NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
36592 | CVE-2013-0236 | Multiple cross-site scripting (XSS) vulnerabilities in WordPress before 3.5.1 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) gallery shortcodes or (2) the content of a post. | 2 | 4.3 | Medium | 2017-01-18 | 2013-07-08 | View | |
36848 | CVE-2013-0518 | IBM Sterling Secure Proxy 3.2.0 and 3.3.01 before 3.3.01.23 Interim Fix 1, 3.4.0 before 3.4.0.6 Interim Fix 1, and 3.4.1 before 3.4.1.7 does not refuse to be rendered in different-origin frames, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site. | 2 | 4.3 | Medium | 2017-01-18 | 2013-05-10 | View | |
37104 | CVE-2013-0834 | Google Chrome before 24.0.1312.52 allows remote attackers to cause a denial of service (out-of-bounds read) via vectors involving glyphs. | 2 | 5 | Medium | 2017-01-18 | 2016-10-13 | View | |
37360 | CVE-2013-1110 | Cisco WebEx Training Center allow remote authenticated users to bypass intended privilege restrictions and (1) enable or (2) disable training-center recordings via a crafted URL, aka Bug ID CSCzu81065. | 2 | 4 | Medium | 2017-01-18 | 2013-02-02 | View | |
37616 | CVE-2013-1398 | The pe_mcollective module in Puppet Enterprise (PE) before 2.7.1 does not properly restrict access to a catalog of private SSL keys, which allows remote authenticated users to obtain sensitive information and gain privileges by leveraging root access to a node, related to the master role. | 2 | 8.5 | High | 2017-01-18 | 2014-03-25 | View |
Page 16745 of 17672, showing 5 records out of 88360 total, starting on record 83721, ending on 83725