NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 39713 | CVE-2013-4025 | IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x do not have an off autocomplete attribute for the login-password field, which makes it easier for remote attackers to obtain access by leveraging an unattended workstation. | 2 | 1.9 | Low | 2017-01-18 | 2013-09-25 | View | |
| 39969 | CVE-2013-4350 | The IPv6 SCTP implementation in net/sctp/ipv6.c in the Linux kernel through 3.11.1 uses data structures and function calls that do not trigger an intended configuration of IPsec encryption, which allows remote attackers to obtain sensitive information by sniffing the network. | 2 | 5 | Medium | 2017-01-18 | 2014-01-03 | View | |
| 40225 | CVE-2013-4672 | The management console on the Symantec Web Gateway (SWG) appliance before 5.1.1 has an incorrect sudoers file, which allows local users to bypass intended access restrictions via a command. | 2 | 7.2 | High | 2017-01-18 | 2014-01-17 | View | |
| 40481 | CVE-2013-5013 | Multiple cross-site scripting (XSS) vulnerabilities in the management console on the Symantec Web Gateway (SWG) appliance before 5.2 allow remote attackers to inject arbitrary web script or HTML via (1) vectors involving PHP scripts and (2) unspecified other vectors. | 2 | 4.3 | Medium | 2017-01-18 | 2015-07-30 | View | |
| 40737 | CVE-2013-5446 | The console on IBM WebSphere DataPower XC10 appliances 2.1.0 and 2.5.0 does not properly process logoff actions, which has unspecified impact and remote attack vectors. | 2 | 10 | High | 2017-01-18 | 2013-10-22 | View |
Page 2026 of 17672, showing 5 records out of 88360 total, starting on record 10126, ending on 10130