NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
39688 | CVE-2013-3996 | IBM InfoSphere BigInsights 1.1 through 2.1 does not properly handle FRAME elements, which makes it easier for remote authenticated users to conduct phishing attacks via a crafted web site. | 2 | 4.9 | Medium | 2017-01-18 | 2013-08-22 | View | |
39944 | CVE-2013-4321 | The File Abstraction Layer (FAL) in TYPO3 6.0.x before 6.0.8 and 6.1.x before 6.1.4 allows remote authenticated editors to execute arbitrary PHP code via unspecified characters in the file extension when renaming a file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-4250. | 2 | 6.5 | Medium | 2017-01-18 | 2014-05-21 | View | |
40200 | CVE-2013-4625 | Cross-site scripting (XSS) vulnerability in files/installer.cleanup.php in the Duplicator plugin before 0.4.5 for WordPress allows remote attackers to inject arbitrary web script or HTML via the package parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2013-10-07 | View | |
40456 | CVE-2013-4978 | Stack-based buffer overflow in AloahaPDFViewer 5.0.0.7 and earlier in Aloaha PDF Suite FREE allows remote attackers to execute arbitrary code via a crafted PDF file. | 2 | 9.3 | High | 2017-01-18 | 2014-02-24 | View | |
40712 | CVE-2013-5414 | The migration functionality in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.31, 8.0 before 8.0.0.8, and 8.5 before 8.5.5.1 does not properly support the distinction between the admin role and the adminsecmanager role, which allows remote authenticated users to gain privileges in opportunistic circumstances by accessing resources in between a migration and a role evaluation. | 2 | 3.5 | Low | 2017-01-18 | 2013-11-19 | View |
Page 520 of 17672, showing 5 records out of 88360 total, starting on record 2596, ending on 2600