NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63562  CVE-2006-4954  The updateuser servlet in Neon WebMail for Java before 5.08 does not validate the in_id parameter, which allows remote attackers to modify information of arbitrary users, as demonstrated by modifying (1) passwords and (2) permissions, (3) viewing profile settings, and (4) creating and (5) deleting users.    7.5  High  2016-12-20  2016-11-28  View
45411  CVE-2012-3901  The updateTime function in sensorApp on Cisco IPS 4200 series sensors 7.0 and 7.1 allows remote attackers to cause a denial of service (process crash and traffic-inspection outage) via network traffic, aka Bug ID CSCta96144.    Medium  2017-01-19  2013-01-24  View
41465  CVE-2013-6407  The UpdateRequestHandler for XML in Apache Solr before 4.1 allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.    6.4  Medium  2017-01-18  2014-07-17  View
22000  CVE-2016-8101  The updater subsystem in Intel SSD Toolbox before 3.3.7 allows local users to gain privileges via unspecified vectors.    7.2  High  2017-01-19  2016-12-02  View
41677  CVE-2013-6795  The Updater in Rackspace Openstack Windows Guest Agent for XenServer before 1.2.6.0 allows remote attackers to execute arbitrary code via a crafted serialized .NET object to TCP port 1984, which triggers the download and extraction of a ZIP file that overwrites the Agent service binary.    9.3  High  2017-01-18  2013-12-26  View

Page 2846 of 17672, showing 5 records out of 88360 total, starting on record 14226, ending on 14230

Actions