CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60168  CVE-2013-0221  Candidate  The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the sort command, when using the (1) -d or (2) -M switch, which triggers a stack-based buffer overflow in the alloca function.  Assigned (20121206)  None (candidate not yet proposed)    View
60424  CVE-2013-0477  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in IBM InfoSphere Master Data Management - Collaborative Edition 10.0 and 10.1 before FP1 and InfoSphere Master Data Management Server for Product Information Management 6.0, 9.0, and 9.1 allow remote authenticated users to inject content, and conduct phishing attacks, via unspecified vectors.  Assigned (20121216)  None (candidate not yet proposed)    View
60680  CVE-2013-0733  Candidate  Untrusted search path vulnerability in Corel PaintShop Pro X5 and X6 16.0.0.113, 15.2.0.2, and earlier allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a .jpg file.  Assigned (20130102)  None (candidate not yet proposed)    View
60936  CVE-2013-0989  Candidate  Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MP3 file.  Assigned (20130110)  None (candidate not yet proposed)    View
61192  CVE-2013-1245  Candidate  The user-management page in Cisco WebEx Social relies on client-side validation of values in the Screen Name, First Name, Middle Name, Last Name, Email Address, and Job Title fields, which allows remote authenticated users to bypass intended access restrictions via crafted requests, aka Bug ID CSCue67190.  Assigned (20130111)  None (candidate not yet proposed)    View

Page 716 of 20943, showing 5 records out of 104715 total, starting on record 3576, ending on 3580

Actions