NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
36592  CVE-2013-0236  Multiple cross-site scripting (XSS) vulnerabilities in WordPress before 3.5.1 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) gallery shortcodes or (2) the content of a post.    4.3  Medium  2017-01-18  2013-07-08  View
36848  CVE-2013-0518  IBM Sterling Secure Proxy 3.2.0 and 3.3.01 before 3.3.01.23 Interim Fix 1, 3.4.0 before 3.4.0.6 Interim Fix 1, and 3.4.1 before 3.4.1.7 does not refuse to be rendered in different-origin frames, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.    4.3  Medium  2017-01-18  2013-05-10  View
37104  CVE-2013-0834  Google Chrome before 24.0.1312.52 allows remote attackers to cause a denial of service (out-of-bounds read) via vectors involving glyphs.    Medium  2017-01-18  2016-10-13  View
37360  CVE-2013-1110  Cisco WebEx Training Center allow remote authenticated users to bypass intended privilege restrictions and (1) enable or (2) disable training-center recordings via a crafted URL, aka Bug ID CSCzu81065.    Medium  2017-01-18  2013-02-02  View
37616  CVE-2013-1398  The pe_mcollective module in Puppet Enterprise (PE) before 2.7.1 does not properly restrict access to a catalog of private SSL keys, which allows remote authenticated users to obtain sensitive information and gain privileges by leveraging root access to a node, related to the master role.    8.5  High  2017-01-18  2014-03-25  View

Page 16745 of 17672, showing 5 records out of 88360 total, starting on record 83721, ending on 83725

Actions