CVE List

Id CVE No. Status Description Phase Votes Comments Actions
63474  CVE-2013-3527  Candidate  Multiple SQL injection vulnerabilities in Vanilla Forums before 2.0.18.8 allow remote attackers to execute arbitrary SQL commands via the parameter name in the Form/Email array to (1) entry/signin or (2) entry/passwordrequest.  Assigned (20130510)  None (candidate not yet proposed)    View
63730  CVE-2013-3783  Candidate  Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.31 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Parser.  Assigned (20130603)  None (candidate not yet proposed)    View
63986  CVE-2013-4039  Candidate  IBM WebSphere Extended Deployment Compute Grid 8.0 before 8.0.0.3 allows remote authenticated users to obtain sensitive information, and consequently bypass intended access restrictions on jobs, via unspecified vectors.  Assigned (20130607)  None (candidate not yet proposed)    View
64242  CVE-2013-4295  Candidate  The gadget renderer in Apache Shindig 2.5.0 for PHP allows remote attackers to obtain sensitive information via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  Assigned (20130612)  None (candidate not yet proposed)    View
64498  CVE-2013-4551  Candidate  Xen 4.2.x and 4.3.x, when nested virtualization is disabled, does not properly check the emulation paths for (1) VMLAUNCH and (2) VMRESUME, which allows local HVM guest users to cause a denial of service (host crash) via unspecified vectors related to "guest VMX instruction execution."  Assigned (20130612)  None (candidate not yet proposed)    View

Page 19908 of 20943, showing 5 records out of 104715 total, starting on record 99536, ending on 99540

Actions