NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
41198 | CVE-2013-5993 | Cross-site request forgery (CSRF) vulnerability in LOCKON EC-CUBE 2.11.0 through 2.13.0 allows remote attackers to hijack the authentication of arbitrary users via unspecified vectors related to refusals. | 2 | 6.8 | Medium | 2017-01-18 | 2013-11-21 | View | |
41454 | CVE-2013-6396 | The OpenStack Python client library for Swift (python-swiftclient) 1.0 through 1.9.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.8 | Medium | 2017-01-18 | 2014-02-20 | View | |
41966 | CVE-2013-7222 | config/initializers/secret_token.rb in Fat Free CRM before 0.12.1 has a fixed FatFreeCRM::Application.config.secret_token value, which makes it easier for remote attackers to spoof signed cookies by referring to the key in the source code. | 2 | 5 | Medium | 2017-01-18 | 2014-01-03 | View | |
42222 | CVE-2012-0079 | Unspecified vulnerability in Oracle OpenSSO 7.1 and 8.0 allows remote attackers to affect integrity via unknown vectors related to Administration. | 2 | 4.3 | Medium | 2017-01-19 | 2012-11-26 | View | |
42478 | CVE-2012-0362 | The extended ACL functionality in Cisco IOS 12.2(58)SE2 and 15.0(1)SE discards all lines that end with a log or time keyword, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by sending network traffic, aka Bug ID CSCts01106. | 2 | 4.3 | Medium | 2017-01-19 | 2012-10-30 | View |
Page 17045 of 17672, showing 5 records out of 88360 total, starting on record 85221, ending on 85225