NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
36618 | CVE-2013-0263 | Rack::Session::Cookie in Rack 1.5.x before 1.5.2, 1.4.x before 1.4.5, 1.3.x before 1.3.10, 1.2.x before 1.2.8, and 1.1.x before 1.1.6 allows remote attackers to guess the session cookie, gain privileges, and execute arbitrary code via a timing attack involving an HMAC comparison function that does not run in constant time. | 2 | 5.1 | Medium | 2017-01-18 | 2013-11-18 | View | |
36874 | CVE-2013-0558 | IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote attackers to obtain sensitive information about application implementation via unspecified vectors. | 2 | 5 | Medium | 2017-01-18 | 2013-07-03 | View | |
37130 | CVE-2013-0860 | The ff_er_frame_end function in libavcodec/error_resilience.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.1 does not properly verify that a frame is fully initialized, which allows remote attackers to trigger a NULL pointer dereference via crafted picture data. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-02 | View | |
37386 | CVE-2013-1138 | The NAT process on Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (connections-table memory consumption) via crafted packets, aka Bug ID CSCue46386. | 2 | 5 | Medium | 2017-01-18 | 2013-02-27 | View | |
37642 | CVE-2013-1439 | The "faster LJPEG decoder" in libraw 0.13.x, 0.14.x, and 0.15.x before 0.15.4 allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via a crafted photo file. | 2 | 4.3 | Medium | 2017-01-18 | 2013-11-14 | View |
Page 637 of 17672, showing 5 records out of 88360 total, starting on record 3181, ending on 3185