CVE List

Id CVE No. Status Description Phase Votes Comments Actions
63991  CVE-2013-4044  Candidate  IBM SPSS Collaboration and Deployment Services 4.2.1 before 4.2.1.3 IF3 and 5.0 before FP3 allows remote authenticated users to read application log files via a direct HTTP request.  Assigned (20130607)  None (candidate not yet proposed)    View
64247  CVE-2013-4300  Candidate  The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.11 performs a capability check in an incorrect namespace, which allows local users to gain privileges via PID spoofing.  Assigned (20130612)  None (candidate not yet proposed)    View
64503  CVE-2013-4556  Candidate  Cross-site scripting (XSS) vulnerability in the author page (prive/formulaires/editer_auteur.php) in SPIP before 2.1.24 and 3.0.x before 3.0.12 allows remote attackers to inject arbitrary web script or HTML via the url_site parameter.  Assigned (20130612)  None (candidate not yet proposed)    View
64759  CVE-2013-4812  Candidate  UpdateCertificatesServlet in the SNAC registration server in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven Manager (IDM) 4.0 does not properly validate the fileName argument, which allows remote attackers to upload .jsp files and consequently execute arbitrary code via unspecified vectors, aka ZDI-CAN-1743.  Assigned (20130712)  None (candidate not yet proposed)    View
65015  CVE-2013-5068  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130806)  None (candidate not yet proposed)    View

Page 19166 of 20943, showing 5 records out of 104715 total, starting on record 95826, ending on 95830

Actions