NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 37937 | CVE-2013-1787 | Cross-site scripting (XSS) vulnerability in the 3 slide gallery in the Simple Corporate theme before 7.x-1.4 for Drupal allows remote authenticated users with the administer themes permission to inject arbitrary web script or HTML via unspecified vectors. | 2 | 2.1 | Low | 2017-01-18 | 2013-03-28 | View | |
| 38193 | CVE-2013-2082 | Moodle through 2.1.10, 2.2.x before 2.2.10, 2.3.x before 2.3.7, and 2.4.x before 2.4.4 does not enforce capability requirements for reading blog comments, which allows remote attackers to obtain sensitive information via a crafted request. | 2 | 5 | Medium | 2017-01-18 | 2013-11-24 | View | |
| 38449 | CVE-2013-2386 | Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 2.8.0 through 4.1.0 allows remote authenticated users to affect integrity and availability via vectors related to BASE. | 2 | 4.9 | Medium | 2017-01-18 | 2013-10-10 | View | |
| 38705 | CVE-2013-2782 | Schneider Electric Trio J-Series License Free Ethernet Radio with firmware 3.6.0 through 3.6.3 uses the same AES encryption key across different customers" installations, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation. | 2 | 9.3 | High | 2017-01-18 | 2013-08-29 | View | |
| 38961 | CVE-2013-3111 | Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3123. | 2 | 9.3 | High | 2017-01-18 | 2016-12-30 | View |
Page 2986 of 17672, showing 5 records out of 88360 total, starting on record 14926, ending on 14930