | 2 | 4.6 | Medium | 2017-01-18 | 2016-12-07 | View | |
39908 | CVE-2013-4279 | imapsync 1.564 and earlier performs a release check by default, which sends sensitive information (imapsync, operating system, and Perl version) to the developer"s site. | 2 | 5 | Medium | 2017-01-18 | 2014-04-21 | View | |
40164 | CVE-2013-4574 | Cross-site scripting (XSS) vulnerability in the TimeMediaHandler extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to videos. | 2 | 4.3 | Medium | 2017-01-18 | 2014-05-12 | View |
Page 16708 of 17672, showing 5 records out of 88360 total, starting on record 83536, ending on 83540