NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
39939  CVE-2013-4314  The X509Extension in pyOpenSSL before 0.13.1 does not properly handle a "" character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.    4.3  Medium  2017-01-18  2013-12-08  View
40195  CVE-2013-4619  Multiple SQL injection vulnerabilities in OpenEMR 4.1.1 allow remote authenticated users to execute arbitrary SQL commands via the (1) start or (2) end parameter to interface/reports/custom_report_range.php, or the (3) form_newid parameter to custom/chart_tracker.php.    6.5  Medium  2017-01-18  2013-08-13  View
40451  CVE-2013-4969  Puppet before 3.3.3 and 3.4 before 3.4.1 and Puppet Enterprise (PE) before 2.8.4 and 3.1 before 3.1.1 allows local users to overwrite arbitrary files via a symlink attack on unspecified files.    2.1  Low  2017-01-18  2014-01-23  View
40707  CVE-2013-5406  Multiple cross-site scripting (XSS) vulnerabilities in IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 allow remote authenticated users to inject arbitrary web script or HTML via unspecified parameters, leading to improper interaction with the Windows MHTML protocol handler.    3.5  Low  2017-01-18  2016-12-30  View
40963  CVE-2013-5717  The Bluetooth HCI ACL dissector in Wireshark 1.10.x before 1.10.2 does not properly maintain a certain free list, which allows remote attackers to cause a denial of service (application crash) via a crafted packet that is not properly handled by the wmem_block_alloc function in epan/wmem/wmem_allocator_block.c.    4.3  Medium  2017-01-18  2013-11-02  View

Page 604 of 17672, showing 5 records out of 88360 total, starting on record 3016, ending on 3020

Actions