CVE List

Id CVE No. Status Description Phase Votes Comments Actions
61942  CVE-2013-1995  Candidate  X.org libXi 1.7.1 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to an unexpected sign extension in the XListInputDevices function.  Assigned (20130219)  None (candidate not yet proposed)    View
62198  CVE-2013-2251  Candidate  Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expressions via a parameter with a crafted (1) action:, (2) redirect:, or (3) redirectAction: prefix.  Assigned (20130219)  None (candidate not yet proposed)    View
62454  CVE-2013-2507  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Brother MFC-9970CDW printer with firmware G (1.03) allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to admin/log_to_net.html or (2) kind parameter to fax/copy_settings.html, a different vulnerability than CVE-2013-2670 and CVE-2013-2671.  Assigned (20130308)  None (candidate not yet proposed)    View
62710  CVE-2013-2763  Candidate  ** DISPUTED ** The Schneider Electric M340 PLC modules allow remote attackers to cause a denial of service (resource consumption) via unspecified vectors. NOTE: the vendor reportedly disputes this issue because it "could not be duplicated" and "an attacker could not remotely exploit this observed behavior to deny PLC control functions."  Assigned (20130404)  None (candidate not yet proposed)    View
62966  CVE-2013-3019  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130412)  None (candidate not yet proposed)    View

Page 20225 of 20943, showing 5 records out of 104715 total, starting on record 101121, ending on 101125

Actions