|
283621
|
- |
|
xiaowen_huang
|
yingzhi_python_programming_language
|
Directory traversal vulnerability in the FTP server in YingZhi Python Programming Language for iOS 1.9 allows remote attackers to read and possibly write arbitrary files via a .. (dot dot) in the def…
|
CWE-22
Path Traversal
|
CVE-2013-5655
|
2024-11-21 10:57 |
2014-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283622
|
- |
|
mark_evans
|
fog-dragonfly
|
lib/dragonfly/imagemagickutils.rb in the fog-dragonfly gem 0.8.2 for Ruby allows remote attackers to execute arbitrary commands via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2013-5671
|
2024-11-21 10:57 |
2014-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283623
|
- |
|
powersoftware
|
winarchiver
|
Buffer overflow in Power Software WinArchiver 3.2 allows remote attackers to execute arbitrary code via a crafted .zip file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-5660
|
2024-11-21 10:57 |
2014-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283624
|
- |
|
ibm
|
rhapsody_design_manager rational_software_architect_design_manager
|
Unspecified vulnerability in IBM Rational Software Architect (RSA) Design Manager and Rational Rhapsody Design Manager 3.x through 3.0.1 and 4.x before 4.0.6 allows remote authenticated users to modi…
|
NVD-CWE-noinfo
|
CVE-2013-5459
|
2024-11-21 10:57 |
2014-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283625
|
- |
|
trustwave debian
|
modsecurity debian_linux
|
apache2/modsecurity.c in ModSecurity before 2.7.6 allows remote attackers to bypass rules by using chunked transfer coding with a capitalized Chunked value in the Transfer-Encoding HTTP header.
|
NVD-CWE-noinfo
|
CVE-2013-5705
|
2024-11-21 10:57 |
2014-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283626
|
- |
|
apache redhat oracle apple canonical
|
http_server enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux_eus jboss_enter…
|
The mod_headers module in the Apache HTTP Server 2.2.22 allows remote attackers to bypass "RequestHeader unset" directives by placing a header in the trailer portion of data sent with chunked transfe…
|
NVD-CWE-noinfo
|
CVE-2013-5704
|
2024-11-21 10:57 |
2014-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283627
|
- |
|
lee_howard
|
hylafax\+
|
Heap-based buffer overflow in hfaxd in HylaFAX+ 5.2.4 through 5.5.3, when using LDAP authentication, might allow remote attackers to cause a denial of service (child hang) or execute arbitrary code v…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-5680
|
2024-11-21 10:57 |
2014-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283628
|
- |
|
autodesk
|
sketchbook_for_enterprise_2014 sketchbook_pro sketchbook_express sketchbook
|
Heap-based buffer overflow in Autodesk SketchBook for Enterprise 2014, Pro, and Express before 6.25, and Copic Edition before 2.0.2 allows remote attackers to execute arbitrary code via RLE-compresse…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-5365
|
2024-11-21 10:57 |
2014-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283629
|
- |
|
raoul_proenca
|
gnew
|
Multiple SQL injection vulnerabilities in Gnew 2013.1 allow remote attackers to execute arbitrary SQL commands via the (1) answer_id or (2) question_id parameter to polls/vote.php, (3) story_id param…
|
CWE-89
SQL Injection
|
CVE-2013-5640
|
2024-11-21 10:57 |
2014-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283630
|
- |
|
ibm
|
cognos_express
|
IBM Cognos Express 9.0 before IFIX 2, 9.5 before IFIX 2, 10.1 before IFIX 2, and 10.2.1 before FP1 allows local users to obtain sensitive cleartext information by leveraging knowledge of a static dec…
|
CWE-310
Cryptographic Issues
|
CVE-2013-5445
|
2024-11-21 10:57 |
2014-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|