CVE List

Id CVE No. Status Description Phase Votes Comments Actions
63462  CVE-2013-3515  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in OpenX Source 2.8.10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) package parameter to www/admin/plugin-index.php or the (2) group parameter to www/admin/plugin-settings.php.  Assigned (20130508)  None (candidate not yet proposed)    View
63718  CVE-2013-3771  Candidate  Unspecified vulnerability in the Oracle executable component in Oracle Database Server 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows local users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2013-3760.  Assigned (20130603)  None (candidate not yet proposed)    View
63974  CVE-2013-4027  Candidate  IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 through 7.1.1.12, and 7.5 before 7.5.0.5 allows remote authenticated users to bypass intended access restrictions via unspecified vectors.  Assigned (20130607)  None (candidate not yet proposed)    View
64230  CVE-2013-4283  Candidate  ns-slapd in 389 Directory Server before 1.3.0.8 allows remote attackers to cause a denial of service (server crash) via a crafted Distinguished Name (DN) in a MOD operation request.  Assigned (20130612)  None (candidate not yet proposed)    View
64486  CVE-2013-4539  Candidate  Multiple buffer overflows in the tsc210x_load function in hw/input/tsc210x.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted (1) precision, (2) nextprecision, (3) function, or (4) nextfunction value in a savevm image.  Assigned (20130612)  None (candidate not yet proposed)    View

Page 18953 of 20943, showing 5 records out of 104715 total, starting on record 94761, ending on 94765

Actions