NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
37888 | CVE-2013-1726 | Mozilla Updater in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 does not ensure exclusive access to a MAR file, which allows local users to gain privileges by creating a Trojan horse file after MAR signature verification but before MAR use. | 2 | 6.2 | Medium | 2017-01-18 | 2013-11-02 | View | |
38144 | CVE-2013-2029 | nagios.upgrade_to_v3.sh, as distributed by Red Hat and possibly others for Nagios Core 3.4.4, 3.5.1, and earlier, allows local users to overwrite arbitrary files via a symlink attack on a temporary nagioscfg file with a predictable name in /tmp/. | 2 | 6.3 | Medium | 2017-01-18 | 2013-11-25 | View | |
38400 | CVE-2013-2336 | HP Service Manager 7.11, 9.21, 9.30, and 9.31, and ServiceCenter 6.2.8, allows remote attackers to obtain sensitive information via unspecified vectors. | 2 | 5 | Medium | 2017-01-18 | 2013-06-17 | View | |
38656 | CVE-2013-2716 | Puppet Labs Puppet Enterprise before 2.8.0 does not use a "randomized secret" in the CAS client config file (cas_client_config.yml) when upgrading from older 1.2.x or 2.0.x versions, which allows remote attackers to obtain console access via a crafted cookie. | 2 | 5 | Medium | 2017-01-18 | 2013-04-11 | View | |
38912 | CVE-2013-3036 | Open redirect vulnerability in IBM Rational Requirements Composer before 4.0.4 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL. | 2 | 4.9 | Medium | 2017-01-18 | 2013-09-12 | View |
Page 39 of 17672, showing 5 records out of 88360 total, starting on record 191, ending on 195