NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
40466 | CVE-2013-4996 | Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.5.x before 3.5.8.2 and 4.0.x before 4.0.4.2 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) a crafted database name, (2) a crafted user name, (3) a crafted logo URL in the navigation panel, (4) a crafted entry in a certain proxy list, or (5) crafted content in a version.json file. | 2 | 4.3 | Medium | 2017-01-18 | 2016-12-30 | View | |
40722 | CVE-2013-5424 | IBM Flex System Manager (FSM) 1.3.0 allows remote attackers to bypass intended access restrictions, and create new user accounts or execute tasks, by leveraging an expired password for the system-level account. | 2 | 6.8 | Medium | 2017-01-18 | 2013-10-28 | View | |
40978 | CVE-2013-5744 | Cross-site scripting (XSS) vulnerability in Feng Office 2.3.2-rc and earlier allows remote attackers to inject arbitrary web script or HTML via an arbitrary ref_XXX parameter. | 2 | 4.3 | Medium | 2017-01-18 | 2013-10-29 | View | |
41490 | CVE-2013-6434 | The remote-viewer in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.3, when using a native SPICE client invocation method, initially makes insecure connections to the SPICE server, which allows man-in-the-middle attackers to spoof the SPICE server. | 2 | 4.3 | Medium | 2017-01-18 | 2014-01-24 | View | |
41746 | CVE-2013-6887 | OpenJPEG 1.5.1 allows remote attackers to cause a denial of service via unspecified vectors that trigger NULL pointer dereferences, division-by-zero, and other errors. | 2 | 6.4 | Medium | 2017-01-18 | 2014-04-28 | View |
Page 677 of 17672, showing 5 records out of 88360 total, starting on record 3381, ending on 3385