CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60649  CVE-2013-0702  Candidate  Cross-site scripting (XSS) vulnerability in Cybozu Garoon 2.0.0 through 3.5.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20121228)  None (candidate not yet proposed)    View
60905  CVE-2013-0958  Candidate  WebKit, as used in Apple iOS before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-01-28-1.  Assigned (20130110)  None (candidate not yet proposed)    View
61161  CVE-2013-1214  Candidate  The scripts editor in Cisco Unified Contact Center Express (aka Unified CCX) does not properly manage privileges for anonymous logins, which allows remote attackers to read arbitrary scripts by visiting the scripts repository directory, aka Bug ID CSCuf77546.  Assigned (20130111)  None (candidate not yet proposed)    View
61417  CVE-2013-1470  Candidate  Cross-site scripting (XSS) vulnerability in calendar/index.php in the Calendar plugin in Geeklog before 1.8.2sr1 and 2.0.0 before 2.0.0rc2 allows remote attackers to inject arbitrary web script or HTML via the calendar_type parameter to submit.php.  Assigned (20130129)  None (candidate not yet proposed)    View
61673  CVE-2013-1726  Candidate  Mozilla Updater in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 does not ensure exclusive access to a MAR file, which allows local users to gain privileges by creating a Trojan horse file after MAR signature verification but before MAR use.  Assigned (20130213)  None (candidate not yet proposed)    View

Page 19189 of 20943, showing 5 records out of 104715 total, starting on record 95941, ending on 95945

Actions