CVE List

Id CVE No. Status Description Phase Votes Comments Actions
59640  CVE-2012-6397  Candidate  Cross-site scripting (XSS) vulnerability in Cisco WebEx Social (formerly Cisco Quad) allows remote attackers to inject arbitrary web script or HTML via a crafted RSS service link, aka Bug ID CSCub61977.  Assigned (20121216)  None (candidate not yet proposed)    View
59896  CVE-2012-6653  Candidate  Unspecified vulnerability in the All Video Gallery (all-video-gallery) plugin before 1.2.0 for WordPress has unspecified impact and attack vectors.  Assigned (20140806)  None (candidate not yet proposed)    View
60152  CVE-2013-0205  Candidate  Cross-site request forgery (CSRF) vulnerability in the RESTful Web Services (restws) module 7.x-1.x before 7.x-1.2 and 7.x-2.x before 7.x-2.0-alpha4 for Drupal allows remote attackers to hijack the authentication of arbitrary users via unknown vectors.  Assigned (20121206)  None (candidate not yet proposed)    View
60408  CVE-2013-0461  Candidate  Cross-site scripting (XSS) vulnerability in the virtual member manager (VMM) administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.27, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20121216)  None (candidate not yet proposed)    View
60664  CVE-2013-0717  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in the web-based management utility on the NEC AtermWR9500N, AtermWR8600N, AtermWR8370N, AtermWR8160N, AtermWM3600R, and AtermWM3450RN routers allow remote attackers to hijack the authentication of administrators for requests that (1) initialize settings or (2) reboot the device.  Assigned (20121228)  None (candidate not yet proposed)    View

Page 20382 of 20943, showing 5 records out of 104715 total, starting on record 101906, ending on 101910

Actions