NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
39713  CVE-2013-4025  IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x do not have an off autocomplete attribute for the login-password field, which makes it easier for remote attackers to obtain access by leveraging an unattended workstation.    1.9  Low  2017-01-18  2013-09-25  View
39969  CVE-2013-4350  The IPv6 SCTP implementation in net/sctp/ipv6.c in the Linux kernel through 3.11.1 uses data structures and function calls that do not trigger an intended configuration of IPsec encryption, which allows remote attackers to obtain sensitive information by sniffing the network.    Medium  2017-01-18  2014-01-03  View
40225  CVE-2013-4672  The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 has an incorrect sudoers file, which allows local users to bypass intended access restrictions via a command.    7.2  High  2017-01-18  2014-01-17  View
40481  CVE-2013-5013  Multiple cross-site scripting (XSS) vulnerabilities in the management console on the Symantec Web Gateway (SWG) appliance before 5.2 allow remote attackers to inject arbitrary web script or HTML via (1) vectors involving PHP scripts and (2) unspecified other vectors.    4.3  Medium  2017-01-18  2015-07-30  View
40737  CVE-2013-5446  The console on IBM WebSphere DataPower XC10 appliances 2.1.0 and 2.5.0 does not properly process logoff actions, which has unspecified impact and remote attack vectors.    10  High  2017-01-18  2013-10-22  View

Page 2026 of 17672, showing 5 records out of 88360 total, starting on record 10126, ending on 10130

Actions