|
290711
|
- |
|
ge
|
intelligent_platforms_proficy_real-time_information_portal
|
The Portal installation process in GE Intelligent Platforms Proficy Real-Time Information Portal stores sensitive information under the web root with insufficient access control, which allows remote …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0651
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290712
|
- |
|
ibm
|
websphere_application_server
|
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 6.1, 7.0 before 7.0.0.27, 8.0, and 8.5 has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2013-0462
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290713
|
- |
|
ibm
|
websphere_application_server
|
Cross-site scripting (XSS) vulnerability in the virtual member manager (VMM) administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.27, 8.0 before 8.0.…
|
CWE-79
Cross-site Scripting
|
CVE-2013-0461
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290714
|
- |
|
ibm
|
websphere_application_server
|
Cross-site request forgery (CSRF) vulnerability in the portlet subsystem in the administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47 and 7.0 before 7.0.0.27 allows rem…
|
CWE-352
Origin Validation Error
|
CVE-2013-0460
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290715
|
- |
|
ibm
|
websphere_application_server
|
Cross-site scripting (XSS) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.27, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 a…
|
CWE-79
Cross-site Scripting
|
CVE-2013-0459
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290716
|
- |
|
ibm
|
websphere_application_server
|
Cross-site scripting (XSS) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.27, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2, …
|
CWE-79
Cross-site Scripting
|
CVE-2013-0458
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290717
|
- |
|
sixapart
|
movable_type
|
lib/MT/Upgrade.pm in mt-upgrade.cgi in Movable Type 4.2x and 4.3x through 4.38 does not require authentication for requests to database-migration functions, which allows remote attackers to conduct e…
|
CWE-287
Improper Authentication
|
CVE-2013-0209
|
2024-11-21 10:47 |
2013-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290718
|
- |
|
siemens
|
simatic_rf-manager simatic_rf-manager_2008
|
Buffer overflow in a third-party ActiveX component in Siemens SIMATIC RF-MANAGER 2008, and RF-MANAGER Basic 3.0 and earlier, allows remote attackers to execute arbitrary code via a crafted web site.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0656
|
2024-11-21 10:47 |
2013-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290719
|
- |
|
schneider-electric
|
interactive_graphical_scada_system
|
Stack-based buffer overflow in Schneider Electric Interactive Graphical SCADA System (IGSS) 10 and earlier allows remote attackers to execute arbitrary code by sending TCP port-12397 data that does n…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0657
|
2024-11-21 10:47 |
2013-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290720
|
- |
|
schneider-electric
|
software_update_utility
|
The client in Schneider Electric Software Update (SESU) Utility 1.0.x and 1.1.x does not ensure that updates have a valid origin, which allows man-in-the-middle attackers to spoof updates, and conseq…
|
CWE-20
Improper Input Validation
|
CVE-2013-0655
|
2024-11-21 10:47 |
2013-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|