CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60144  CVE-2013-0197  Candidate  Cross-site scripting (XSS) vulnerability in the filter_draw_selection_area2 function in core/filter_api.php in MantisBT 1.2.12 before 1.2.13 allows remote attackers to inject arbitrary web script or HTML via the match_type parameter to bugs/search.php.  Assigned (20121206)  None (candidate not yet proposed)    View
60400  CVE-2013-0453  Candidate  Cross-site scripting (XSS) vulnerability in Web Reports in IBM Tivoli Endpoint Manager (TEM) before 8.2.1372 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.  Assigned (20121216)  None (candidate not yet proposed)    View
60656  CVE-2013-0709  Candidate  Cross-site scripting (XSS) vulnerability in dopvSTAR* 0091 allows remote attackers to inject arbitrary web script or HTML via the HTTP Referer header, which is not properly handled during display of the access log.  Assigned (20121228)  None (candidate not yet proposed)    View
60912  CVE-2013-0965  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130110)  None (candidate not yet proposed)    View
61168  CVE-2013-1221  Candidate  The Tomcat Web Management feature in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 does not properly configure Tomcat components, which allows remote attackers to execute arbitrary code via a crafted (1) HTTP or (2) HTTPS request, aka Bug ID CSCub38384.  Assigned (20130111)  None (candidate not yet proposed)    View

Page 19738 of 20943, showing 5 records out of 104715 total, starting on record 98686, ending on 98690

Actions