CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60153  CVE-2013-0206  Candidate  Unrestricted file upload vulnerability in the Live CSS module 6.x-2.x before 6.x-2.1 and 7.x-2.x before 7.x-2.7 for Drupal allows remote authenticated users with the "administer CSS" permissions to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.  Assigned (20121206)  None (candidate not yet proposed)    View
60409  CVE-2013-0462  Candidate  Unspecified vulnerability in IBM WebSphere Application Server (WAS) 6.1, 7.0 before 7.0.0.27, 8.0, and 8.5 has unknown impact and attack vectors.  Assigned (20121216)  None (candidate not yet proposed)    View
60665  CVE-2013-0718  Candidate  The Simeji application 4.8.1 and earlier for Android uses weak permissions for unspecified files, which allows attackers to obtain sensitive information via an application that accesses the local filesystem.  Assigned (20121228)  None (candidate not yet proposed)    View
60921  CVE-2013-0974  Candidate  StoreKit in Apple iOS before 6.1 does not properly handle the disabling of JavaScript within the preferences configuration of Mobile Safari, which allows remote attackers to bypass intended access restrictions and execute JavaScript code via a web site with a Smart App Banner.  Assigned (20130110)  None (candidate not yet proposed)    View
61177  CVE-2013-1230  Candidate  Cisco Unified Communications Domain Manager allows remote attackers to cause a denial of service (CPU consumption) via a flood of malformed UDP packets, aka Bug ID CSCug47057.  Assigned (20130111)  None (candidate not yet proposed)    View

Page 20441 of 20943, showing 5 records out of 104715 total, starting on record 102201, ending on 102205

Actions