CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60176  CVE-2013-0229  Candidate  The ProcessSSDPRequest function in minissdp.c in the SSDP handler in MiniUPnP MiniUPnPd before 1.4 allows remote attackers to cause a denial of service (service crash) via a crafted request that triggers a buffer over-read.  Assigned (20121206)  None (candidate not yet proposed)    View
60432  CVE-2013-0485  Candidate  Unspecified vulnerability in IBM Java SDK 7 before SR4-FP1, 6 before SR13-FP1, 5.0 before SR16-FP1, and 1.4.2 before SR13-FP16 has unknown impact and attack vectors related to Class Libraries.  Assigned (20121216)  None (candidate not yet proposed)    View
60688  CVE-2013-0741  Candidate  Cross-site scripting (XSS) vulnerability in imagegen.ashx in Percipient Studios ImageGen before 2.9.0 for Umbraco CMS allows remote attackers to inject arbitrary web script or HTML via the font parameter.  Assigned (20130102)  None (candidate not yet proposed)    View
60944  CVE-2013-0997  Candidate  WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.  Assigned (20130110)  None (candidate not yet proposed)    View
61200  CVE-2013-1253  Candidate  Race condition in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges, and consequently read the contents of arbitrary kernel memory locations, via a crafted application, a different vulnerability than other CVEs listed in MS13-016.  Assigned (20130112)  None (candidate not yet proposed)    View

Page 1349 of 20943, showing 5 records out of 104715 total, starting on record 6741, ending on 6745

Actions