|
292141
|
- |
|
canonical
|
ubuntu_linux
|
Apport 2.12.5 and earlier uses weak permissions for core dump files created by setuid binaries, which allows local users to obtain sensitive information by reading the file.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1067
|
2024-11-21 10:48 |
2013-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292142
|
- |
|
cartpauj
|
mingle-forum
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the Mingle Forum plugin 1.0.34 and possibly earlier for WordPress allow remote attackers to hijack the authentication of administrators f…
|
CWE-352
Origin Validation Error
|
CVE-2013-0736
|
2024-11-21 10:48 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292143
|
- |
|
corel
|
pdf_fusion
|
Stack-based buffer overflow in Corel PDF Fusion 1.11 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a long ZIP directory entry name in an XPS f…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0742
|
2024-11-21 10:48 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292144
|
- |
|
ubuntu_developers canonical
|
language-selector ubuntu_linux
|
language-selector 0.110.x before 0.110.1, 0.90.x before 0.90.1, and 0.79.x before 0.79.4 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass inte…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1066
|
2024-11-21 10:48 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292145
|
- |
|
martin_pitt canonical
|
jockey ubuntu_linux
|
backend.py in Jockey before 0.9.7-0ubuntu7.11 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a Po…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1065
|
2024-11-21 10:48 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292146
|
- |
|
canonical
|
apt-xapian-index ubuntu_linux
|
apt-xapian-index before 0.45ubuntu2.1, 0.44ubuntu7.1, and 0.44ubuntu5.1 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restr…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1064
|
2024-11-21 10:48 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292147
|
- |
|
canonical evan_dandrea
|
ubuntu_linux usb-creator
|
usb-creator 0.2.47 before 0.2.47.1, 0.2.40 before 0.2.40ubuntu2, and 0.2.38 before 0.2.38.2 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass i…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1063
|
2024-11-21 10:48 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292148
|
- |
|
canonical michael_vogt
|
ubuntu_linux ubuntu-system-service
|
ubuntu-system-service 0.2.4 before 0.2.4.1. 0.2.3 before 0.2.3.1, and 0.2.2 before 0.2.2.1 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass in…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1062
|
2024-11-21 10:48 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292149
|
- |
|
marc_deslauriers canonical
|
software-properties ubuntu_linux
|
dbus/SoftwarePropertiesDBus.py in Software Properties 0.92.17 before 0.92.17.3, 0.92.9 before 0.92.9.3, and 0.82.7 before 0.82.7.5 does not properly use D-Bus for communication with a polkit authorit…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1061
|
2024-11-21 10:48 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292150
|
- |
|
enea emerson
|
ose dl_8000_remote_terminal_unit roc_800l_remote_terminal_unit roc_800_remote_terminal_unit
|
The Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier have hardcoded credentials in a ROM…
|
CWE-255
Credentials Management
|
CVE-2013-0694
|
2024-11-21 10:48 |
2013-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|