|
284541
|
- |
|
redhat
|
jboss_operations_network
|
Red Hat JBoss Operations Network 3.1.2 uses world-readable permissions for the (1) server and (2) agent configuration files, which allows local users to obtain authentication credentials and other un…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4452
|
2024-11-21 10:55 |
2013-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284542
|
- |
|
ffmpeg
|
ffmpeg
|
libavcodec/h264.c in FFmpeg before 0.11.4 allows remote attackers to cause a denial of service (crash) via vectors related to alternating bit depths in H.264 data.
|
NVD-CWE-noinfo
|
CVE-2013-4358
|
2024-11-21 10:55 |
2013-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284543
|
- |
|
fedoraproject duckcorp
|
fedora bip
|
Bip before 0.8.9, when running as a daemon, writes SSL handshake errors to an unexpected file descriptor that was previously associated with stderr before stderr has been closed, which allows remote …
|
CWE-310
Cryptographic Issues
|
CVE-2013-4550
|
2024-11-21 10:55 |
2013-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284544
|
- |
|
redhat
|
jboss_enterprise_portal_platform
|
Multiple cross-site scripting (XSS) vulnerabilities in the GateIn Portal component in Red Hat JBoss Portal 6.1.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-4424
|
2024-11-21 10:55 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284545
|
- |
|
digia qt
|
qt
|
QXmlSimpleReader in Qt before 5.2 allows context-dependent attackers to cause a denial of service (memory consumption) via an XML Entity Expansion (XEE) attack.
|
CWE-20
Improper Input Validation
|
CVE-2013-4549
|
2024-11-21 10:55 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284546
|
- |
|
redhat
|
enterprise_mrg
|
SQL injection vulnerability in the web interface for cumin in Red Hat Enterprise MRG Grid 2.4 allows remote attackers to execute arbitrary SQL commands via vectors related to the "filtering table ope…
|
CWE-89
SQL Injection
|
CVE-2013-4461
|
2024-11-21 10:55 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284547
|
- |
|
redhat
|
enterprise_mrg
|
Cross-site scripting (XSS) vulnerability in the web interface for cumin in Red Hat Enterprise MRG Grid 2.4 allows remote attackers to inject arbitrary web script or HTML via the "Max allowance" field…
|
CWE-79
Cross-site Scripting
|
CVE-2013-4414
|
2024-11-21 10:55 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284548
|
- |
|
redhat
|
enterprise_mrg
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface for cumin in Red Hat Enterprise MRG Grid 2.4 allow remote attackers to hijack the authentication of cumin users for uns…
|
CWE-352
Origin Validation Error
|
CVE-2013-4405
|
2024-11-21 10:55 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284549
|
- |
|
redhat
|
enterprise_mrg
|
cumin in Red Hat Enterprise MRG Grid 2.4 does not properly enforce user roles, which allows remote authenticated users to bypass intended role restrictions and obtain sensitive information or perform…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4404
|
2024-11-21 10:55 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284550
|
- |
|
gnupg
|
gnupg
|
GnuPG 1.x before 1.4.16 generates RSA keys using sequences of introductions with certain patterns that introduce a side channel, which allows physically proximate attackers to extract RSA keys via a …
|
CWE-255
Credentials Management
|
CVE-2013-4576
|
2024-11-21 10:55 |
2013-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|