|
285911
|
7.5 |
HIGH
Network
|
brother
|
mfc-9970cdw_firmware
|
Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive information from referrer logs due to inadequate handling o…
|
CWE-200
Information Exposure
|
CVE-2013-2674
|
2024-11-21 10:52 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285912
|
6.8 |
MEDIUM
Physics
|
brother
|
mfc-9970cdw_firmware
|
Brother MFC-9970CDW 1.10 firmware L devices contain a security bypass vulnerability which allows physically proximate attackers to gain unauthorized access.
|
CWE-863
Incorrect Authorization
|
CVE-2013-2673
|
2024-11-21 10:52 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285913
|
7.5 |
HIGH
Network
|
brother
|
mfc-9970cdw_firmware
|
Brother MFC-9970CDW devices with firmware 0D allow cleartext submission of passwords.
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2013-2672
|
2024-11-21 10:52 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285914
|
7.5 |
HIGH
Network
|
tp-link
|
tl-wr1043nd_firmware
|
TP-LINK TL-WR1043ND V1_120405 devices contain an unspecified denial of service vulnerability.
|
NVD-CWE-noinfo
|
CVE-2013-2646
|
2024-11-21 10:52 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285915
|
5.3 |
MEDIUM
Network
|
tinywebgallery
|
tinywebgallery
|
TinyWebGallery (TWG) 1.8.9 and earlier contains a full path disclosure vulnerability which allows remote attackers to obtain sensitive information through the parameters "twg_browserx" and "twg_brows…
|
CWE-200
Information Exposure
|
CVE-2013-2631
|
2024-11-21 10:52 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285916
|
5.3 |
MEDIUM
Network
|
telaen_project
|
telaen
|
Telean before 1.3.1 contains a full path disclosure vulnerability which could allow remote attackers to obtain sensitive information through a specially crafted URL request.
|
CWE-200
Information Exposure
|
CVE-2013-2624
|
2024-11-21 10:52 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285917
|
6.1 |
MEDIUM
Network
|
telaen_project
|
telaen
|
Cross-site Scripting (XSS) in Telaen before 1.3.1 allows remote attackers to inject arbitrary web script or HTML via the "f_email" parameter in index.php.
|
CWE-79
Cross-site Scripting
|
CVE-2013-2623
|
2024-11-21 10:52 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285918
|
6.1 |
MEDIUM
Network
|
uebimiau
|
uebimiau
|
Cross-site Scripting (XSS) in UebiMiau 2.7.11 and earlier allows remote attackers to inject arbitrary web script or HTML via the "selected_theme" parameter in error.php.
|
CWE-79
Cross-site Scripting
|
CVE-2013-2622
|
2024-11-21 10:52 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285919
|
6.1 |
MEDIUM
Network
|
telaen_project
|
telaen
|
Open Redirection Vulnerability in the redir.php script in Telaen before 1.3.1 allows remote attackers to redirect victims to arbitrary websites via a crafted URL.
|
CWE-601
Open Redirect
|
CVE-2013-2621
|
2024-11-21 10:52 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285920
|
8.8 |
HIGH
Network
|
asus
|
rt-n56u_firmware rt-n10u_firmware dsl-n55u_firmware rt-ac66u_firmware rt-n15u_firmware rt-n53_firmware rt-n16_firmware
|
ASUS RT-N56U devices allow CSRF.
|
CWE-352
Origin Validation Error
|
CVE-2013-3093
|
2024-11-21 10:52 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|