NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 37590 | CVE-2013-1364 | The user.login function in Zabbix before 1.8.16 and 2.x before 2.0.5rc1 allows remote attackers to override LDAP configuration via the cnf parameter. | 2 | 5 | Medium | 2017-01-18 | 2013-12-16 | View | |
| 46900 | CVE-2012-5884 | The User.get method in Bugzilla/WebService/User.pm in Bugzilla 4.3.2 allows remote attackers to obtain sensitive information about the saved searches of arbitrary users via an XMLRPC request or a JSONRPC request, a different vulnerability than CVE-2012-4198. | 2 | 5 | Medium | 2017-01-19 | 2013-08-22 | View | |
| 45644 | CVE-2012-4198 | The User.get method in Bugzilla/WebService/User.pm in Bugzilla 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 has a different outcome for a groups request depending on whether a group exists, which allows remote authenticated users to discover private group names by observing whether a call throws an error. | 2 | 4 | Medium | 2017-01-19 | 2013-12-13 | View | |
| 38131 | CVE-2013-2013 | The user-password-update command in python-keystoneclient before 0.2.4 accepts the new password in the --password argument, which allows local users to obtain sensitive information by listing the process. | 2 | 2.1 | Low | 2017-01-18 | 2013-11-02 | View | |
| 37485 | CVE-2013-1245 | The user-management page in Cisco WebEx Social relies on client-side validation of values in the Screen Name, First Name, Middle Name, Last Name, Email Address, and Job Title fields, which allows remote authenticated users to bypass intended access restrictions via crafted requests, aka Bug ID CSCue67190. | 2 | 4 | Medium | 2017-01-18 | 2013-05-16 | View |
Page 2828 of 17672, showing 5 records out of 88360 total, starting on record 14136, ending on 14140