NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
41212 | CVE-2013-6009 | CRLF injection vulnerability in Open-Xchange AppSuite before 7.2.2, when using AJP in certain conditions, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the ajax/defer servlet. | 2 | 4.3 | Medium | 2017-01-18 | 2013-10-04 | View | |
41468 | CVE-2013-6410 | nbd-server in Network Block Device (nbd) before 3.5 does not properly check IP addresses, which might allow remote attackers to bypass intended access restrictions via an IP address that has a partial match in the authfile configuration file. | 2 | 7.5 | High | 2017-01-18 | 2016-11-28 | View | |
41724 | CVE-2013-6860 | Unspecified vulnerability in SAP Sybase Adaptive Server Enterprise (ASE) before 15.0.3 ESD#4.3, 15.5 before 15.5 ESD#5.3, and 15.7 before 15.7 SP50 or 15.7 SP100 allows remote authenticated users to obtain sensitive information via unspecified vectors. | 2 | 6.8 | Medium | 2017-01-18 | 2013-11-27 | View | |
41980 | CVE-2013-7242 | SQL injection vulnerability in zp-core/zp-extensions/wordpress_import.php in Zenphoto before 1.4.5.4 allows remote authenticated administrators to execute arbitrary SQL commands via the tableprefix parameter. | 2 | 6.5 | Medium | 2017-01-18 | 2016-12-30 | View | |
42236 | CVE-2012-0093 | Unspecified vulnerability in the Oracle Imaging and Process Management component in Oracle Fusion Middleware 10.1.3.6.0 allows remote attackers to affect integrity via unknown vectors related to Web, a different vulnerability than CVE-2012-0071. | 2 | 4.3 | Medium | 2017-01-19 | 2016-11-22 | View |
Page 17475 of 17672, showing 5 records out of 88360 total, starting on record 87371, ending on 87375