NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
35339  CVE-2014-8122  Race condition in JBoss Weld before 2.2.8 and 3.x before 3.0.0 Alpha3 allows remote attackers to obtain information from a previous conversation via vectors related to a stale thread state.    4.3  Medium  2017-01-19  2015-05-13  View
36107  CVE-2014-9400  Multiple cross-site request forgery (CSRF) vulnerabilities in the Wp Unique Article Header Image plugin 1.0 and earlier for WordPress allow remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the (1) gt_default_header or (2) gt_homepage_header parameter in the wp-unique-header.php page to wp-admin/options-general.php.    6.8  Medium  2017-01-19  2015-01-12  View
36875  CVE-2013-0559  Unspecified vulnerability in IBM API Management 2.0 before 2.0.0.1 allows remote attackers to access tenant APIs, and consequently obtain sensitive information or modify data, via unknown vectors.    6.4  Medium  2017-01-18  2013-07-29  View
37131  CVE-2013-0861  The avcodec_decode_audio4 function in libavcodec/utils.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.1 allows remote attackers to trigger memory corruption via vectors related to the channel layout.    Medium  2017-01-18  2016-12-02  View
37387  CVE-2013-1139  The nsAPI interface in Cisco Cloud Portal 9.1 SP1 and SP2, and 9.3 through 9.3.2, does not properly check privileges, which allows remote authenticated users to obtain sensitive information via a crafted URL, aka Bug ID CSCud81134.    Medium  2017-01-18  2013-02-27  View

Page 422 of 17672, showing 5 records out of 88360 total, starting on record 2106, ending on 2110

Actions