CVE List

Id CVE No. Status Description Phase Votes Comments Actions
61970  CVE-2013-2023  Candidate  Cross-site scripting (XSS) vulnerability in actionscript/Jplayer.as in the Flash SWF component (jplayer.swf) in jPlayer before 2.3.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly related to incomplete blacklists, a different vulnerability than CVE-2013-1942 and CVE-2013-2022.  Assigned (20130219)  None (candidate not yet proposed)    View
62226  CVE-2013-2279  Candidate  CA SiteMinder Federation (FSS) 12.5, 12.0, and r6; Federation (Standalone) 12.1 and 12.0; Agent for SharePoint 2010; and SiteMinder for Secure Proxy Server 6.0, 12.0, and 12.5 does not properly verify XML signatures for SAML statements, which allows remote attackers to spoof other users and gain privileges.  Assigned (20130226)  None (candidate not yet proposed)    View
62482  CVE-2013-2535  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130308)  None (candidate not yet proposed)    View
62738  CVE-2013-2791  Candidate  MatrikonOPC SCADA DNP3 OPC Server 1.2.0 allows remote attackers to cause a denial of service (master-station daemon crash) via a malformed DNP3 TCP packet from the IP address of an outstation.  Assigned (20130411)  None (candidate not yet proposed)    View
62994  CVE-2013-3047  Candidate  IBM Maximo Asset Management 7.1 before 7.1.1.12 and 7.5 before 7.5.0.5 allows remote authenticated users to gain privileges via unspecified vectors.  Assigned (20130412)  None (candidate not yet proposed)    View

Page 1509 of 20943, showing 5 records out of 104715 total, starting on record 7541, ending on 7545

Actions