CVE List

Id CVE No. Status Description Phase Votes Comments Actions
63218  CVE-2013-3271  Candidate  EMC RSA Authentication Agent for PAM 7.0 before 7.0.2.1 enforces the maximum number of login attempts within the PAM-enabled application codebase, instead of within the Agent codebase, which makes it easier for remote attackers to discover correct login credentials via a brute-force attack.  Assigned (20130426)  None (candidate not yet proposed)    View
63474  CVE-2013-3527  Candidate  Multiple SQL injection vulnerabilities in Vanilla Forums before 2.0.18.8 allow remote attackers to execute arbitrary SQL commands via the parameter name in the Form/Email array to (1) entry/signin or (2) entry/passwordrequest.  Assigned (20130510)  None (candidate not yet proposed)    View
63730  CVE-2013-3783  Candidate  Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Parser.  Assigned (20130603)  None (candidate not yet proposed)    View
63986  CVE-2013-4039  Candidate  IBM WebSphere Extended Deployment Compute Grid 8.0 before 8.0.0.3 allows remote authenticated users to obtain sensitive information, and consequently bypass intended access restrictions on jobs, via unspecified vectors.  Assigned (20130607)  None (candidate not yet proposed)    View
64242  CVE-2013-4295  Candidate  The gadget renderer in Apache Shindig 2.5.0 for PHP allows remote attackers to obtain sensitive information via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  Assigned (20130612)  None (candidate not yet proposed)    View

Page 18780 of 20943, showing 5 records out of 104715 total, starting on record 93896, ending on 93900

Actions