|
285731
|
6.1 |
MEDIUM
Network
|
otrs opensuse
|
otrs_itsm faq opensuse
|
A Cross-Site Scripting (XSS) Vulnerability exists in OTRS ITSM prior to 3.2.4, 3.1.8, and 3.0.7 and FAQ prior to 2.1.4 and 2.0.8 via changes, workorder items, and FAQ articles, which could let a remo…
|
CWE-79
Cross-site Scripting
|
CVE-2013-2637
|
2024-11-21 10:52 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285732
|
5.9 |
MEDIUM
Network
|
dlink
|
dir865l_firmware
|
D-Link DIR865L v1.03 suffers from an "Unauthenticated Hardware Linking" vulnerability.
|
CWE-287
Improper Authentication
|
CVE-2013-3096
|
2024-11-21 10:52 |
2020-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285733
|
9.8 |
CRITICAL
Network
|
belkin
|
n300_firmware
|
An Authentication Bypass vulnerability in Belkin N300 (F7D7301v1) router allows remote attackers to bypass authentication using "Javascript debugging."
|
CWE-287
Improper Authentication
|
CVE-2013-3091
|
2024-11-21 10:52 |
2020-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285734
|
5.4 |
MEDIUM
Network
|
linksys
|
wrt310n_firmware
|
Linksys WRT310Nv2 2.0.0.1 is vulnerable to XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2013-3067
|
2024-11-21 10:52 |
2020-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285735
|
6.1 |
MEDIUM
Network
|
cisco
|
linksys_e4200_firmware
|
Cross-site Scripting (XSS) in Cisco Linksys E4200 1.0.05 Build 7 devices allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-2684
|
2024-11-21 10:52 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285736
|
5.3 |
MEDIUM
Network
|
cisco
|
linksys_e4200_firmware
|
Cisco Linksys E4200 1.0.05 Build 7 devices contain an Information Disclosure Vulnerability which allows remote attackers to obtain private IP addresses and other sensitive information.
|
CWE-200
Information Exposure
|
CVE-2013-2683
|
2024-11-21 10:52 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285737
|
4.3 |
MEDIUM
Network
|
cisco
|
linksys_e4200_firmware
|
Cisco Linksys E4200 1.0.05 Build 7 devices contain a Clickjacking Vulnerability which allows remote attackers to obtain sensitive information.
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2013-2682
|
2024-11-21 10:52 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285738
|
9.8 |
CRITICAL
Network
|
cisco
|
linksys_e4200_firmware
|
Cisco Linksys E4200 1.0.05 Build 7 devices contain a Security Bypass Vulnerability which could allow remote attackers to gain unauthorized access.
|
CWE-287
Improper Authentication
|
CVE-2013-2681
|
2024-11-21 10:52 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285739
|
7.5 |
HIGH
Network
|
cisco
|
linksys_e4200_firmware
|
Cisco Linksys E4200 1.0.05 Build 7 devices store passwords in cleartext allowing remote attackers to obtain sensitive information.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2013-2680
|
2024-11-21 10:52 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285740
|
6.5 |
MEDIUM
Network
|
brother
|
mfc-9970cdw_firmware
|
Brother MFC-9970CDW 1.10 devices with Firmware L contain a Frameable response (Clickjacking) vulnerability which could allow remote attackers to obtain sensitive information.
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2013-2675
|
2024-11-21 10:52 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|