CVE List

Id CVE No. Status Description Phase Votes Comments Actions
66318  CVE-2013-6371  Candidate  The hash functionality in json-c before 0.12 allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted JSON data, involving collisions.  Assigned (20131104)  None (candidate not yet proposed)    View
1038  CVE-1999-1058  Candidate  Buffer overflow in Vermillion FTP Daemon VFTPD 1.23 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via several long CWD commands.  Proposed (20010912)  ACCEPT(2) Cole, Frech | NOOP(2) Foat, Wall    View
66574  CVE-2013-6627  Candidate  net/http/http_stream_parser.cc in Google Chrome before 31.0.1650.48 does not properly process HTTP Informational (aka 1xx) status codes, which allows remote web servers to cause a denial of service (out-of-bounds read) via a crafted response.  Assigned (20131105)  None (candidate not yet proposed)    View
66830  CVE-2013-6883  Candidate  Cross-site request forgery (CSRF) vulnerability in CRU Ditto Forensic FieldStation with firmware before 2013Oct15a allows remote attackers to hijack the authentication of administrators for requests that modify the disk erase technique settings via unspecified vectors.  Assigned (20131127)  None (candidate not yet proposed)    View
67086  CVE-2013-7139  Candidate  SQL injection vulnerability in download.php in Horizon Quick Content Management System (QCMS) 4.0 and earlier allows remote to execute arbitrary SQL commands via the category parameter.  Assigned (20131218)  None (candidate not yet proposed)    View

Page 1130 of 20943, showing 5 records out of 104715 total, starting on record 5646, ending on 5650

Actions