NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
39727 | CVE-2013-4044 | IBM SPSS Collaboration and Deployment Services 4.2.1 before 4.2.1.3 IF3 and 5.0 before FP3 allows remote authenticated users to read application log files via a direct HTTP request. | 2 | 4 | Medium | 2017-01-18 | 2013-12-23 | View | |
40495 | CVE-2013-5028 | SQL injection vulnerability in IT/hardware-list.dll in Kwoksys Kwok Information Server before 2.8.5 allows remote authenticated users to execute arbitrary SQL commands via the (1) hardwareType, (2) hardwareStatus, or (3) hardwareLocation parameter in a search command. | 2 | 6.5 | Medium | 2017-01-18 | 2013-10-15 | View | |
40751 | CVE-2013-5462 | IBM/ECMClient/configure/explodedformat/navigator/header.jsp in IBM Content Navigator 2.0.0, 2.0.1 before 2.0.1.2-ICN-FP002, and 2.0.2 before 2.0.2.1-ICN-FP001 allows remote attackers to conduct clickjacking attacks via vectors involving FRAME elements. | 2 | 4.3 | Medium | 2017-01-18 | 2013-12-20 | View | |
41519 | CVE-2013-6470 | The default configuration in the standalone controller quickstack manifest in openstack-foreman-installer, as used in Red Hat Enterprise Linux OpenStack Platform 4.0, disables authentication for Qpid, which allows remote attackers to gain access by connecting to Qpid. | 2 | 5 | Medium | 2017-01-18 | 2014-06-03 | View | |
42031 | CVE-2013-7302 | Session fixation vulnerability in the Ubercart module 6.x-2.x before 6.x-2.13 and 7.x-3.x before 7.x-3.6 for Drupal, when the "Log in new customers after checkout" option is enabled, allows remote attackers to hijack web sessions by leveraging knowledge of the original session ID. | 2 | 6.8 | Medium | 2017-01-18 | 2014-04-30 | View |
Page 1718 of 17672, showing 5 records out of 88360 total, starting on record 8586, ending on 8590