CVE List

Id CVE No. Status Description Phase Votes Comments Actions
66564  CVE-2013-6617  Candidate  The salt master in Salt (aka SaltStack) 0.11.0 through 0.17.0 does not properly drop group privileges, which makes it easier for remote attackers to gain privileges.  Assigned (20131105)  None (candidate not yet proposed)    View
66820  CVE-2013-6873  Candidate  SQL injection vulnerability in Testa Online Test Management System (OTMS) 2.0.0.2 allows remote attackers to execute arbitrary SQL commands via the test_id parameter.  Assigned (20131126)  None (candidate not yet proposed)    View
67076  CVE-2013-7129  Candidate  Cross-site scripting (XSS) vulnerability in ThemeBeans Blooog theme 1.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the jQuery parameter to assets/js/jplayer.swf.  Assigned (20131217)  None (candidate not yet proposed)    View
67332  CVE-2013-7385  Candidate  LiveZilla 5.1.2.1 and earlier includes the MD5 hash of the operator password in plaintext in Javascript code that is generated by lz/mobile/chat.php, which allows remote attackers to obtain sensitive information and gain privileges by accessing the loginName and loginPassword variables using an independent cross-site scripting (XSS) attack. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-7033.  Assigned (20140519)  None (candidate not yet proposed)    View
67588  CVE-2014-0179  Candidate  libvirt 0.7.5 through 1.2.x before 1.2.5 allows local users to cause a denial of service (read block and hang) via a crafted XML document containing an XML external entity declaration in conjunction with an entity reference to the (1) virConnectCompareCPU or (2) virConnectBaselineCPU API method, related to an XML External Entity (XXE) issue. NOTE: this issue was SPLIT per ADT3 due to different affected versions of some vectors. CVE-2014-5177 is used for other API methods.  Assigned (20131203)  None (candidate not yet proposed)    View

Page 1471 of 20943, showing 5 records out of 104715 total, starting on record 7351, ending on 7355

Actions