NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 25099 | CVE-2015-3201 | Thermostat before 2.0.0 uses world-readable permissions for the web.xml configuration file, which allows local users to obtain user credentials by reading the file. | 2 | 2.1 | Low | 2017-01-19 | 2016-12-30 | View | |
| 25611 | CVE-2015-4103 | Xen 3.3.x through 4.5.x does not properly restrict write access to the host MSI message data field, which allows local x86 HVM guest administrators to cause a denial of service (host interrupt handling confusion) via vectors related to qemu and accessing spanning multiple fields. | 2 | 4.9 | Medium | 2017-01-19 | 2016-12-30 | View | |
| 40715 | CVE-2013-5417 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.31, 8.0 before 8.0.0.8, and 8.5 before 8.5.5.1 allows remote attackers to inject arbitrary web script or HTML via HTTP response data. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-30 | View | |
| 41739 | CVE-2013-6877 | Heap-based buffer overflow in RealNetworks RealPlayer before 17.0.4.61 on Windows, and Mac RealPlayer before 12.0.1.1738, allows remote attackers to execute arbitrary code via a long string in the TRACKID element of an RMP file, a different vulnerability than CVE-2013-7260. | 2 | 9.3 | High | 2017-01-18 | 2016-12-30 | View | |
| 41995 | CVE-2013-7260 | Multiple stack-based buffer overflows in RealNetworks RealPlayer before 17.0.4.61 on Windows, and Mac RealPlayer before 12.0.1.1738, allow remote attackers to execute arbitrary code via a long (1) version number or (2) encoding declaration in the XML declaration of an RMP file, a different issue than CVE-2013-6877. | 2 | 7.5 | High | 2017-01-18 | 2016-12-30 | View |
Page 2900 of 17672, showing 5 records out of 88360 total, starting on record 14496, ending on 14500