CVE List

Id CVE No. Status Description Phase Votes Comments Actions
61156  CVE-2013-1209  Candidate  The encryption functionality in the Virtual Supervisor Module (VSM) to Virtual Ethernet Module (VEM) communication component in Cisco NX-OS on the Nexus 1000V does not properly authenticate VSM/VEM packets, which allows remote attackers to disable packet-level encryption and integrity protection via crafted packets, aka Bug ID CSCud14710.  Assigned (20130111)  None (candidate not yet proposed)    View
61412  CVE-2013-1465  Candidate  The Cubecart::_basket method in classes/cubecart.class.php in CubeCart 5.0.0 through 5.2.0 allows remote attackers to unserialize arbitrary PHP objects via a crafted shipping parameter, as demonstrated by modifying the application configuration using the Config object.  Assigned (20130129)  None (candidate not yet proposed)    View
61668  CVE-2013-1721  Candidate  Integer overflow in the drawLineLoop function in the libGLESv2 library in Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox before 24.0 and SeaMonkey before 2.21, allows remote attackers to execute arbitrary code via a crafted web site.  Assigned (20130213)  None (candidate not yet proposed)    View
61924  CVE-2013-1977  Candidate  OpenStack devstack uses world-readable permissions for keystone.conf, which allows local users to obtain sensitive information such as the LDAP password and admin_token secret by reading the file.  Assigned (20130219)  None (candidate not yet proposed)    View
62180  CVE-2013-2233  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130219)  None (candidate not yet proposed)    View

Page 18792 of 20943, showing 5 records out of 104715 total, starting on record 93956, ending on 93960

Actions