CVE List

Id CVE No. Status Description Phase Votes Comments Actions
61933  CVE-2013-1986  Candidate  Multiple integer overflows in X.org libXrandr 1.4.0 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XRRQueryOutputProperty and (2) XRRQueryProviderProperty functions.  Assigned (20130219)  None (candidate not yet proposed)    View
62189  CVE-2013-2242  Candidate  mod/chat/gui_sockets/index.php in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2.4.x before 2.4.5, and 2.5.x before 2.5.1 does not consider the mod/chat:chat capability before authorizing daemon-mode chat, which allows remote authenticated users to bypass intended access restrictions via an HTTP session to a chat server.  Assigned (20130219)  None (candidate not yet proposed)    View
62445  CVE-2013-2498  Candidate  SQL injection vulnerability in the login page in flexycms/modules/user/user_manager.php in SimpleHRM 2.3, 2.2, and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter to index.php/user/setLogin.  Assigned (20130307)  None (candidate not yet proposed)    View
62701  CVE-2013-2754  Candidate  Cross-site request forgery (CSRF) vulnerability in Umisoft UMI.CMS before 2.9 build 21905 allows remote attackers to hijack the authentication of administrators for requests that add administrator accounts via a request to admin/users/add/user/do/.  Assigned (20130403)  None (candidate not yet proposed)    View
62957  CVE-2013-3010  Candidate  Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM Java 6.0.1 before 6.0.1 SR6 and 7 before 7 SR5 allows remote attackers to affect confidentiality, availability, and integrity via unknown vectors, a different vulnerability than CVE-2013-3007.  Assigned (20130412)  None (candidate not yet proposed)    View

Page 19517 of 20943, showing 5 records out of 104715 total, starting on record 97581, ending on 97585

Actions