|
284181
|
- |
|
joachim_ruhs
|
locator
|
Cross-site scripting (XSS) vulnerability in the Store Locator (locator) extension before 3.1.5 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-5305
|
2024-11-21 10:57 |
2013-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284182
|
- |
|
joachim_ruhs
|
locator
|
SQL injection vulnerability in the Store Locator (locator) extension before 3.1.5 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2013-5304
|
2024-11-21 10:57 |
2013-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284183
|
- |
|
joachim_ruhs
|
locator
|
Unspecified vulnerability in the Store Locator (locator) extension before 3.1.5 for TYPO3 has unknown impact and remote attack vectors, related to "Insecure Unserialize."
|
NVD-CWE-noinfo
|
CVE-2013-5303
|
2024-11-21 10:57 |
2013-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284184
|
- |
|
kennziffer
|
ke_search
|
SQL injection vulnerability in the Faceted Search (ke_search) extension before 1.4.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2013-5302
|
2024-11-21 10:57 |
2013-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284185
|
- |
|
trustport
|
webfilter
|
Directory traversal vulnerability in help.php in Trustport Webfilter 5.5.0.2232 allows remote attackers to read arbitrary files via a .. (dot dot) in the hf parameter.
|
CWE-22
Path Traversal
|
CVE-2013-5301
|
2024-11-21 10:57 |
2013-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284186
|
- |
|
juniper
|
junos_space junos_space_virtual_appliance junos_space_ja1500_appliance
|
Juniper Junos Space before 13.1R1.6, as used on the JA1500 appliance and in other contexts, does not properly restrict access to the list of user accounts and their MD5 password hashes, which makes i…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5097
|
2024-11-21 10:57 |
2013-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284187
|
- |
|
juniper
|
junos_space junos_space_virtual_appliance junos_space_ja1500_appliance
|
Juniper Junos Space before 13.1R1.6, as used on the JA1500 appliance and in other contexts, does not properly implement role-based access control, which allows remote authenticated users to modify th…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5096
|
2024-11-21 10:57 |
2013-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284188
|
- |
|
juniper
|
junos_space junos_space_virtual_appliance junos_space_ja1500_appliance
|
Cross-site scripting (XSS) vulnerability in the web-based interface in Juniper Junos Space before 13.1R1.6, as used on the JA1500 appliance and in other contexts, allows remote attackers to inject ar…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5095
|
2024-11-21 10:57 |
2013-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284189
|
- |
|
alienvault
|
open_source_security_information_management
|
Multiple cross-site scripting (XSS) vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) before 4.3.0 allow remote attackers to inject arbitrary web script or HTML via th…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5300
|
2024-11-21 10:57 |
2013-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284190
|
- |
|
phpfox
|
phpfox
|
SQL injection vulnerability in PHPFox before 3.6.0 (build6) allows remote attackers to execute arbitrary SQL commands via the search[sort_by] parameter to user/browse/view_/.
|
CWE-89
SQL Injection
|
CVE-2013-5121
|
2024-11-21 10:57 |
2013-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|