CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60679  CVE-2013-0732  Candidate  Heap-based buffer overflow in PDFCore8.dll in Nuance PDF Reader before 8.1 allows remote attackers to execute arbitrary code via crafted font table directory values in a TTF file, related to naming table entries.  Assigned (20130102)  None (candidate not yet proposed)    View
60935  CVE-2013-0988  Candidate  Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FPX file.  Assigned (20130110)  None (candidate not yet proposed)    View
61191  CVE-2013-1244  Candidate  Cross-site scripting (XSS) vulnerability in the portal module in Cisco WebEx Social allows remote authenticated users to inject arbitrary web script or HTML via a javascript: URL in the link field in a post, aka Bug ID CSCue67199.  Assigned (20130111)  None (candidate not yet proposed)    View
61447  CVE-2013-1500  Candidate  Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier, 6 Update 45 and earlier, and 5.0 Update 45 and earlier, and OpenJDK 7, allows local users to affect confidentiality and integrity via unknown vectors related to 2D. NOTE: the previous information is from the June 2013 CPU. Oracle has not commented on claims from another vendor that this issue is related to weak permissions for shared memory.  Assigned (20130130)  None (candidate not yet proposed)    View
61703  CVE-2013-1756  Candidate  The Dragonfly gem 0.7 before 0.8.6 and 0.9.x before 0.9.13 for Ruby, when used with Ruby on Rails, allows remote attackers to execute arbitrary code via a crafted request.  Assigned (20130215)  None (candidate not yet proposed)    View

Page 1775 of 20943, showing 5 records out of 104715 total, starting on record 8871, ending on 8875

Actions