NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
39427  CVE-2013-3672  The mm_decode_inter function in mmvideo.c in libavcodec in FFmpeg before 1.2.1 does not validate the relationship between a horizontal coordinate and a width value, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) via crafted American Laser Games (ALG) MM Video data.    4.3  Medium  2017-01-18  2015-10-27  View
39683  CVE-2013-3989  IBM Security AppScan Enterprise 8.x before 8.8 sends a cleartext AppScan Source database password in a response, which allows remote authenticated users to obtain sensitive information, and subsequently conduct man-in-the-middle attacks, by examining the response content.    3.5  Low  2017-01-18  2013-10-28  View
39939  CVE-2013-4314  The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a "" character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.    4.3  Medium  2017-01-18  2013-12-08  View
40195  CVE-2013-4619  Multiple SQL injection vulnerabilities in OpenEMR 4.1.1 allow remote authenticated users to execute arbitrary SQL commands via the (1) start or (2) end parameter to interface/reports/custom_report_range.php, or the (3) form_newid parameter to custom/chart_tracker.php.    6.5  Medium  2017-01-18  2013-08-13  View
40451  CVE-2013-4969  Puppet before 3.3.3 and 3.4 before 3.4.1 and Puppet Enterprise (PE) before 2.8.4 and 3.1 before 3.1.1 allows local users to overwrite arbitrary files via a symlink attack on unspecified files.    2.1  Low  2017-01-18  2014-01-23  View

Page 2425 of 17672, showing 5 records out of 88360 total, starting on record 12121, ending on 12125

Actions