|
288051
|
- |
|
ettercap-project
|
ettercap
|
Stack-based buffer overflow in the scan_load_hosts function in ec_scan.c in Ettercap 0.7.5.1 and earlier might allow local users to gain privileges via a Trojan horse hosts list containing a long lin…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0722
|
2024-11-21 10:48 |
2013-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288052
|
- |
|
wp_php_widget_project
|
wp_php_widget
|
wp-php-widget.php in the WP PHP widget plugin 1.0.2 for WordPress allows remote attackers to obtain sensitive information via a direct request, which reveals the full path in an error message.
|
CWE-200
Information Exposure
|
CVE-2013-0721
|
2024-11-21 10:48 |
2013-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288053
|
7.8 |
HIGH
Local
|
ibm
|
sterling_external_authentication_server
|
A Command Execution Vulnerability exists in IBM Sterling External Authentication Server 2.2.0, 2.3.01, 2.4.0, and 2.4.1 via an unspecified OS command, which could let a local malicious user execute a…
|
CWE-78
OS Command
|
CVE-2013-0517
|
2024-11-21 10:47 |
2020-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288054
|
4.9 |
MEDIUM
Network
|
simplemachines
|
simple_machines_forum
|
File Disclosure in SMF (SimpleMachines Forum) <= 2.0.3: Forum admin can read files such as the database config.
|
CWE-200
Information Exposure
|
CVE-2013-0192
|
2024-11-21 10:47 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288055
|
8.1 |
HIGH
Network
|
ibm
|
infosphere_information_server
|
IBM InfoSphere Information Server 8.1, 8.5, 8.7, 9.1 has a Session Fixation Vulnerability
|
CWE-384
Session Fixation
|
CVE-2013-0507
|
2024-11-21 10:47 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288056
|
7.5 |
HIGH
Network
|
imagely
|
nextgen_gallery
|
NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability
|
CWE-200
Information Exposure
|
CVE-2013-0291
|
2024-11-21 10:47 |
2020-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288057
|
5.9 |
MEDIUM
Network
|
pyrad_project fedoraproject
|
pyrad fedora
|
packet.py in pyrad before 2.1 uses weak random numbers to generate RADIUS authenticators and hash passwords, which makes it easier for remote attackers to obtain sensitive information via a brute for…
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2013-0294
|
2024-11-21 10:47 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288058
|
5.4 |
MEDIUM
Network
|
pinboard_project
|
pinboard
|
Pinboard 1.0.6 theme for Wordpress has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2013-0286
|
2024-11-21 10:47 |
2020-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288059
|
7.5 |
HIGH
Network
|
redhat
|
mrg_management_console
|
An import error was introduced in Cumin in the code refactoring in r5310. Server certificate validation is always disabled when connecting to Aviary servers, even if the installed packages on a syste…
|
CWE-295
Improper Certificate Validation
|
CVE-2013-0264
|
2024-11-21 10:47 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288060
|
6.5 |
MEDIUM
Network
|
redhat
|
openshift
|
A CSRF issue was found in OpenShift Enterprise 1.2. The web console is using 'Basic authentication' and the REST API has no CSRF attack protection mechanism. This can allow an attacker to obtain the …
|
CWE-352
Origin Validation Error
|
CVE-2013-0196
|
2024-11-21 10:47 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|