CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
63218 | CVE-2013-3271 | Candidate | EMC RSA Authentication Agent for PAM 7.0 before 7.0.2.1 enforces the maximum number of login attempts within the PAM-enabled application codebase, instead of within the Agent codebase, which makes it easier for remote attackers to discover correct login credentials via a brute-force attack. | Assigned (20130426) | None (candidate not yet proposed) | View | |
63474 | CVE-2013-3527 | Candidate | Multiple SQL injection vulnerabilities in Vanilla Forums before 2.0.18.8 allow remote attackers to execute arbitrary SQL commands via the parameter name in the Form/Email array to (1) entry/signin or (2) entry/passwordrequest. | Assigned (20130510) | None (candidate not yet proposed) | View | |
63730 | CVE-2013-3783 | Candidate | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Parser. | Assigned (20130603) | None (candidate not yet proposed) | View | |
63986 | CVE-2013-4039 | Candidate | IBM WebSphere Extended Deployment Compute Grid 8.0 before 8.0.0.3 allows remote authenticated users to obtain sensitive information, and consequently bypass intended access restrictions on jobs, via unspecified vectors. | Assigned (20130607) | None (candidate not yet proposed) | View | |
64242 | CVE-2013-4295 | Candidate | The gadget renderer in Apache Shindig 2.5.0 for PHP allows remote attackers to obtain sensitive information via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | Assigned (20130612) | None (candidate not yet proposed) | View |
Page 18780 of 20943, showing 5 records out of 104715 total, starting on record 93896, ending on 93900