NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 39763 | CVE-2013-4083 | The dissect_pft function in epan/dissectors/packet-dcp-etsi.c in the DCP ETSI dissector in Wireshark 1.6.x before 1.6.16, 1.8.x before 1.8.8, and 1.10.0 does not validate a certain fragment length value, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. | 2 | 5 | Medium | 2017-01-18 | 2014-09-23 | View | |
| 40019 | CVE-2013-4407 | HTTP::Body::Multipart in the HTTP-Body 1.08, 1.17, and earlier module for Perl uses the part of the uploaded file"s name after the first "." character as the suffix of a temporary file, which makes it easier for remote attackers to conduct attacks by leveraging subsequent behavior that may assume the suffix is well-formed. | 2 | 6.8 | Medium | 2017-01-18 | 2014-04-01 | View | |
| 40275 | CVE-2013-4729 | import.php in phpMyAdmin 4.x before 4.0.4.1 does not properly restrict the ability of input data to specify a file format, which allows remote authenticated users to modify the GLOBALS superglobal array, and consequently change the configuration, via a crafted request. | 2 | 5.5 | Medium | 2017-01-18 | 2013-07-05 | View | |
| 40531 | CVE-2013-5100 | Cross-site scripting (XSS) vulnerability in the Static Methods since 2007 (div2007) extension before 0.10.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to the t3lib_div::quoteJSvalue function. | 2 | 4.3 | Medium | 2017-01-18 | 2013-08-13 | View | |
| 40787 | CVE-2013-5501 | Cross-site scripting (XSS) vulnerability in the oraservice page in Cisco MediaSense allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCuj23328. | 2 | 4.3 | Medium | 2017-01-18 | 2013-10-02 | View |
Page 3000 of 17672, showing 5 records out of 88360 total, starting on record 14996, ending on 15000