NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 41238 | CVE-2013-6037 | Cross-site scripting (XSS) vulnerability in index.php in Aker Secure Mail Gateway 2.5.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the msg_id parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-30 | View | |
| 35351 | CVE-2014-8142 | Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.36, 5.5.x before 5.5.20, and 5.6.x before 5.6.4 allows remote attackers to execute arbitrary code via a crafted unserialize call that leverages improper handling of duplicate keys within the serialized properties of an object, a different vulnerability than CVE-2004-1019. | 2 | 7.5 | High | 2017-01-19 | 2016-12-30 | View | |
| 39447 | CVE-2013-3706 | Directory traversal vulnerability in the PreBoot service in Novell ZENworks Configuration Management (ZCM) 11.2 allows remote attackers to read arbitrary files via a .. (dot dot) in a preboot update pathname, aka ZDI-CAN-1595. | 2 | 5 | Medium | 2017-01-18 | 2016-12-30 | View | |
| 42007 | CVE-2013-7274 | Cross-site scripting (XSS) vulnerability in Wallpaper Script 3.5.0082 allows remote authenticated users to inject arbitrary web script or HTML via the title field in a wallpaper file upload. | 2 | 3.5 | Low | 2017-01-18 | 2016-12-30 | View | |
| 40472 | CVE-2013-5002 | Cross-site scripting (XSS) vulnerability in libraries/schema/Export_Relation_Schema.class.php in phpMyAdmin 3.5.x before 3.5.8.2 and 4.0.x before 4.0.4.2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted pageNumber value to schema_export.php. | 2 | 3.5 | Low | 2017-01-18 | 2016-12-30 | View |
Page 2905 of 17672, showing 5 records out of 88360 total, starting on record 14521, ending on 14525