|
289851
|
- |
|
miniupnp_project
|
miniupnpd
|
Stack-based buffer overflow in the ExecuteSoapAction function in the SOAPAction handler in the HTTP service in MiniUPnP MiniUPnPd 1.0 allows remote attackers to execute arbitrary code via a long quot…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0230
|
2024-11-21 10:47 |
2013-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289852
|
- |
|
miniupnp_project
|
miniupnpd
|
The ProcessSSDPRequest function in minissdp.c in the SSDP handler in MiniUPnP MiniUPnPd before 1.4 allows remote attackers to cause a denial of service (service crash) via a crafted request that trig…
|
NVD-CWE-noinfo
|
CVE-2013-0229
|
2024-11-21 10:47 |
2013-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289853
|
- |
|
rubyonrails
|
rails ruby_on_rails
|
lib/active_support/json/backends/yaml.rb in Ruby on Rails 2.3.x before 2.3.16 and 3.0.x before 3.0.20 does not properly convert JSON data to YAML data for processing by a YAML parser, which allows re…
|
NVD-CWE-Other
|
CVE-2013-0333
|
2024-11-21 10:47 |
2013-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289854
|
- |
|
ge
|
intelligent_platforms_proficy_hmi\/scada_cimplicity intelligent_platforms_proficy_process_systems_with_cimplicity intelligent_platforms_proficy_process_systems
|
CimWebServer in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY 4.01 through 8.0, and Proficy Process Systems with CIMPLICITY, allows remote attackers to execute arbitrary commands or cause a…
|
CWE-20
Improper Input Validation
|
CVE-2013-0654
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289855
|
- |
|
ge
|
intelligent_platforms_proficy_hmi\/scada_cimplicity intelligent_platforms_proficy_process_systems_with_cimplicity intelligent_platforms_proficy_process_systems
|
Directory traversal vulnerability in substitute.bcl in the WebView CimWeb subsystem in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY 4.01 through 8.0, and Proficy Process Systems with CIMPL…
|
CWE-22
Path Traversal
|
CVE-2013-0653
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289856
|
- |
|
ge
|
intelligent_platforms_proficy_real-time_information_portal
|
GE Intelligent Platforms Proficy Real-Time Information Portal does not restrict access to methods of an unspecified Java class, which allows remote attackers to obtain a username listing via an RMI c…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0652
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289857
|
- |
|
ge
|
intelligent_platforms_proficy_real-time_information_portal
|
The Portal installation process in GE Intelligent Platforms Proficy Real-Time Information Portal stores sensitive information under the web root with insufficient access control, which allows remote …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0651
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289858
|
- |
|
ibm
|
websphere_application_server
|
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 6.1, 7.0 before 7.0.0.27, 8.0, and 8.5 has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2013-0462
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289859
|
- |
|
ibm
|
websphere_application_server
|
Cross-site scripting (XSS) vulnerability in the virtual member manager (VMM) administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.27, 8.0 before 8.0.…
|
CWE-79
Cross-site Scripting
|
CVE-2013-0461
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289860
|
- |
|
ibm
|
websphere_application_server
|
Cross-site request forgery (CSRF) vulnerability in the portlet subsystem in the administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47 and 7.0 before 7.0.0.27 allows rem…
|
CWE-352
Origin Validation Error
|
CVE-2013-0460
|
2024-11-21 10:47 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|