CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
63462 | CVE-2013-3515 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in OpenX Source 2.8.10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) package parameter to www/admin/plugin-index.php or the (2) group parameter to www/admin/plugin-settings.php. | Assigned (20130508) | None (candidate not yet proposed) | View | |
63718 | CVE-2013-3771 | Candidate | Unspecified vulnerability in the Oracle executable component in Oracle Database Server 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows local users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-3760. | Assigned (20130603) | None (candidate not yet proposed) | View | |
63974 | CVE-2013-4027 | Candidate | IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 through 7.1.1.12, and 7.5 before 7.5.0.5 allows remote authenticated users to bypass intended access restrictions via unspecified vectors. | Assigned (20130607) | None (candidate not yet proposed) | View | |
64230 | CVE-2013-4283 | Candidate | ns-slapd in 389 Directory Server before 1.3.0.8 allows remote attackers to cause a denial of service (server crash) via a crafted Distinguished Name (DN) in a MOD operation request. | Assigned (20130612) | None (candidate not yet proposed) | View | |
64486 | CVE-2013-4539 | Candidate | Multiple buffer overflows in the tsc210x_load function in hw/input/tsc210x.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted (1) precision, (2) nextprecision, (3) function, or (4) nextfunction value in a savevm image. | Assigned (20130612) | None (candidate not yet proposed) | View |
Page 18953 of 20943, showing 5 records out of 104715 total, starting on record 94761, ending on 94765