|
283371
|
- |
|
qnap
|
photo_station_firmware photo_station
|
QNAP Photo Station before firmware 4.0.3 build0912 allows remote attackers to list OS user accounts via a request to photo/p/api/list.php.
|
CWE-200
Information Exposure
|
CVE-2013-5760
|
2024-11-21 10:58 |
2014-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283372
|
- |
|
openinfosecfoundation oisf
|
suricata
|
Suricata before 1.4.6 allows remote attackers to cause a denial of service (crash) via a malformed SSL record.
|
CWE-20
Improper Input Validation
|
CVE-2013-5919
|
2024-11-21 10:58 |
2014-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283373
|
- |
|
phpcms
|
guesbook_module
|
Multiple cross-site scripting (XSS) vulnerabilities in the Guestbook module for PHPCMS allow remote attackers to inject arbitrary web script or HTML via the (1) list or (2) introduce parameter to ind…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5939
|
2024-11-21 10:58 |
2014-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283374
|
- |
|
microweber
|
microweber
|
Directory traversal vulnerability in userfiles/modules/admin/backup/delete.php in Microweber before 0.830 allows remote attackers to delete arbitrary files via a .. (dot dot) in the file parameter.
|
CWE-22
Path Traversal
|
CVE-2013-5984
|
2024-11-21 10:58 |
2014-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283375
|
- |
|
simplerisk
|
simplerisk
|
Cross-site scripting (XSS) vulnerability in management/prioritize_planning.php in SimpleRisk before 20130916-001 allows remote attackers to inject arbitrary web script or HTML via the new_project par…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5749
|
2024-11-21 10:58 |
2014-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283376
|
- |
|
simplerisk
|
simplerisk
|
Cross-site request forgery (CSRF) vulnerability in management/prioritize_planning.php in SimpleRisk before 20130916-001 allows remote attackers to hijack the authentication of users for requests that…
|
CWE-352
Origin Validation Error
|
CVE-2013-5748
|
2024-11-21 10:58 |
2014-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283377
|
- |
|
hp
|
network_node_manager_i
|
Cross-site scripting (XSS) vulnerability in HP Network Node Manager i (NNMi) 9.0, 9.10, and 9.20 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-6220
|
2024-11-21 10:58 |
2014-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283378
|
- |
|
bradesco_gateway_plugin_project
|
bradesco_gateway
|
Cross-site scripting (XSS) vulnerability in falha.php in the Bradesco Gateway plugin 2.0 for Wordpress, as used in the WP e-Commerce plugin, allows remote attackers to inject arbitrary web script or …
|
CWE-79
Cross-site Scripting
|
CVE-2013-5916
|
2024-11-21 10:58 |
2014-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283379
|
- |
|
uclouvain
|
openjpeg
|
OpenJPEG 1.5.1 allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based out-of-bounds read.
|
CWE-20
Improper Input Validation
|
CVE-2013-6053
|
2024-11-21 10:58 |
2014-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283380
|
- |
|
joomlaboat
|
com_youtubegallery
|
Cross-site scripting (XSS) vulnerability in includes/flvthumbnail.php in the Youtube Gallery (com_youtubegallery) component 3.4.0 for Joomla! allows remote attackers to inject arbitrary web script or…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5956
|
2024-11-21 10:58 |
2014-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|