CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
64015 | CVE-2013-4068 | Candidate | Buffer overflow in iNotes in IBM Domino 8.5.3 before FP5 IF1 and 9.0 before IF4 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka SPR PTHN9ADPA8. | Assigned (20130607) | None (candidate not yet proposed) | View | |
64271 | CVE-2013-4324 | Candidate | spice-gtk 0.14, and possibly other versions, invokes the polkit authority using the insecure polkit_unix_process_new API function, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process, a related issue to CVE-2013-4288. | Assigned (20130612) | None (candidate not yet proposed) | View | |
64527 | CVE-2013-4580 | Candidate | GitLab before 5.4.2, Community Edition before 6.2.4, and Enterprise Edition before 6.2.1, when using a MySQL backend, allows remote attackers to impersonate arbitrary users and bypass authentication via unspecified API calls. | Assigned (20130612) | None (candidate not yet proposed) | View | |
64783 | CVE-2013-4836 | Candidate | Unspecified vulnerability in the GossipService SOAP Request implementation in the Synchronizer component before 1.4.2 in HP Application LifeCycle Management (ALM) allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1759. | Assigned (20130712) | None (candidate not yet proposed) | View | |
65039 | CVE-2013-5092 | Candidate | Cross-site scripting (XSS) vulnerability in afa/php/Login.php in AlgoSec Firewall Analyzer 6.1-b86 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. | Assigned (20130808) | None (candidate not yet proposed) | View |
Page 1269 of 20943, showing 5 records out of 104715 total, starting on record 6341, ending on 6345