CVE List

Id CVE No. Status Description Phase Votes Comments Actions
63217  CVE-2013-3270  Candidate  EMC VNX Control Station before 7.1.70.2 and Celerra Control Station before 6.0.70.1 have an incorrect group ownership for unspecified script files, which allows local users to gain privileges by leveraging nasadmin group membership.  Assigned (20130426)  None (candidate not yet proposed)    View
63473  CVE-2013-3526  Candidate  Cross-site scripting (XSS) vulnerability in js/ta_loaded.js.php in the Traffic Analyzer plugin, possibly 3.3.2 and earlier, for WordPress allows remote attackers to inject arbitrary web script or HTML via the aoid parameter.  Assigned (20130510)  None (candidate not yet proposed)    View
63729  CVE-2013-3782  Candidate  Unspecified vulnerability in the Secure Global Desktop component in Oracle Virtualization 4.6 prior to 4.63 and 4.7 prior to 4.71 allows remote attackers to affect integrity via unknown vectors related to Web UI.  Assigned (20130603)  None (candidate not yet proposed)    View
63985  CVE-2013-4038  Candidate  The Intelligent Platform Management Interface (IPMI) implementation in Integrated Management Module (IMM) on IBM BladeCenter, Flex System, System x iDataPlex, and System x3### servers uses cleartext for password storage, which allows context-dependent attackers to obtain sensitive information by reading a file.  Assigned (20130607)  None (candidate not yet proposed)    View
64241  CVE-2013-4294  Candidate  The (1) mamcache and (2) KVS token backends in OpenStack Identity (Keystone) Folsom 2012.2.x and Grizzly before 2013.1.4 do not properly compare the PKI token revocation list with PKI tokens, which allow remote attackers to bypass intended access restrictions via a revoked PKI token.  Assigned (20130612)  None (candidate not yet proposed)    View

Page 19218 of 20943, showing 5 records out of 104715 total, starting on record 96086, ending on 96090

Actions