You are here

JC3 Medium Impact Assessment Bulletins

April 15, 2013
V-134: Cisco AnyConnect Secure Mobility Client Heap Overflow Lets Local Users Gain Elevated Privileges

Some vulnerabilities were reported in Cisco AnyConnect Secure Mobility Client.

April 9, 2013
V-129: Apache Subversion mod_dav_svn Multiple Denial of Service Vulnerabilities

Multiple vulnerabilities have been reported in Apache Subversion

April 8, 2013
V-128: Xen Event Channel Tracking Pointer Bug Local Privilege Escalation

A vulnerability was reported in Xen.

April 5, 2013
V-127: Samba Bug Lets Remote Authenticated Users Modify Files

A remote authenticated user can modify files on the target share

April 3, 2013
V-125: Cisco Connected Grid Network Management System Multiple Vulnerabilities

Some vulnerabilities have been reported in Cisco Connected Grid Network Management System.

April 2, 2013
V-124: Splunk Web Input Validation Flaw Permits Cross-Site Scripting Attacks

A vulnerability was reported in Splunk Web.

March 27, 2013
V-120: EMC Smarts Network Configuration Manager Java RMI Access Control Flaw Lets Remote Users Gain Full Control

Two vulnerabilities were reported in EMC Smarts Network Configuration Manager.

March 26, 2013
V-119: IBM Security AppScan Enterprise Multiple Vulnerabilities

IBM has acknowledged multiple vulnerabilities

March 22, 2013
V-117: Symantec Enterprise Vault for File System Archiving Unquoted Search Path Lets Local Users Gain Elevated Privileges

Symantec Enterprise Vault (EV) for File System Archiving has an unquoted search path in the File Collector and File PlaceHolder services

March 18, 2013
V-113: Apple Safari Bugs Let Remote Users Execute Arbitrary Code

Apple Safari Bugs Let Remote Users Execute Arbitrary Code