NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
40420  CVE-2013-4936  The IsDFP_Frame function in plugins/profinet/packet-pn-rt.c in the PROFINET Real-Time dissector in Wireshark 1.10.x before 1.10.1 does not validate MAC addresses, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted packet.    Medium  2017-01-18  2015-12-14  View
41188  CVE-2013-5976  Cross-site scripting (XSS) vulnerability in the access policy logout page (logout.inc) in F5 BIG-IP APM 10.1.0 through 10.2.4 and 11.1.0 through 11.3.0 allows remote attackers to inject arbitrary web script or HTML via the LastMRH_Session cookie.    4.3  Medium  2017-01-18  2013-10-30  View
41444  CVE-2013-6385  The form API in Drupal 6.x before 6.29 and 7.x before 7.24, when used with unspecified third-party modules, performs form validation even when CSRF validation has failed, which might allow remote attackers to trigger application-specific impacts such as arbitrary code execution via application-specific vectors.    5.1  Medium  2017-01-18  2014-01-13  View
41700  CVE-2013-6821  Directory traversal vulnerability in the Exportability Check Service in SAP NetWeaver allows remote attackers to read arbitrary files via unspecified vectors.    Medium  2017-01-18  2013-11-20  View
41956  CVE-2013-7195  PHPFox 3.7.3 and 3.7.4 allows remote authenticated users to bypass intended "Only Me" restrictions and "like" a publication via a request that specifies the ID for the publication.    5.5  Medium  2017-01-18  2014-04-21  View

Page 16709 of 17672, showing 5 records out of 88360 total, starting on record 83541, ending on 83545

Actions