NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
40724 | CVE-2013-5426 | Session fixation vulnerability in IBM InfoSphere Master Data Management - Collaborative Edition 10.x before 10.1 IF5 and 11.0 before IF1 and InfoSphere Master Data Management Server for Product Information Management 9.x before 9.1 IF11 allows remote authenticated users to hijack web sessions via unspecified vectors. | 2 | 4.9 | Medium | 2017-01-18 | 2013-12-20 | View | |
40980 | CVE-2013-5748 | Cross-site request forgery (CSRF) vulnerability in management/prioritize_planning.php in SimpleRisk before 20130916-001 allows remote attackers to hijack the authentication of users for requests that add projects via an add_project action. | 2 | 6.8 | Medium | 2017-01-18 | 2014-05-13 | View | |
41748 | CVE-2013-6889 | GNU Rush 1.7 does not properly drop privileges, which allows local users to read arbitrary files via the --lint option. | 2 | 4.9 | Medium | 2017-01-18 | 2014-05-09 | View | |
42004 | CVE-2013-7270 | The packet_recvmsg function in net/packet/af_packet.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which allows local users to obtain sensitive information from kernel memory via a (1) recvfrom, (2) recvmmsg, or (3) recvmsg system call. | 2 | 4.9 | Medium | 2017-01-18 | 2014-03-16 | View | |
43028 | CVE-2012-0993 | Eval injection vulnerability in zp-core/zp-extensions/viewer_size_image.php in ZENphoto 1.4.2, when the viewer_size_image plugin is enabled, allows remote attackers to execute arbitrary PHP code via the viewer_size_image_saved cookie. | 2 | 6.8 | Medium | 2017-01-19 | 2012-02-21 | View |
Page 746 of 17672, showing 5 records out of 88360 total, starting on record 3726, ending on 3730