CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
60153 | CVE-2013-0206 | Candidate | Unrestricted file upload vulnerability in the Live CSS module 6.x-2.x before 6.x-2.1 and 7.x-2.x before 7.x-2.7 for Drupal allows remote authenticated users with the "administer CSS" permissions to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory. | Assigned (20121206) | None (candidate not yet proposed) | View | |
60409 | CVE-2013-0462 | Candidate | Unspecified vulnerability in IBM WebSphere Application Server (WAS) 6.1, 7.0 before 7.0.0.27, 8.0, and 8.5 has unknown impact and attack vectors. | Assigned (20121216) | None (candidate not yet proposed) | View | |
60665 | CVE-2013-0718 | Candidate | The Simeji application 4.8.1 and earlier for Android uses weak permissions for unspecified files, which allows attackers to obtain sensitive information via an application that accesses the local filesystem. | Assigned (20121228) | None (candidate not yet proposed) | View | |
60921 | CVE-2013-0974 | Candidate | StoreKit in Apple iOS before 6.1 does not properly handle the disabling of JavaScript within the preferences configuration of Mobile Safari, which allows remote attackers to bypass intended access restrictions and execute JavaScript code via a web site with a Smart App Banner. | Assigned (20130110) | None (candidate not yet proposed) | View | |
61177 | CVE-2013-1230 | Candidate | Cisco Unified Communications Domain Manager allows remote attackers to cause a denial of service (CPU consumption) via a flood of malformed UDP packets, aka Bug ID CSCug47057. | Assigned (20130111) | None (candidate not yet proposed) | View |
Page 20441 of 20943, showing 5 records out of 104715 total, starting on record 102201, ending on 102205