|
285441
|
- |
|
microsoft
|
windows_rt windows_xp windows_7 windows_8 windows_server_2008 windows_server_2003 windows_vista windows_server_2012
|
The EPATHOBJ::bFlatten function in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows Se…
|
CWE-22
Path Traversal
|
CVE-2013-3661
|
2024-11-21 10:54 |
2013-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285442
|
- |
|
siemens
|
scalance_x200irt_firmware scalance_x200-4p_irt scalance_x201-3p_irt scalance_x202-2irt scalance_x202-2p_irt scalance_x204irt scalance_xf204irt
|
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (Versions < V5.0.0 for CVE-2013-3633 and versions < V4.5.0 for CVE-2013-3634), SCALANCE X-200IRT switch…
|
CWE-20
Improper Input Validation
|
CVE-2013-3634
|
2024-11-21 10:54 |
2013-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285443
|
- |
|
siemens
|
scalance_x200irt_firmware scalance_x200-4p_irt scalance_x201-3p_irt scalance_x202-2irt scalance_x202-2p_irt scalance_x204irt scalance_xf204irt
|
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (Versions < V5.0.0 for CVE-2013-3633 and versions < V4.5.0 for CVE-2013-3634), SCALANCE X-200IRT switch…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-3633
|
2024-11-21 10:54 |
2013-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285444
|
5.9 |
MEDIUM
Network
|
f5
|
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_edge_gateway big-ip…
|
The HTTPS protocol, as used in unspecified web applications, can encrypt compressed data without properly obfuscating the length of the unencrypted data, which makes it easier for man-in-the-middle a…
|
CWE-200
Information Exposure
|
CVE-2013-3587
|
2024-11-21 10:53 |
2020-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285445
|
6.5 |
MEDIUM
Network
|
otrs
|
otrs otrs_itsm
|
Kernel/Modules/AgentTicketPhone.pm in Open Ticket Request System (OTRS) 3.0.x before 3.0.20, 3.1.x before 3.1.16, and 3.2.x before 3.2.7, and OTRS ITSM 3.0.x before 3.0.8, 3.1.x before 3.1.9, and 3.2…
|
CWE-200
Information Exposure
|
CVE-2013-3551
|
2024-11-21 10:53 |
2020-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285446
|
9.8 |
CRITICAL
Network
|
ibm
|
maximo_asset_management_essentials maximo_for_transportation maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager maximo_asset_management smartcloud_control_…
|
A Privilege Escalation Vulnerability exists in IBM Maximo Asset Management 7.5, 7.1, and 6.2, when WebSeal with Basic Authentication is used, due to a failure to invalidate the authentication session…
|
CWE-269
Improper Privilege Management
|
CVE-2013-3323
|
2024-11-21 10:53 |
2020-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285447
|
7.8 |
HIGH
Local
|
umplayer_project
|
umplayer
|
A Code Execution Vulnerability exists in UMPlayer 0.98 in wintab32.dll due to insufficient path restrictions when loading external libraries. which could let a malicious user execute arbitrary code.
|
CWE-426
Untrusted Search Path
|
CVE-2013-3494
|
2024-11-21 10:53 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285448
|
8.8 |
HIGH
Network
|
vtiger
|
vtiger_crm
|
vTiger CRM 5.3 and 5.4: 'files' Upload Folder Arbitrary PHP Code Execution Vulnerability
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2013-3591
|
2024-11-21 10:53 |
2020-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285449
|
8.8 |
HIGH
Network
|
cisco
|
linksys_wrt110_firmware
|
Cross-site request forgery (CSRF) vulnerability in Cisco Linksys WRT110 allows remote attackers to hijack the authentication of users for requests that have unspecified impact via unknown vectors.
|
CWE-352
Origin Validation Error
|
CVE-2013-3568
|
2024-11-21 10:53 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285450
|
5.3 |
MEDIUM
Network
|
videolan
|
vlc_media_player
|
The web interface in VideoLAN VLC media player before 2.0.7 has no access control which allows remote attackers to view directory listings via the 'dir' command or issue other commands without authen…
|
CWE-200
Information Exposure
|
CVE-2013-3564
|
2024-11-21 10:53 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|