NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
40503  CVE-2013-5036  The Square Squash allows remote attackers to execute arbitrary code via a YAML document in the (1) namespace parameter to the deobfuscation function or (2) sourcemap parameter to the sourcemap function in app/controllers/api/v1_controller.rb.    7.5  High  2017-01-18  2014-05-28  View
41015  CVE-2013-5785  Unspecified vulnerability in the Oracle Reports Developer component in Oracle Fusion Middleware 11.1.1.6, 11.1.1.7, and 11.1.2.1 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Security and Authentication.    7.5  High  2017-01-18  2014-01-27  View
41271  CVE-2013-6129  The install/upgrade.php scripts in vBulletin 4.1 and 5 allow remote attackers to create administrative accounts via the customerid, htmldata[password], htmldata[confirmpassword], and htmldata[email] parameters, as exploited in the wild in October 2013.    7.5  High  2017-01-18  2013-11-21  View
41783  CVE-2013-6936  Multiple SQL injection vulnerabilities in ajaxfs.php in the Ajax forum stat (Ajaxfs) Plugin 2.0 for MyBB (aka MyBulletinBoard) allow remote attackers to execute arbitrary SQL commands via the (1) tooltip or (2) usertooltip parameter.    7.5  High  2017-01-18  2014-02-25  View
42295  CVE-2012-0155  Microsoft Internet Explorer 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, aka "VML Remote Code Execution Vulnerability."    9.3  High  2017-01-19  2016-10-24  View

Page 1825 of 17672, showing 5 records out of 88360 total, starting on record 9121, ending on 9125

Actions