CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60903  CVE-2013-0956  Candidate  WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-01-28-1.  Assigned (20130110)  None (candidate not yet proposed)    View
61159  CVE-2013-1212  Candidate  The SSL functionality in Cisco NX-OS on the Nexus 1000V does not properly verify X.509 certificates, which allows man-in-the-middle attackers to spoof servers, and intercept or modify Virtual Supervisor Module (VSM) to VMware vCenter communication, via a crafted certificate, aka Bug ID CSCud14837.  Assigned (20130111)  None (candidate not yet proposed)    View
61415  CVE-2013-1468  Candidate  Cross-site request forgery (CSRF) vulnerability in the LocalFiles Editor plugin in Piwigo before 2.4.7 allows remote attackers to hijack the authentication of administrators for requests that create arbitrary PHP files via unspecified vectors.  Assigned (20130129)  None (candidate not yet proposed)    View
61671  CVE-2013-1724  Candidate  Use-after-free vulnerability in the mozilla::dom::HTMLFormElement::IsDefaultSubmitElement function in Mozilla Firefox before 24.0, Thunderbird before 24.0, and SeaMonkey before 2.21 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving a destroyed SELECT element.  Assigned (20130213)  None (candidate not yet proposed)    View
61927  CVE-2013-1980  Candidate  Buffer overflow in the get_dsmp function in loaders/masi_load.c in libxmp before 4.1.0 allows remote attackers to execute arbitrary code via a crafted MASI file.  Assigned (20130219)  None (candidate not yet proposed)    View

Page 19017 of 20943, showing 5 records out of 104715 total, starting on record 95081, ending on 95085

Actions