CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
60411 | CVE-2013-0464 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in IBM Eclipse Help System (IEHS) 3.4.3 and 3.6.2, as used in IBM SPSS Data Collection 6.0, 6.0.1, and 7.0, allow remote attackers to inject arbitrary web script or HTML via a crafted URL. | Assigned (20121216) | None (candidate not yet proposed) | View | |
60667 | CVE-2013-0720 | Candidate | The COBIME application before 0.9.4 for Android uses weak permissions for unspecified files, which allows attackers to obtain sensitive information via an application that accesses the local filesystem. | Assigned (20121228) | None (candidate not yet proposed) | View | |
60923 | CVE-2013-0976 | Candidate | IOAcceleratorFamily in Apple Mac OS X before 10.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted graphics image. | Assigned (20130110) | None (candidate not yet proposed) | View | |
61179 | CVE-2013-1232 | Candidate | The HTTP implementation in Cisco WebEx Node for MCS, WebEx Meetings Server, and WebEx Node for ASR 1000 Series allows remote attackers to read the contents of uninitialized memory locations via a crafted request, aka Bug IDs CSCue36672, CSCue31363, CSCuf17466, and CSCug61252. | Assigned (20130111) | None (candidate not yet proposed) | View | |
61435 | CVE-2013-1488 | Candidate | The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 6 and 7, allows remote attackers to execute arbitrary code via unspecified vectors involving reflection, Libraries, "improper toString calls," and the JDBC driver manager, as demonstrated by James Forshaw during a Pwn2Own competition at CanSecWest 2013. | Assigned (20130130) | None (candidate not yet proposed) | View |
Page 20011 of 20943, showing 5 records out of 104715 total, starting on record 100051, ending on 100055