CVE List

Id CVE No. Status Description Phase Votes Comments Actions
65302  CVE-2013-5355  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in Sharetronix 3.1.1 allow remote attackers to hijack the authentication of administrators for requests that (1) change configuration settings or (2) create new administrative users via unspecified vectors.  Assigned (20130821)  None (candidate not yet proposed)    View
65559  CVE-2013-5612  Candidate  Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 makes it easier for remote attackers to inject arbitrary web script or HTML by leveraging a Same Origin Policy violation triggered by lack of a charset parameter in a Content-Type HTTP header.  Assigned (20130826)  None (candidate not yet proposed)    View
65815  CVE-2013-5868  Candidate  Unspecified vulnerability in the Oracle AutoVue Electro-Mechanical Professional component in Oracle Supply Chain Products Suite 20.1.1 allows remote authenticated users to affect confidentiality via unknown vectors related to Web General, a different vulnerability than CVE-2013-5871 and CVE-2014-0444.  Assigned (20130918)  None (candidate not yet proposed)    View
535  CVE-1999-0541  Candidate  A password for accessing a WWW URL is guessable.  Proposed (19990714)  ACCEPT(4) Baker, Meunier, Northcutt, Shostack | MODIFY(1) Frech  Frech> XF:http-password  View
66071  CVE-2013-6124  Candidate  The Qualcomm Innovation Center (QuIC) init scripts in Code Aurora Forum (CAF) releases of Android 4.1.x through 4.4.x allow local users to modify file metadata via a symlink attack on a file accessed by a (1) chown or (2) chmod command, as demonstrated by changing the permissions of an arbitrary file via an attack on the sensor-settings file.  Assigned (20131015)  None (candidate not yet proposed)    View

Page 1830 of 20943, showing 5 records out of 104715 total, starting on record 9146, ending on 9150

Actions