CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60411  CVE-2013-0464  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in IBM Eclipse Help System (IEHS) 3.4.3 and 3.6.2, as used in IBM SPSS Data Collection 6.0, 6.0.1, and 7.0, allow remote attackers to inject arbitrary web script or HTML via a crafted URL.  Assigned (20121216)  None (candidate not yet proposed)    View
60667  CVE-2013-0720  Candidate  The COBIME application before 0.9.4 for Android uses weak permissions for unspecified files, which allows attackers to obtain sensitive information via an application that accesses the local filesystem.  Assigned (20121228)  None (candidate not yet proposed)    View
60923  CVE-2013-0976  Candidate  IOAcceleratorFamily in Apple Mac OS X before 10.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted graphics image.  Assigned (20130110)  None (candidate not yet proposed)    View
61179  CVE-2013-1232  Candidate  The HTTP implementation in Cisco WebEx Node for MCS, WebEx Meetings Server, and WebEx Node for ASR 1000 Series allows remote attackers to read the contents of uninitialized memory locations via a crafted request, aka Bug IDs CSCue36672, CSCue31363, CSCuf17466, and CSCug61252.  Assigned (20130111)  None (candidate not yet proposed)    View
61435  CVE-2013-1488  Candidate  The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 6 and 7, allows remote attackers to execute arbitrary code via unspecified vectors involving reflection, Libraries, "improper toString calls," and the JDBC driver manager, as demonstrated by James Forshaw during a Pwn2Own competition at CanSecWest 2013.  Assigned (20130130)  None (candidate not yet proposed)    View

Page 20011 of 20943, showing 5 records out of 104715 total, starting on record 100051, ending on 100055

Actions