|
283121
|
- |
|
esri
|
arcgis_server
|
SQL injection vulnerability in ESRI ArcGIS for Server through 10.2 allows remote attackers to execute arbitrary SQL commands via unspecified input to the map or feature service.
|
CWE-89
SQL Injection
|
CVE-2013-7232
|
2024-11-21 11:00 |
2013-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283122
|
- |
|
esri
|
arcgis_server
|
Cross-site scripting (XSS) vulnerability in the Mobile Content Server in ESRI ArcGIS for Server 10.1 and 10.2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified …
|
CWE-79
Cross-site Scripting
|
CVE-2013-7231
|
2024-11-21 11:00 |
2013-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283123
|
- |
|
openx revive-adserver
|
openx revive_adserver
|
SQL injection vulnerability in www/delivery/axmlrpc.php (aka the XML-RPC delivery invocation script) in Revive Adserver before 3.0.2, and OpenX Source 2.8.11 and earlier, allows remote attackers to e…
|
CWE-89
SQL Injection
|
CVE-2013-7149
|
2024-11-21 11:00 |
2013-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283124
|
- |
|
cisco
|
ios_xe
|
Cisco IOS XE 3.7S(.1) and earlier allows remote attackers to cause a denial of service (Packet Processor crash) via fragmented MPLS IP packets, aka Bug ID CSCul00709.
|
CWE-20
Improper Input Validation
|
CVE-2013-6981
|
2024-11-21 11:00 |
2013-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283125
|
- |
|
zimbra
|
collaboration_server
|
Unspecified vulnerability in Zimbra Collaboration Server 7.2.5 and earlier, and 8.0.x through 8.0.5, has "critical" impact and unspecified vectors, a different vulnerability than CVE-2013-7091.
|
NVD-CWE-noinfo
|
CVE-2013-7217
|
2024-11-21 11:00 |
2013-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283126
|
- |
|
etoshop
|
classifieds_creator
|
Multiple SQL injection vulnerabilities in Classifieds Creator 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) ID parameter to demo/classifieds/product.asp, or (2) UserID or (…
|
CWE-89
SQL Injection
|
CVE-2013-7216
|
2024-11-21 11:00 |
2013-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283127
|
- |
|
optimizepress
|
optimizepress
|
Multiple unrestricted file upload vulnerabilities in (1) media-upload.php, (2) media-upload-lncthumb.php, and (3) media-upload-sq_button.php in lib/admin/ in the OptimizePress theme before 1.61 for W…
|
CWE-20
Improper Input Validation
|
CVE-2013-7102
|
2024-11-21 11:00 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283128
|
- |
|
typo3
|
typo3
|
The (old) Form Content Element component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 allows remote authenticated editors to generate arbitrary H…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-7081
|
2024-11-21 11:00 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283129
|
- |
|
typo3
|
typo3
|
The creating record functionality in Extension table administration library (feuser_adminLib.inc) in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, and 6.0.0 through 6.0.11 allows remote attackers…
|
NVD-CWE-noinfo
|
CVE-2013-7080
|
2024-11-21 11:00 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283130
|
- |
|
typo3
|
typo3
|
Open redirect vulnerability in the OpenID extension in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 allows remote attackers to redirect users to arb…
|
CWE-20
Improper Input Validation
|
CVE-2013-7079
|
2024-11-21 11:00 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|