NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
39672 | CVE-2013-3977 | The Meeting Server in IBM Sametime 8.x through 8.5.2.1 and 9.x through 9.0.0.1 allows remote attackers to determine which meeting rooms are owned by a user by leveraging knowledge of valid user names. | 2 | 4.3 | Medium | 2017-01-18 | 2014-07-16 | View | |
39928 | CVE-2013-4301 | includes/resourceloader/ResourceLoaderContext.php in MediaWiki 1.19.x before 1.19.8, 1.20.x before 1.20.7, and 1.21.x before 1.21.2 allows remote attackers to obtain sensitive information via a "<" (open angle bracket) character in the lang parameter to w/load.php, which reveals the installation path in an error message. | 2 | 5 | Medium | 2017-01-18 | 2013-10-28 | View | |
40184 | CVE-2013-4604 | Fortinet FortiOS before 5.0.3 on FortiGate devices does not properly restrict Guest capabilities, which allows remote authenticated users to read, modify, or delete the records of arbitrary users by leveraging the Guest role. | 2 | 6.5 | Medium | 2017-01-18 | 2013-06-26 | View | |
40952 | CVE-2013-5704 | The mod_headers module in the Apache HTTP Server 2.2.22 allows remote attackers to bypass "RequestHeader unset" directives by placing a header in the trailer portion of data sent with chunked transfer coding. NOTE: the vendor states "this is not a security issue in httpd as such." | 2 | 5 | Medium | 2017-01-18 | 2017-01-06 | View | |
41720 | CVE-2013-6852 | Cross-site request forgery (CSRF) vulnerability in html/json.html on HP 2620 switches allows remote attackers to hijack the authentication of administrators for requests that change an administrative password via the setPassword method. | 2 | 6.8 | Medium | 2017-01-18 | 2013-11-22 | View |
Page 17417 of 17672, showing 5 records out of 88360 total, starting on record 87081, ending on 87085