CVE List

Id CVE No. Status Description Phase Votes Comments Actions
64499  CVE-2013-4552  Candidate  lib/Auth/Source/External.php in the drupalauth module before 1.2.2 for simpleSAMLphp allows remote attackers to authenticate as an arbitrary user via the user name (uid) in a cookie.  Assigned (20130612)  None (candidate not yet proposed)    View
64755  CVE-2013-4808  Candidate  Unspecified vulnerability in HP Service Manager 7.11, 9.21, 9.30, and 9.31 and Service Center 6.2.8 allows remote attackers to obtain privileged access via unknown vectors.  Assigned (20130712)  None (candidate not yet proposed)    View
65011  CVE-2013-5064  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130806)  None (candidate not yet proposed)    View
65267  CVE-2013-5320  Candidate  Cross-site scripting (XSS) vulnerability in Forums/EditPost.aspx in mojoPortal before 2.3.9.8 allows remote attackers to inject arbitrary web script or HTML via the txtSubject parameter.  Assigned (20130820)  None (candidate not yet proposed)    View
65523  CVE-2013-5576  Candidate  administrator/components/com_media/helpers/media.php in the media manager in Joomla! 2.5.x before 2.5.14 and 3.x before 3.1.5 allows remote authenticated users or remote attackers to bypass intended access restrictions and upload files with dangerous extensions via a filename with a trailing . (dot), as exploited in the wild in August 2013.  Assigned (20130823)  None (candidate not yet proposed)    View

Page 18858 of 20943, showing 5 records out of 104715 total, starting on record 94286, ending on 94290

Actions