CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60407  CVE-2013-0460  Candidate  Cross-site request forgery (CSRF) vulnerability in the portlet subsystem in the administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47 and 7.0 before 7.0.0.27 allows remote attackers to hijack the authentication of arbitrary users for requests that insert cross-site scripting (XSS) sequences.  Assigned (20121216)  None (candidate not yet proposed)    View
60663  CVE-2013-0716  Candidate  The web server in Wind River VxWorks 5.5 through 6.9 allows remote attackers to cause a denial of service (daemon crash) via a crafted URI.  Assigned (20121228)  None (candidate not yet proposed)    View
60919  CVE-2013-0972  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130110)  None (candidate not yet proposed)    View
61175  CVE-2013-1228  Candidate  Cisco Jabber on Windows does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and modify the client-server data stream via a crafted certificate, aka Bug ID CSCug30280.  Assigned (20130111)  None (candidate not yet proposed)    View
61431  CVE-2013-1484  Candidate  Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 13 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.  Assigned (20130130)  None (candidate not yet proposed)    View

Page 20298 of 20943, showing 5 records out of 104715 total, starting on record 101486, ending on 101490

Actions