CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60408  CVE-2013-0461  Candidate  Cross-site scripting (XSS) vulnerability in the virtual member manager (VMM) administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.27, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20121216)  None (candidate not yet proposed)    View
60664  CVE-2013-0717  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in the web-based management utility on the NEC AtermWR9500N, AtermWR8600N, AtermWR8370N, AtermWR8160N, AtermWM3600R, and AtermWM3450RN routers allow remote attackers to hijack the authentication of administrators for requests that (1) initialize settings or (2) reboot the device.  Assigned (20121228)  None (candidate not yet proposed)    View
60920  CVE-2013-0973  Candidate  Software Update in Apple Mac OS X through 10.7.5 does not prevent plugin loading within the marketing-text WebView, which allows man-in-the-middle attackers to execute plugin code by modifying the client-server data stream.  Assigned (20130110)  None (candidate not yet proposed)    View
61176  CVE-2013-1229  Candidate  TMSSNMPService.exe in TelePresence Manager in Cisco TelePresence Management Suite (TMS) on 64-bit platforms allows remote attackers to cause a denial of service (process crash) via SNMP traps, aka Bug ID CSCue00028.  Assigned (20130111)  None (candidate not yet proposed)    View
61432  CVE-2013-1485  Candidate  Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 13 and earlier allows remote attackers to affect integrity via unknown vectors related to Libraries.  Assigned (20130130)  None (candidate not yet proposed)    View

Page 20364 of 20943, showing 5 records out of 104715 total, starting on record 101816, ending on 101820

Actions