CVE List

Id CVE No. Status Description Phase Votes Comments Actions
64790  CVE-2013-4843  Candidate  Unspecified vulnerability in HP Integrated Lights-Out 4 (iLO4) with firmware before 1.32 allows remote authenticated users to obtain sensitive information via unknown vectors.  Assigned (20130712)  None (candidate not yet proposed)    View
65046  CVE-2013-5099  Candidate  Cross-site scripting (XSS) vulnerability in article.php in Anchor CMS 0.9.1, when comments are enabled, allows remote attackers to inject arbitrary web script or HTML via the Name field. NOTE: some sources have reported that comments.php is vulnerable, but certain functions from comments.php are used by article.php.  Assigned (20130809)  None (candidate not yet proposed)    View
65302  CVE-2013-5355  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in Sharetronix 3.1.1 allow remote attackers to hijack the authentication of administrators for requests that (1) change configuration settings or (2) create new administrative users via unspecified vectors.  Assigned (20130821)  None (candidate not yet proposed)    View
65559  CVE-2013-5612  Candidate  Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 makes it easier for remote attackers to inject arbitrary web script or HTML by leveraging a Same Origin Policy violation triggered by lack of a charset parameter in a Content-Type HTTP header.  Assigned (20130826)  None (candidate not yet proposed)    View
65815  CVE-2013-5868  Candidate  Unspecified vulnerability in the Oracle AutoVue Electro-Mechanical Professional component in Oracle Supply Chain Products Suite 20.1.1 allows remote authenticated users to affect confidentiality via unknown vectors related to Web General, a different vulnerability than CVE-2013-5871 and CVE-2014-0444.  Assigned (20130918)  None (candidate not yet proposed)    View

Page 1808 of 20943, showing 5 records out of 104715 total, starting on record 9036, ending on 9040

Actions