CVE List

Id CVE No. Status Description Phase Votes Comments Actions
64502  CVE-2013-4555  Candidate  Cross-site request forgery (CSRF) vulnerability in ecrire/action/logout.php in SPIP before 2.1.24 allows remote attackers to hijack the authentication of arbitrary users for requests that logout the user via unspecified vectors.  Assigned (20130612)  None (candidate not yet proposed)    View
64758  CVE-2013-4811  Candidate  UpdateDomainControllerServlet in the SNAC registration server in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven Manager (IDM) 4.0 does not properly validate the adCert argument, which allows remote attackers to upload .jsp files and consequently execute arbitrary code via unspecified vectors, aka ZDI-CAN-1743.  Assigned (20130712)  None (candidate not yet proposed)    View
65014  CVE-2013-5067  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130806)  None (candidate not yet proposed)    View
65270  CVE-2013-5323  Candidate  Cross-site scripting (XSS) vulnerability in the Static Info Tables (static_info_tables) extension before 2.3.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20130820)  None (candidate not yet proposed)    View
65526  CVE-2013-5579  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130823)  None (candidate not yet proposed)    View

Page 20227 of 20943, showing 5 records out of 104715 total, starting on record 101131, ending on 101135

Actions