NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 36683 | CVE-2013-0337 | The default configuration of nginx, possibly 1.3.13 and earlier, uses world-readable permissions for the (1) access.log and (2) error.log files, which allows local users to obtain sensitive information by reading the files. | 2 | 7.5 | High | 2017-01-18 | 2013-10-28 | View | |
| 37195 | CVE-2013-0927 | Google Chrome OS before 26.0.1410.57 relies on a Pango pango-utils.c read_config implementation that loads the contents of the .pangorc file in the user"s home directory, and the file referenced by the PANGO_RC_FILE environment variable, which allows attackers to bypass intended access restrictions via crafted configuration data. | 2 | 7.5 | High | 2017-01-18 | 2013-04-11 | View | |
| 40267 | CVE-2013-4721 | SQL injection vulnerability in the RSS feed from records extension 1.0.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2017-01-18 | 2013-10-11 | View | |
| 46411 | CVE-2012-5205 | Unspecified vulnerability in HP Intelligent Management Center (iMC) and Intelligent Management Center for Automated Network Manager (ANM) before 5.2 E0401 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unknown vectors, aka ZDI-CAN-1650. | 2 | 7.5 | High | 2017-01-19 | 2016-08-24 | View | |
| 49995 | CVE-2009-2770 | PowerUpload 2.4 allows remote attackers to bypass authentication and gain administrative access via a MIME encoded value of admin for the myadminname cookie. | 2 | 7.5 | High | 2017-01-07 | 2009-08-17 | View |
Page 2786 of 17672, showing 5 records out of 88360 total, starting on record 13926, ending on 13930