NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
36865 | CVE-2013-0540 | IBM WebSphere Application Server (WAS) Liberty Profile 8.5 before 8.5.0.2, when SSL is not enabled, does not properly validate authentication cookies, which allows remote authenticated users to bypass intended access restrictions via an HTTP session. | 2 | 3.5 | Low | 2017-01-18 | 2013-04-24 | View | |
37121 | CVE-2013-0851 | The decode_frame function in libavcodec/eamad.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted Electronic Arts Madcow video data, which triggers an out-of-bounds array access. | 2 | 9.3 | High | 2017-01-18 | 2013-12-27 | View | |
37377 | CVE-2013-1129 | Memory leak in Cisco Unity Connection 9.x allows remote attackers to cause a denial of service (memory consumption and process crash) by sending many TCP requests, aka Bug ID CSCud59736. | 2 | 5 | Medium | 2017-01-18 | 2013-02-20 | View | |
37633 | CVE-2013-1427 | The configuration file for the FastCGI PHP support for lighttpd before 1.4.28 on Debian GNU/Linux creates a socket file with a predictable name in /tmp, which allows local users to hijack the PHP control socket and perform unauthorized actions such as forcing the use of a different version of PHP via a symlink attack or a race condition. | 2 | 1.9 | Low | 2017-01-18 | 2016-06-01 | View | |
37889 | CVE-2013-1727 | Mozilla Firefox before 24.0 on Android allows attackers to bypass the Same Origin Policy, and consequently conduct cross-site scripting (XSS) attacks or obtain password or cookie information, by using a symlink in conjunction with a file: URL for a local file. | 2 | 4 | Medium | 2017-01-18 | 2013-10-02 | View |
Page 98 of 17672, showing 5 records out of 88360 total, starting on record 486, ending on 490