CVE List

Id CVE No. Status Description Phase Votes Comments Actions
64238  CVE-2013-4291  Candidate  The virSecurityManagerSetProcessLabel function in libvirt 0.10.2.7, 1.0.5.5, and 1.1.1, when the domain has read an uid:gid label, does not properly set group memberships, which allows local users to gain privileges.  Assigned (20130612)  None (candidate not yet proposed)    View
64494  CVE-2013-4547  Candidate  nginx 0.8.41 through 1.4.3 and 1.5.x before 1.5.7 allows remote attackers to bypass intended restrictions via an unescaped space character in a URI.  Assigned (20130612)  None (candidate not yet proposed)    View
64750  CVE-2013-4803  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130712)  None (candidate not yet proposed)    View
65006  CVE-2013-5059  Candidate  Microsoft SharePoint Server 2010 SP1 and SP2 and 2013, and Office Web Apps 2013, allows remote attackers to execute arbitrary code via crafted page content, aka "SharePoint Page Content Vulnerabilities."  Assigned (20130806)  None (candidate not yet proposed)    View
65262  CVE-2013-5315  Candidate  Cross-site scripting (XSS) vulnerability in the Resource Manager in the MEE submodule (mee.module) in the Scald module 6.x-1.x before 6.x-1.0-beta3 and 7.x-1.x before 7.x-1.1 for Drupal allows remote attackers to inject arbitrary web script or HTML via the atom title, a different vector than CVE-2013-4174.  Assigned (20130819)  None (candidate not yet proposed)    View

Page 19596 of 20943, showing 5 records out of 104715 total, starting on record 97976, ending on 97980

Actions