CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
64499 | CVE-2013-4552 | Candidate | lib/Auth/Source/External.php in the drupalauth module before 1.2.2 for simpleSAMLphp allows remote attackers to authenticate as an arbitrary user via the user name (uid) in a cookie. | Assigned (20130612) | None (candidate not yet proposed) | View | |
64755 | CVE-2013-4808 | Candidate | Unspecified vulnerability in HP Service Manager 7.11, 9.21, 9.30, and 9.31 and Service Center 6.2.8 allows remote attackers to obtain privileged access via unknown vectors. | Assigned (20130712) | None (candidate not yet proposed) | View | |
65011 | CVE-2013-5064 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20130806) | None (candidate not yet proposed) | View | |
65267 | CVE-2013-5320 | Candidate | Cross-site scripting (XSS) vulnerability in Forums/EditPost.aspx in mojoPortal before 2.3.9.8 allows remote attackers to inject arbitrary web script or HTML via the txtSubject parameter. | Assigned (20130820) | None (candidate not yet proposed) | View | |
65523 | CVE-2013-5576 | Candidate | administrator/components/com_media/helpers/media.php in the media manager in Joomla! 2.5.x before 2.5.14 and 3.x before 3.1.5 allows remote authenticated users or remote attackers to bypass intended access restrictions and upload files with dangerous extensions via a filename with a trailing . (dot), as exploited in the wild in August 2013. | Assigned (20130823) | None (candidate not yet proposed) | View |
Page 18858 of 20943, showing 5 records out of 104715 total, starting on record 94286, ending on 94290