NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
40420 | CVE-2013-4936 | The IsDFP_Frame function in plugins/profinet/packet-pn-rt.c in the PROFINET Real-Time dissector in Wireshark 1.10.x before 1.10.1 does not validate MAC addresses, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted packet. | 2 | 5 | Medium | 2017-01-18 | 2015-12-14 | View | |
41188 | CVE-2013-5976 | Cross-site scripting (XSS) vulnerability in the access policy logout page (logout.inc) in F5 BIG-IP APM 10.1.0 through 10.2.4 and 11.1.0 through 11.3.0 allows remote attackers to inject arbitrary web script or HTML via the LastMRH_Session cookie. | 2 | 4.3 | Medium | 2017-01-18 | 2013-10-30 | View | |
41444 | CVE-2013-6385 | The form API in Drupal 6.x before 6.29 and 7.x before 7.24, when used with unspecified third-party modules, performs form validation even when CSRF validation has failed, which might allow remote attackers to trigger application-specific impacts such as arbitrary code execution via application-specific vectors. | 2 | 5.1 | Medium | 2017-01-18 | 2014-01-13 | View | |
41700 | CVE-2013-6821 | Directory traversal vulnerability in the Exportability Check Service in SAP NetWeaver allows remote attackers to read arbitrary files via unspecified vectors. | 2 | 5 | Medium | 2017-01-18 | 2013-11-20 | View | |
41956 | CVE-2013-7195 | PHPFox 3.7.3 and 3.7.4 allows remote authenticated users to bypass intended "Only Me" restrictions and "like" a publication via a request that specifies the ID for the publication. | 2 | 5.5 | Medium | 2017-01-18 | 2014-04-21 | View |
Page 16709 of 17672, showing 5 records out of 88360 total, starting on record 83541, ending on 83545