NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
36153 | CVE-2014-9450 | Multiple SQL injection vulnerabilities in chart_bar.php in the frontend in Zabbix before 1.8.22, 2.0.x before 2.0.14, and 2.2.x before 2.2.8 allow remote attackers to execute arbitrary SQL commands via the (1) itemid or (2) periods parameter. | 2 | 7.5 | High | 2017-01-19 | 2015-01-05 | View | |
36665 | CVE-2013-0318 | The admin page in the Banckle Chat module for Drupal does not properly restrict access, which allows remote attackers to bypass intended restrictions via unspecified vectors. | 2 | 10 | High | 2017-01-18 | 2013-03-28 | View | |
36921 | CVE-2013-0618 | Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "logic error," a different vulnerability than CVE-2013-0607, CVE-2013-0608, CVE-2013-0611, and CVE-2013-0614. | 2 | 10 | High | 2017-01-18 | 2013-11-02 | View | |
37433 | CVE-2013-1185 | The web interface in the Manager component in Cisco Unified Computing System (UCS) 1.x and 2.x before 2.0(2m) allows remote attackers to obtain sensitive information by reading a (1) technical-support bundle file or (2) on-device configuration backup, aka Bug ID CSCtq86543. | 2 | 9.3 | High | 2017-01-18 | 2013-04-25 | View | |
38201 | CVE-2013-2094 | The perf_swevent_init function in kernel/events/core.c in the Linux kernel before 3.8.9 uses an incorrect integer data type, which allows local users to gain privileges via a crafted perf_event_open system call. | 2 | 7.2 | High | 2017-01-18 | 2017-01-06 | View |
Page 1874 of 17672, showing 5 records out of 88360 total, starting on record 9366, ending on 9370