CVE List

Id CVE No. Status Description Phase Votes Comments Actions
64012  CVE-2013-4065  Candidate  Cross-site scripting (XSS) vulnerability in iNotes in IBM Domino 8.5.x before 8.5.3 FP6 and 9.0.x before 9.0.1, when ultra-light mode is enabled, allows remote attackers to inject arbitrary web script or HTML via active content in an e-mail message, aka SPR TCLE98ZKRP.  Assigned (20130607)  None (candidate not yet proposed)    View
64268  CVE-2013-4321  Candidate  The File Abstraction Layer (FAL) in TYPO3 6.0.x before 6.0.8 and 6.1.x before 6.1.4 allows remote authenticated editors to execute arbitrary PHP code via unspecified characters in the file extension when renaming a file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-4250.  Assigned (20130612)  None (candidate not yet proposed)    View
64524  CVE-2013-4577  Candidate  A certain Debian patch for GNU GRUB uses world-readable permissions for grub.cfg, which allows local users to obtain password hashes, as demonstrated by reading the password_pbkdf2 directive in the file.  Assigned (20130612)  None (candidate not yet proposed)    View
64780  CVE-2013-4833  Candidate  Cross-site scripting (XSS) vulnerability in HP Service Manager 9.30 through 9.32 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20130712)  None (candidate not yet proposed)    View
65036  CVE-2013-5089  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130806)  None (candidate not yet proposed)    View

Page 1646 of 20943, showing 5 records out of 104715 total, starting on record 8226, ending on 8230

Actions