CVE List

Id CVE No. Status Description Phase Votes Comments Actions
59383  CVE-2012-6140  Candidate  pam_google_authenticator.c in the PAM module in Google Authenticator before 1.0 requires user-readable permissions for the secret file, which allows local users to bypass intended access restrictions and discover a shared secret via standard filesystem operations, a different vulnerability than CVE-2013-0258.  Assigned (20121206)  None (candidate not yet proposed)    View
59639  CVE-2012-6396  Candidate  Cisco NX-OS on Nexus 7000 series switches does not properly handle certain line-card replacements, which might allow remote authenticated users to cause a denial of service (memory consumption) via a crafted configuration that references interfaces that do not exist on the new card, aka Bug ID CSCud44300.  Assigned (20121216)  None (candidate not yet proposed)    View
59895  CVE-2012-6652  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140731)  None (candidate not yet proposed)    View
60151  CVE-2013-0204  Candidate  settings/personal.php in ownCloud 4.5.x before 4.5.6 allows remote authenticated users to execute arbitrary PHP code via crafted mount point settings.  Assigned (20121206)  None (candidate not yet proposed)    View
60407  CVE-2013-0460  Candidate  Cross-site request forgery (CSRF) vulnerability in the portlet subsystem in the administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47 and 7.0 before 7.0.0.27 allows remote attackers to hijack the authentication of arbitrary users for requests that insert cross-site scripting (XSS) sequences.  Assigned (20121216)  None (candidate not yet proposed)    View

Page 19692 of 20943, showing 5 records out of 104715 total, starting on record 98456, ending on 98460

Actions