|
283221
|
- |
|
nowsms
|
now_sms_\&_mms_gateway
|
The Multimedia Messaging Centre (MMSC) in NowSMS Now SMS & MMS Gateway 2013.09.26 allows remote attackers to cause a denial of service via a malformed message to a MM4 connection.
|
CWE-20
Improper Input Validation
|
CVE-2013-7000
|
2024-11-21 11:00 |
2013-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283222
|
- |
|
microsoft
|
windows_server_2008
|
The IsHandleEntrySecure function in win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2008 SP2 does not properly validate the tagPROCESSINFO pW32Job field, which allows local users to…
|
NVD-CWE-Other
|
CVE-2013-6999
|
2024-11-21 11:00 |
2013-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283223
|
- |
|
osehra
|
vista
|
The M2M Broker in OSEHRA VistA, as distributed before September 30, 2013, allows attackers to bypass authentication and authorization to perform doctor-only actions and read or modify patient records…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6945
|
2024-11-21 11:00 |
2013-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283224
|
- |
|
mybb
|
ajax_forum_stat
|
Multiple SQL injection vulnerabilities in ajaxfs.php in the Ajax forum stat (Ajaxfs) Plugin 2.0 for MyBB (aka MyBulletinBoard) allow remote attackers to execute arbitrary SQL commands via the (1) too…
|
CWE-89
SQL Injection
|
CVE-2013-6936
|
2024-11-21 11:00 |
2013-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283225
|
- |
|
videocharge
|
watermark_master
|
Buffer overflow in VideoCharge Software Watermark Master 2.2.23 allows remote attackers to execute arbitrary code via a long string in the SourcePath value in a .wcf file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-6935
|
2024-11-21 11:00 |
2013-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283226
|
- |
|
videocharge
|
watermark_master
|
Buffer overflow in VideoCharge Software Watermark Master 2.2.23 allows remote attackers to execute arbitrary code via a long string in the name attribute of the cols element in a .wstyle file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-6937
|
2024-11-21 11:00 |
2013-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283227
|
5.5 |
MEDIUM
Local
|
triplc
|
trilogi_server
|
Internet TRiLOGI Server (unknown versions) could allow a local user to bypass security and create a local user account.
|
NVD-CWE-Other
|
CVE-2013-6927
|
2024-11-21 10:59 |
2020-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283228
|
9.8 |
CRITICAL
Network
|
xerox
|
colorqube_9201_firmware colorqube_9202_firmware colorqube_9203_firmware workcentre_6400_firmware workcentre_7525_firmware workcentre_7530_firmware workcentre_7535_firmware workce…
|
Xerox ColorCube and WorkCenter devices in 2013 had hardcoded FTP and shell user accounts.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2013-6362
|
2024-11-21 10:59 |
2020-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283229
|
7.5 |
HIGH
Network
|
trendnet
|
ts-s402_firmware
|
TRENDnet TS-S402 has a backdoor to enable TELNET.
|
CWE-287
Improper Authentication
|
CVE-2013-6360
|
2024-11-21 10:59 |
2020-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283230
|
5.9 |
MEDIUM
Network
|
mapway
|
tube_map
|
Tube Map Live Underground for Android before 3.0.22 has an Information Disclosure Vulnerability
|
CWE-200
Information Exposure
|
CVE-2013-6681
|
2024-11-21 10:59 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|