CVE List

Id CVE No. Status Description Phase Votes Comments Actions
60681  CVE-2013-0734  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Mingle Forum plugin before 1.0.34 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) search_words parameter in a search action to wpf.class.php or (2) togroupusers parameter in an add_user_togroup action to fs-admin/fs-admin.php.  Assigned (20130102)  None (candidate not yet proposed)    View
60937  CVE-2013-0990  Candidate  SMB in Apple Mac OS X before 10.8.4, when file sharing is enabled, allows remote authenticated users to create or modify files outside of a shared directory via unspecified vectors.  Assigned (20130110)  None (candidate not yet proposed)    View
61193  CVE-2013-1246  Candidate  Cisco TelePresence System Software does not properly handle inactive t-shell sessions, which allows remote authenticated users to cause a denial of service (memory consumption and service outage) by establishing multiple SSH connections, aka Bug ID CSCug77610.  Assigned (20130111)  None (candidate not yet proposed)    View
61449  CVE-2013-1502  Candidate  Unspecified vulnerability in Oracle MySQL 5.5.30 and earlier and 5.6.9 and earlier allows local users to affect availability via unknown vectors related to Server Partition.  Assigned (20130130)  None (candidate not yet proposed)    View
61705  CVE-2013-1758  Candidate  Cross-site scripting (XSS) vulnerability in the Marekkis Watermark plugin 0.9.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the pfad parameter to wp-admin/options-general.php. NOTE: some of these details are obtained from third party information.  Assigned (20130218)  None (candidate not yet proposed)    View

Page 803 of 20943, showing 5 records out of 104715 total, starting on record 4011, ending on 4015

Actions