NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
40698 | CVE-2013-5395 | IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.5 allows remote attackers to bypass intended access restrictions via unspecified vectors. | 2 | 7.5 | High | 2017-01-18 | 2013-10-10 | View | |
40954 | CVE-2013-5706 | Multiple cross-site scripting (XSS) vulnerabilities in Coursemill Learning Management System (LMS) 6.8 allow remote attackers to inject arbitrary web script or HTML via vectors related to error messages and (1) crafted event attributes or (2) > (greater than) characters that are optional within a browser"s HTML implementation, a different issue than CVE-2013-3603. | 2 | 4.3 | Medium | 2017-01-18 | 2013-09-06 | View | |
41210 | CVE-2013-6005 | Cross-site scripting (XSS) vulnerability in Cybozu Dezie before 8.1.0 allows remote attackers to inject arbitrary web script or HTML via vectors related to the Cancel button. | 2 | 4.3 | Medium | 2017-01-18 | 2013-12-16 | View | |
41466 | CVE-2013-6408 | The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407. | 2 | 6.4 | Medium | 2017-01-18 | 2014-07-17 | View | |
41722 | CVE-2013-6858 | Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2013.2 and earlier allow local users to inject arbitrary web script or HTML via an instance name to (1) "Volumes" or (2) "Network Topology" page. | 2 | 1.9 | Low | 2017-01-18 | 2016-12-21 | View |
Page 17354 of 17672, showing 5 records out of 88360 total, starting on record 86766, ending on 86770