NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
39911 | CVE-2013-4284 | Cumin, as used in Red Hat Enterprise MRG 2.4, allows remote attackers to cause a denial of service (CPU and memory consumption) via a crafted Ajax update request. | 2 | 5 | Medium | 2017-01-18 | 2013-10-10 | View | |
40423 | CVE-2013-4939 | Cross-site scripting (XSS) vulnerability in io.swf in the IO Utility component in Yahoo! YUI 3.0.0 through 3.9.1, as used in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2.4.x before 2.4.5, 2.5.x before 2.5.1, and other products, allows remote attackers to inject arbitrary web script or HTML via a crafted string in a URL. | 2 | 4.3 | Medium | 2017-01-18 | 2013-07-29 | View | |
41191 | CVE-2013-5983 | Multiple cross-site scripting (XSS) vulnerabilities in GuppY before 4.6.28 allow remote attackers to inject arbitrary web script or HTML via the (1) "an" parameter to agenda.php or (2) cat parameter to mobile/thread.php. | 2 | 4.3 | Medium | 2017-01-18 | 2014-02-07 | View | |
41447 | CVE-2013-6388 | Cross-site scripting (XSS) vulnerability in the Color module in Drupal 7.x before 7.24 allows remote attackers to inject arbitrary web script or HTML via vectors related to CSS. | 2 | 4.3 | Medium | 2017-01-18 | 2014-01-03 | View | |
41959 | CVE-2013-7205 | Off-by-one error in the process_cgivars function in contrib/daemonchk.c in Nagios Core 3.5.1, 4.0.2, and earlier allows remote authenticated users to obtain sensitive information from process memory or cause a denial of service (crash) via a long string in the last key value in the variable list, which triggers a heap-based buffer over-read. | 2 | 6.4 | Medium | 2017-01-18 | 2016-11-28 | View |
Page 16811 of 17672, showing 5 records out of 88360 total, starting on record 84051, ending on 84055