|
284981
|
9.8 |
CRITICAL
Network
|
swfupload_project
|
swfupload
|
There is an object injection vulnerability in swfupload plugin for wordpress.
|
CWE-74
Injection
|
CVE-2013-4144
|
2024-11-21 10:54 |
2022-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284982
|
6.5 |
MEDIUM
Network
|
otrs
|
otrs
|
Kernel/Modules/AgentTicketWatcher.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.21, 3.1.x before 3.1.17, and 3.2.x before 3.2.8 does not properly restrict tickets, which allows remote atta…
|
CWE-200
Information Exposure
|
CVE-2013-4088
|
2024-11-21 10:54 |
2020-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284983
|
7.5 |
HIGH
Network
|
opensips
|
opensips
|
A Denial of Service (infinite loop) exists in OpenSIPS before 1.10 in lookup.c.
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2013-3722
|
2024-11-21 10:54 |
2020-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284984
|
9.8 |
CRITICAL
Network
|
zabbix
|
zabbix
|
A File Inclusion vulnerability exists in Zabbix 2.0.6 due to inadequate sanitization of request strings in CGI scripts, which could let a remote malicious user execute arbitrary code.
|
CWE-20
Improper Input Validation
|
CVE-2013-3738
|
2024-11-21 10:54 |
2020-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284985
|
9.8 |
CRITICAL
Network
|
invisioncommunity
|
invision_power_board
|
Invision Power Board (IPB) through 3.x allows admin account takeover leading to code execution.
|
NVD-CWE-noinfo
|
CVE-2013-3725
|
2024-11-21 10:54 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284986
|
7.5 |
HIGH
Network
|
varnish_cache_project
|
varnish_cache
|
Varnish HTTP cache before 3.0.4: ACL bug
|
NVD-CWE-Other
|
CVE-2013-4090
|
2024-11-21 10:54 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284987
|
7.0 |
HIGH
Local
|
spritesoftware
|
spritebackup spritebud
|
A Privilege Escalation Vulnerability exists in Sprite Software Spritebud 1.3.24 and 1.3.28 and Backup 2.5.4105 and 2.5.4108 on LG Android smartphones due to a race condition in the spritebud daemon, …
|
CWE-362
Race Condition
|
CVE-2013-3685
|
2024-11-21 10:54 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284988
|
7.8 |
HIGH
Local
|
daum
|
potplayer
|
Potplayer prior to 1.5.39659: DLL Loading Arbitrary Code Execution Vulnerability
|
CWE-426
Untrusted Search Path
|
CVE-2013-3942
|
2024-11-21 10:54 |
2020-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284989
|
9.8 |
CRITICAL
Network
|
imagely
|
nextgen_gallery
|
NextGEN Gallery plugin before 1.9.13 for WordPress: ngggallery.php file upload
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2013-3684
|
2024-11-21 10:54 |
2020-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284990
|
5.4 |
MEDIUM
Network
|
projectpier
|
projectpier
|
ProjectPier 0.8.8 does not use the Secure flag for cookies
|
CWE-79
Cross-site Scripting
|
CVE-2013-3637
|
2024-11-21 10:54 |
2020-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|