NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
40471 | CVE-2013-5001 | Cross-site scripting (XSS) vulnerability in libraries/plugins/transformations/abstract/TextLinkTransformationsPlugin.class.php in phpMyAdmin 4.0.x before 4.0.4.2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted object name associated with a TextLinkTransformationPlugin link. | 2 | 3.5 | Low | 2017-01-18 | 2013-07-31 | View | |
40727 | CVE-2013-5429 | The Risk Based Access functionality in IBM Tivoli Federated Identity Manager (TFIM) 6.2.2 before FP9 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) 6.2.2 before FP9 does not prevent reuse of One Time Password (OTP) tokens, which makes it easier for remote authenticated users to complete transactions by leveraging access to an already-used token. | 2 | 2.1 | Low | 2017-01-18 | 2014-01-22 | View | |
40983 | CVE-2013-5751 | Directory traversal vulnerability in SAP NetWeaver 7.x allows remote attackers to read arbitrary files via unspecified vectors. | 2 | 5 | Medium | 2017-01-18 | 2013-10-02 | View | |
41239 | CVE-2013-6038 | Stack-based buffer overflow in Trimble SketchUp Viewer 13.0.4124 allows remote attackers to execute arbitrary code via a crafted .SKP file. | 2 | 6.8 | Medium | 2017-01-18 | 2015-07-27 | View | |
41495 | CVE-2013-6439 | Candlepin in Red Hat Subscription Asset Manager 1.0 through 1.3 uses a weak authentication scheme when the configuration file does not specify a scheme, which has unspecified impact and attack vectors. | 2 | 9.3 | High | 2017-01-18 | 2014-01-17 | View |
Page 1961 of 17672, showing 5 records out of 88360 total, starting on record 9801, ending on 9805