NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
41242 | CVE-2013-6041 | index.php in Softaculous Webuzo before 2.1.4 allows remote attackers to execute arbitrary commands via shell metacharacters in a SOFTCookies sid cookie within a login action. | 2 | 7.5 | High | 2017-01-18 | 2015-01-08 | View | |
41498 | CVE-2013-6442 | The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6 removes an ACL during use of a --chown or --chgrp option, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging an unintended administrative change. | 2 | 5.8 | Medium | 2017-01-18 | 2017-01-06 | View | |
41754 | CVE-2013-6902 | Cross-site scripting (XSS) vulnerability in the Space function in Cybozu Garoon before 3.7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-18 | 2014-01-03 | View | |
42010 | CVE-2013-7277 | Multiple cross-site scripting (XSS) vulnerabilities in Andy"s PHP Knowledgebase (Aphpkb) before 0.95.8 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP Referer header to saa.php, (2) username parameter to login.php, or (3) keyword_list parameter to keysearch.php. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-30 | View | |
42266 | CVE-2012-0123 | Unspecified vulnerability in HP Data Protector Express (aka DPX) 5.0.00 before build 59287 and 6.0.00 before build 11974 allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors, aka ZDI-CAN-1498. | 2 | 10 | High | 2017-01-19 | 2012-03-14 | View |
Page 1814 of 17672, showing 5 records out of 88360 total, starting on record 9066, ending on 9070