CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
65302 | CVE-2013-5355 | Candidate | Multiple cross-site request forgery (CSRF) vulnerabilities in Sharetronix 3.1.1 allow remote attackers to hijack the authentication of administrators for requests that (1) change configuration settings or (2) create new administrative users via unspecified vectors. | Assigned (20130821) | None (candidate not yet proposed) | View | |
65559 | CVE-2013-5612 | Candidate | Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 makes it easier for remote attackers to inject arbitrary web script or HTML by leveraging a Same Origin Policy violation triggered by lack of a charset parameter in a Content-Type HTTP header. | Assigned (20130826) | None (candidate not yet proposed) | View | |
65815 | CVE-2013-5868 | Candidate | Unspecified vulnerability in the Oracle AutoVue Electro-Mechanical Professional component in Oracle Supply Chain Products Suite 20.1.1 allows remote authenticated users to affect confidentiality via unknown vectors related to Web General, a different vulnerability than CVE-2013-5871 and CVE-2014-0444. | Assigned (20130918) | None (candidate not yet proposed) | View | |
535 | CVE-1999-0541 | Candidate | A password for accessing a WWW URL is guessable. | Proposed (19990714) | ACCEPT(4) Baker, Meunier, Northcutt, Shostack | MODIFY(1) Frech | Frech> XF:http-password | View |
66071 | CVE-2013-6124 | Candidate | The Qualcomm Innovation Center (QuIC) init scripts in Code Aurora Forum (CAF) releases of Android 4.1.x through 4.4.x allow local users to modify file metadata via a symlink attack on a file accessed by a (1) chown or (2) chmod command, as demonstrated by changing the permissions of an arbitrary file via an attack on the sensor-settings file. | Assigned (20131015) | None (candidate not yet proposed) | View |
Page 1830 of 20943, showing 5 records out of 104715 total, starting on record 9146, ending on 9150