CVE List

Id CVE No. Status Description Phase Votes Comments Actions
64493  CVE-2013-4546  Candidate  The repository import feature in gitlab-shell before 1.7.4, as used in GitLab, allows remote authenticated users to execute arbitrary commands via the import URL.  Assigned (20130612)  None (candidate not yet proposed)    View
64749  CVE-2013-4802  Candidate  Cross-site scripting (XSS) vulnerability in HP Application Lifecycle Management (ALM) Quality Center before 11.51 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka ZDI-CAN-1565.  Assigned (20130712)  None (candidate not yet proposed)    View
65005  CVE-2013-5058  Candidate  Integer overflow in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 allows local users to gain privileges via a crafted application, aka "Win32k Integer Overflow Vulnerability."  Assigned (20130806)  None (candidate not yet proposed)    View
65261  CVE-2013-5314  Candidate  Cross-site scripting (XSS) vulnerability in serendipity_admin_image_selector.php in Serendipity 1.6.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the serendipity[htmltarget] parameter.  Assigned (20130819)  None (candidate not yet proposed)    View
65517  CVE-2013-5570  Candidate  Cross-site scripting (XSS) vulnerability in the Javascript and CSS Optimizer extension before 1.1.14 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20130823)  None (candidate not yet proposed)    View

Page 19519 of 20943, showing 5 records out of 104715 total, starting on record 97591, ending on 97595

Actions