|
288581
|
- |
|
microsoft
|
sharepoint_server sharepoint_foundation
|
Buffer overflow in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote attackers to cause a denial of service (W3WP process crash and site outage) via a crafted URL,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0085
|
2024-11-21 10:46 |
2013-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288582
|
- |
|
microsoft
|
sharepoint_server sharepoint_foundation
|
Directory traversal vulnerability in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote attackers to bypass intended read restrictions for content, and hijack user …
|
CWE-22
Path Traversal
|
CVE-2013-0084
|
2024-11-21 10:46 |
2013-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288583
|
- |
|
microsoft
|
sharepoint_server sharepoint_foundation
|
Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Server 2010 SP1 allows remote attackers to inject arbitrary web script or HTML via crafted content, leading to administrative command …
|
CWE-79
Cross-site Scripting
|
CVE-2013-0083
|
2024-11-21 10:46 |
2013-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288584
|
- |
|
microsoft
|
sharepoint_server sharepoint_foundation
|
Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allow remote attackers to bypass intended read restrictions for content, and hijack user accounts, via a crafted URL, aka "Call…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0080
|
2024-11-21 10:46 |
2013-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288585
|
- |
|
microsoft
|
visio_viewer office_filter_pack visio
|
Microsoft Visio Viewer 2010 SP1 allows remote attackers to execute arbitrary code via a crafted Visio file that triggers incorrect memory allocation, aka "Visio Viewer Tree Object Type Confusion Vuln…
|
NVD-CWE-noinfo
|
CVE-2013-0079
|
2024-11-21 10:46 |
2013-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288586
|
- |
|
redhat
|
enterprise_virtualization_manager
|
The MoveDisk command in Red Hat Enterprise Virtualization Manager (RHEV-M) 3.1 and earlier does not properly check permissions on storage domains, which allows remote authenticated storage admins to …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0168
|
2024-11-21 10:46 |
2013-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288587
|
- |
|
xen
|
xen
|
The do_hvm_op function in xen/arch/x86/hvm/hvm.c in Xen 4.2.x on the x86_32 platform does not prevent HVM_PARAM_NESTEDHVM (aka nested virtualization) operations, which allows guest OS users to cause …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0151
|
2024-11-21 10:46 |
2013-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288588
|
- |
|
ryan_davis
|
ruby_parser
|
The diff_pp function in lib/gauntlet_rubyparser.rb in the ruby_parser gem 3.1.1 and earlier for Ruby allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a pr…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0162
|
2024-11-21 10:46 |
2013-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288589
|
- |
|
redhat
|
openshift openshift_origin
|
The lockwrap function in port-proxy/bin/openshift-port-proxy-cfg in Red Hat OpenShift Origin before 1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0164
|
2024-11-21 10:46 |
2013-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288590
|
- |
|
cloudbees jenkins
|
jenkins
|
Unspecified vulnerability in Jenkins before 1.498, Jenkins LTS before 1.480.2, and Jenkins Enterprise 1.447.x before 1.447.6.1 and 1.466.x before 1.466.12.1, when a slave is attached and anonymous re…
|
NVD-CWE-noinfo
|
CVE-2013-0158
|
2024-11-21 10:46 |
2013-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|