CVE List

Id CVE No. Status Description Phase Votes Comments Actions
64015  CVE-2013-4068  Candidate  Buffer overflow in iNotes in IBM Domino 8.5.3 before FP5 IF1 and 9.0 before IF4 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka SPR PTHN9ADPA8.  Assigned (20130607)  None (candidate not yet proposed)    View
64271  CVE-2013-4324  Candidate  spice-gtk 0.14, and possibly other versions, invokes the polkit authority using the insecure polkit_unix_process_new API function, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process, a related issue to CVE-2013-4288.  Assigned (20130612)  None (candidate not yet proposed)    View
64527  CVE-2013-4580  Candidate  GitLab before 5.4.2, Community Edition before 6.2.4, and Enterprise Edition before 6.2.1, when using a MySQL backend, allows remote attackers to impersonate arbitrary users and bypass authentication via unspecified API calls.  Assigned (20130612)  None (candidate not yet proposed)    View
64783  CVE-2013-4836  Candidate  Unspecified vulnerability in the GossipService SOAP Request implementation in the Synchronizer component before 1.4.2 in HP Application LifeCycle Management (ALM) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1759.  Assigned (20130712)  None (candidate not yet proposed)    View
65039  CVE-2013-5092  Candidate  Cross-site scripting (XSS) vulnerability in afa/php/Login.php in AlgoSec Firewall Analyzer 6.1-b86 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.  Assigned (20130808)  None (candidate not yet proposed)    View

Page 1269 of 20943, showing 5 records out of 104715 total, starting on record 6341, ending on 6345

Actions