|
285401
|
- |
|
microsoft
|
sharepoint_foundation sharepoint_server
|
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2010 SP1 and SP2 and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted POST request, aka "POST …
|
CWE-79
Cross-site Scripting
|
CVE-2013-3180
|
2024-11-21 10:53 |
2013-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285402
|
- |
|
microsoft
|
sharepoint_services sharepoint_foundation sharepoint_server
|
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted request, aka …
|
CWE-79
Cross-site Scripting
|
CVE-2013-3179
|
2024-11-21 10:53 |
2013-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285403
|
- |
|
microsoft
|
office word word_viewer
|
Microsoft Office 2003 SP3 and 2007 SP3, Word 2003 SP3 and 2007 SP3, and Word Viewer allow remote attackers to read arbitrary files via an XML document containing an external entity declaration in con…
|
CWE-200
Information Exposure
|
CVE-2013-3160
|
2024-11-21 10:53 |
2013-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285404
|
- |
|
microsoft
|
excel
|
Microsoft Excel 2003 SP3, 2007 SP3, and 2010 SP1 and SP2; Excel Viewer; and Microsoft Office Compatibility Pack SP3 allow remote attackers to read arbitrary files via an XML document containing an ex…
|
CWE-20
Improper Input Validation
|
CVE-2013-3159
|
2024-11-21 10:53 |
2013-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285405
|
- |
|
microsoft
|
excel
|
Microsoft Excel 2003 SP3 and 2007 SP3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Microsoft Office Memory Co…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-3158
|
2024-11-21 10:53 |
2013-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285406
|
- |
|
microsoft
|
access
|
Microsoft Access 2007 SP3, 2010 SP1 and SP2, and 2013 in Microsoft Office allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Access file,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-3157
|
2024-11-21 10:53 |
2013-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285407
|
- |
|
microsoft
|
access
|
Microsoft Access 2007 SP3, 2010 SP1 and SP2, and 2013 in Microsoft Office allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Access file,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-3156
|
2024-11-21 10:53 |
2013-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285408
|
- |
|
microsoft
|
access
|
Microsoft Access 2007 SP3, 2010 SP1 and SP2, and 2013 in Microsoft Office allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Access file,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-3155
|
2024-11-21 10:53 |
2013-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285409
|
- |
|
microsoft
|
frontpage
|
Microsoft FrontPage 2003 SP3 does not properly parse DTDs, which allows remote attackers to obtain sensitive information via crafted XML data in a FrontPage document, aka "XML Disclosure Vulnerabilit…
|
CWE-200
Information Exposure
|
CVE-2013-3137
|
2024-11-21 10:53 |
2013-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285410
|
- |
|
advanceprotech
|
advanceware
|
AdvancePro Advanceware allows remote authenticated users to obtain sensitive information about arbitrary customers' orders via a modified id parameter.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-3596
|
2024-11-21 10:53 |
2013-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|