|
287511
|
- |
|
moodle
|
moodle
|
Multiple cross-site scripting (XSS) vulnerabilities in the File Picker module in Moodle 2.x through 2.1.10, 2.2.x before 2.2.8, 2.3.x before 2.3.5, and 2.4.x before 2.4.2 allow remote authenticated u…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1833
|
2024-11-21 10:50 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287512
|
- |
|
moodle
|
moodle
|
repository/webdav/lib.php in Moodle 2.x through 2.1.10, 2.2.x before 2.2.8, 2.3.x before 2.3.5, and 2.4.x before 2.4.2 includes the WebDAV password in the configuration form, which allows remote auth…
|
CWE-200
Information Exposure
|
CVE-2013-1832
|
2024-11-21 10:50 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287513
|
- |
|
moodle
|
moodle
|
lib/setuplib.php in Moodle through 2.1.10, 2.2.x before 2.2.8, 2.3.x before 2.3.5, and 2.4.x before 2.4.2 allows remote attackers to obtain sensitive information via an invalid request, which reveals…
|
CWE-200
Information Exposure
|
CVE-2013-1831
|
2024-11-21 10:50 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287514
|
- |
|
fedoraproject moodle
|
fedora moodle
|
user/view.php in Moodle through 2.1.10, 2.2.x before 2.2.8, 2.3.x before 2.3.5, and 2.4.x before 2.4.2 does not enforce the forceloginforprofiles setting, which allows remote attackers to obtain sens…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1830
|
2024-11-21 10:50 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287515
|
- |
|
moodle
|
moodle
|
calendar/managesubscriptions.php in Moodle 2.4.x before 2.4.2 does not consider capability requirements before displaying calendar subscriptions, which allows remote authenticated users to obtain pot…
|
CWE-200
Information Exposure
|
CVE-2013-1829
|
2024-11-21 10:50 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287516
|
- |
|
openstack canonical
|
folsom ubuntu_linux
|
OpenStack Keystone Folsom (2012.2) does not properly perform revocation checks for Keystone PKI tokens when done through a server, which allows remote attackers to bypass intended access restrictions…
|
CWE-287
Improper Authentication
|
CVE-2013-1865
|
2024-11-21 10:50 |
2013-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287517
|
- |
|
openstack
|
glance
|
The v1 API in OpenStack Glance Essex (2012.1), Folsom (2012.2), and Grizzly, when using the single-tenant Swift or S3 store, reports the location field, which allows remote authenticated users to obt…
|
CWE-200
Information Exposure
|
CVE-2013-1840
|
2024-11-21 10:50 |
2013-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287518
|
- |
|
openstack canonical
|
essex folsom grizzly ubuntu_linux
|
OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) does not properly implement a quota for fixed IPs, which allows remote authenticated users to cause a denial of service (resource…
|
CWE-399
Resource Management Errors
|
CVE-2013-1838
|
2024-11-21 10:50 |
2013-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287519
|
- |
|
linux canonical
|
linux_kernel ubuntu_linux
|
Heap-based buffer overflow in the wdm_in_callback function in drivers/usb/class/cdc-wdm.c in the Linux kernel before 3.8.4 allows physically proximate attackers to cause a denial of service (system c…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-1860
|
2024-11-21 10:50 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287520
|
- |
|
linux
|
linux_kernel
|
fs/ext3/super.c in the Linux kernel before 3.8.4 uses incorrect arguments to functions in certain circumstances related to printk input, which allows local users to conduct format-string attacks and …
|
CWE-20
Improper Input Validation
|
CVE-2013-1848
|
2024-11-21 10:50 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|