CVE List

Id CVE No. Status Description Phase Votes Comments Actions
64248  CVE-2013-4301  Candidate  includes/resourceloader/ResourceLoaderContext.php in MediaWiki 1.19.x before 1.19.8, 1.20.x before 1.20.7, and 1.21.x before 1.21.2 allows remote attackers to obtain sensitive information via a "<" (open angle bracket) character in the lang parameter to w/load.php, which reveals the installation path in an error message.  Assigned (20130612)  None (candidate not yet proposed)    View
64504  CVE-2013-4557  Candidate  The Security Screen (_core_/securite/ecran_securite.php) before 1.1.8 for SPIP, as used in SPIP 3.0.x before 3.0.12, allows remote attackers to execute arbitrary PHP via the connect parameter.  Assigned (20130612)  None (candidate not yet proposed)    View
64760  CVE-2013-4813  Candidate  The Agent (aka AgentController) servlet in HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, and Identity Driven Manager (IDM) 4.0 allows remote attackers to execute arbitrary commands via a HEAD request, aka ZDI-CAN-1745.  Assigned (20130712)  None (candidate not yet proposed)    View
65016  CVE-2013-5069  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130806)  None (candidate not yet proposed)    View
65272  CVE-2013-5325  Candidate  Adobe Reader and Acrobat 11.x before 11.0.05 on Windows allow remote attackers to execute arbitrary JavaScript code in a javascript: URL via a crafted PDF document.  Assigned (20130820)  None (candidate not yet proposed)    View

Page 20367 of 20943, showing 5 records out of 104715 total, starting on record 101831, ending on 101835

Actions