CVE List

Id CVE No. Status Description Phase Votes Comments Actions
59914  CVE-2012-6671  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141120)  None (candidate not yet proposed)    View
60170  CVE-2013-0223  Candidate  The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the join command, when using the -i switch, which triggers a stack-based buffer overflow in the alloca function.  Assigned (20121206)  None (candidate not yet proposed)    View
60426  CVE-2013-0479  Candidate  IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 do not properly restrict file types and extensions, which allows remote authenticated users to bypass intended access restrictions via a crafted filename.  Assigned (20121216)  None (candidate not yet proposed)    View
60682  CVE-2013-0735  Candidate  Multiple SQL injection vulnerabilities in wpf.class.php in the Mingle Forum plugin before 1.0.34 for WordPress allow remote attackers to execute arbitrary SQL commands via the id parameter in a viewtopic (1) remove_post, (2) sticky, or (3) closed action or (4) thread parameter in a postreply action to index.php.  Assigned (20130102)  None (candidate not yet proposed)    View
60938  CVE-2013-0991  Candidate  WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.  Assigned (20130110)  None (candidate not yet proposed)    View

Page 883 of 20943, showing 5 records out of 104715 total, starting on record 4411, ending on 4415

Actions