|
285261
|
- |
|
apple
|
mac_os_x iphone_os
|
The posix_spawn system call in the XNU kernel in Apple Mac OS X 10.8.x does not properly validate the data for file actions and port actions, which allows local users to (1) cause a denial of service…
|
CWE-20
Improper Input Validation
|
CVE-2013-3954
|
2024-11-21 10:54 |
2013-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285262
|
- |
|
apple
|
mac_os_x iphone_os
|
The mach_port_space_info function in osfmk/ipc/mach_debug.c in the XNU kernel in Apple Mac OS X 10.8.x does not initialize a certain structure member, which allows local users to obtain sensitive inf…
|
CWE-200
Information Exposure
|
CVE-2013-3953
|
2024-11-21 10:54 |
2013-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285263
|
- |
|
apple
|
mac_os_x
|
The fill_pipeinfo function in bsd/kern/sys_pipe.c in the XNU kernel in Apple Mac OS X 10.8.x allows local users to defeat the KASLR protection mechanism via the PROC_PIDFDPIPEINFO option to the proc_…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-3952
|
2024-11-21 10:54 |
2013-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285264
|
- |
|
apple
|
watchos iphone_os mac_os_x
|
sys/openbsd/stack_protector.c in libc in Apple iOS 6.1.3 and Mac OS X 10.8.x does not properly parse the Apple strings employed in the user-space stack-cookie implementation, which allows local users…
|
CWE-20
Improper Input Validation
|
CVE-2013-3951
|
2024-11-21 10:54 |
2013-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285265
|
- |
|
apple
|
iphone_os
|
Stack-based buffer overflow in the openSharedCacheFile function in dyld.cpp in dyld in Apple iOS 5.1.x and 6.x through 6.1.3 makes it easier for attackers to conduct untethering attacks via a long st…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-3950
|
2024-11-21 10:54 |
2013-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285266
|
- |
|
apple
|
mac_os_x
|
The posix_spawn system call in the XNU kernel in Apple Mac OS X 10.8.x does not prevent use of the _POSIX_SPAWN_DISABLE_ASLR and _POSIX_SPAWN_ALLOW_DATA_EXEC flags for setuid and setgid programs, whi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-3949
|
2024-11-21 10:54 |
2013-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285267
|
- |
|
apple
|
iphone_os
|
Apple iOS 6.1.3 does not follow redirects during determination of the hostname to display in an iOS Enterprise Deployment installation dialog, which makes it easier for remote attackers to trigger in…
|
CWE-20
Improper Input Validation
|
CVE-2013-3948
|
2024-11-21 10:54 |
2013-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285268
|
- |
|
php
|
php
|
The Zend Engine in PHP before 5.4.16 RC1, and 5.5.0 before RC2, does not properly determine whether a parser error occurred, which allows context-dependent attackers to cause a denial of service (mem…
|
CWE-20
Improper Input Validation
|
CVE-2013-3735
|
2024-11-21 10:54 |
2013-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285269
|
- |
|
psychostats
|
psychostats
|
SQL injection vulnerability in awards.php in PsychoStats 3.2.2b allows remote attackers to execute arbitrary SQL commands via the d parameter.
|
CWE-89
SQL Injection
|
CVE-2013-3721
|
2024-11-21 10:54 |
2013-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285270
|
- |
|
feedweb
|
feedweb
|
Cross-site scripting (XSS) vulnerability in widget_remove.php in the Feedweb plugin before 1.9 for WordPress allows remote authenticated administrators to inject arbitrary web script or HTML via the …
|
CWE-79
Cross-site Scripting
|
CVE-2013-3720
|
2024-11-21 10:54 |
2013-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|