CVE List

Id CVE No. Status Description Phase Votes Comments Actions
61712  CVE-2013-1765  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in jwplayer.swf in the smart-flv plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) link or (2) playerready parameter.  Assigned (20130219)  None (candidate not yet proposed)    View
61968  CVE-2013-2021  Candidate  pdf.c in ClamAV 0.97.1 through 0.97.7 allows remote attackers to cause a denial of service (out-of-bounds-read) via a crafted length value in an encrypted PDF file.  Assigned (20130219)  None (candidate not yet proposed)    View
62224  CVE-2013-2277  Candidate  The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 1.1.3 does not validate the relationship between luma depth and chroma depth, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted H.264 data.  Assigned (20130226)  None (candidate not yet proposed)    View
62480  CVE-2013-2533  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130308)  None (candidate not yet proposed)    View
62736  CVE-2013-2789  Candidate  The Kepware DNP Master Driver for the KEPServerEX Communications Platform before 5.12.140.0 allows remote attackers to cause a denial of service (master-station infinite loop) via crafted DNP3 packets to TCP port 20000 and allows physically proximate attackers to cause a denial of service (master-station infinite loop) via crafted input over a serial line.  Assigned (20130411)  None (candidate not yet proposed)    View

Page 1344 of 20943, showing 5 records out of 104715 total, starting on record 6716, ending on 6720

Actions