NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
41721 | CVE-2013-6853 | Cross-site scripting (XSS) vulnerability in clickstream.js in Y! Toolbar plugin for FireFox 3.1.0.20130813024103 for Mac, and 2.5.9.2013418100420 for Windows, allows remote attackers to inject arbitrary web script or HTML via a crafted URL that is stored by the victim. | 2 | 4.3 | Medium | 2017-01-18 | 2014-02-24 | View | |
41977 | CVE-2013-7239 | memcached before 1.4.17 allows remote attackers to bypass authentication by sending an invalid request with SASL credentials, then sending another request with incorrect SASL credentials. | 2 | 4.8 | Medium | 2017-01-18 | 2014-01-23 | View | |
42745 | CVE-2012-0656 | Race condition in LoginUIFramework in Apple Mac OS X 10.7.x before 10.7.4, when the Guest account is enabled, allows physically proximate attackers to login to arbitrary accounts by entering the account name and no password. | 2 | 6.9 | Medium | 2017-01-19 | 2012-05-29 | View | |
43001 | CVE-2012-0956 | ubiquity-slideshow-ubuntu before 58.2, during installation, allows remote man-in-the-middle attackers to execute arbitrary web script or HTML and read arbitrary files via a crafted attribute in the <a> tag of a Twitter feed. | 2 | 6.8 | Medium | 2017-01-19 | 2012-10-04 | View | |
43257 | CVE-2012-1289 | Multiple directory traversal vulnerabilities in SAP NetWeaver 7.0 allow remote authenticated users to read arbitrary files via a .. (dot dot) in the logfilename parameter to (1) b2b/admin/log.jsp or (2) b2b/admin/log_view.jsp in the Internet Sales (crm.b2b) component, or (3) ipc/admin/log.jsp or (4) ipc/admin/log_view.jsp in the Application Administration (com.sap.ipc.webapp.ipc) component. | 2 | 4 | Medium | 2017-01-19 | 2012-02-24 | View |
Page 17455 of 17672, showing 5 records out of 88360 total, starting on record 87271, ending on 87275