CVE List

Id CVE No. Status Description Phase Votes Comments Actions
65288  CVE-2013-5341  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20130820)  None (candidate not yet proposed)    View
65545  CVE-2013-5598  Candidate  PDF.js in Mozilla Firefox before 25.0 and Firefox ESR 24.x before 24.1 does not properly handle the appending of an IFRAME element, which allows remote attackers to read arbitrary files or execute arbitrary JavaScript code with chrome privileges by using this element within an embedded PDF object.  Assigned (20130826)  None (candidate not yet proposed)    View
65801  CVE-2013-5854  Candidate  Unspecified vulnerability in Oracle Java SE 7u40 and earlier and JavaFX 2.2.40 and earlier allows remote attackers to affect confidentiality via unknown vectors.  Assigned (20130918)  None (candidate not yet proposed)    View
521  CVE-1999-0524  Candidate  ICMP information such as (1) netmask and (2) timestamp is allowed from arbitrary hosts.  Modified (20161206)  MODIFY(3) Baker, Frech, Meunier | REJECT(1) Northcutt  Frech> XF:icmp-timestamp | XF:icmp-netmask | Meunier> If this is not merged with 1999-0523 as I commented for that | CVE, then the description should be changed to "ICMP messages of types | 13 and 14 (timestamp request and reply) and 17 and 18 (netmask request | and reply) are acted upon without any access control". It"s a more | precise and correct language. I believe that this is a valid CVE | entry (it"s a common source of vulnerabilities or exposures) even | though I see that the inferred action was "reject". Knowing the time | of a host also allows attacks against random number generators that | are seeded with the current time. I want to push to have it accepted. | Baker> I agree with the description changes suggested by Pascal  View
66057  CVE-2013-6110  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20131012)  None (candidate not yet proposed)    View

Page 720 of 20943, showing 5 records out of 104715 total, starting on record 3596, ending on 3600

Actions