CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
64248 | CVE-2013-4301 | Candidate | includes/resourceloader/ResourceLoaderContext.php in MediaWiki 1.19.x before 1.19.8, 1.20.x before 1.20.7, and 1.21.x before 1.21.2 allows remote attackers to obtain sensitive information via a "<" (open angle bracket) character in the lang parameter to w/load.php, which reveals the installation path in an error message. | Assigned (20130612) | None (candidate not yet proposed) | View | |
64504 | CVE-2013-4557 | Candidate | The Security Screen (_core_/securite/ecran_securite.php) before 1.1.8 for SPIP, as used in SPIP 3.0.x before 3.0.12, allows remote attackers to execute arbitrary PHP via the connect parameter. | Assigned (20130612) | None (candidate not yet proposed) | View | |
64760 | CVE-2013-4813 | Candidate | The Agent (aka AgentController) servlet in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven Manager (IDM) 4.0 allows remote attackers to execute arbitrary commands via a HEAD request, aka ZDI-CAN-1745. | Assigned (20130712) | None (candidate not yet proposed) | View | |
65016 | CVE-2013-5069 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20130806) | None (candidate not yet proposed) | View | |
65272 | CVE-2013-5325 | Candidate | Adobe Reader and Acrobat 11.x before 11.0.05 on Windows allow remote attackers to execute arbitrary JavaScript code in a javascript: URL via a crafted PDF document. | Assigned (20130820) | None (candidate not yet proposed) | View |
Page 20367 of 20943, showing 5 records out of 104715 total, starting on record 101831, ending on 101835