NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
40711  CVE-2013-5413  IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 do not invalidate a session upon a logout action, which allows remote attackers to bypass authentication by leveraging an unattended workstation.    4.3  Medium  2017-01-18  2013-12-23  View
40967  CVE-2013-5721  The dissect_mq_rr function in epan/dissectors/packet-mq.c in the MQ dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 does not properly determine when to enter a certain loop, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.    4.3  Medium  2017-01-18  2014-04-19  View
41223  CVE-2013-6020  passwordRequestPOST.jsp in Tyler Technologies TaxWeb 3.13.3.1 sends different HTTP status codes for invalid password-recovery requests depending on whether the user account exists, which allows remote attackers to enumerate account names via a series of requests to the (1) Assessor, (2) Recorder, or (3) Treasurer application.    5.8  Medium  2017-01-18  2013-11-21  View
41479  CVE-2013-6421  The unpack_zip function in archive_unpacker.rb in the sprout gem 0.7.246 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a (1) filename or (2) path.    7.5  High  2017-01-18  2013-12-19  View
41735  CVE-2013-6872  SQL injection vulnerability in managetimetracker.php in Collabtive before 1.2 allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a projectpdf action.    6.5  Medium  2017-01-18  2015-07-28  View

Page 525 of 17672, showing 5 records out of 88360 total, starting on record 2621, ending on 2625

Actions