|
285921
|
7.5 |
HIGH
Network
|
netgear
|
wndr4700_firmware
|
NetGear WNDR4700 Media Server devices with firmware 1.0.0.34 allow remote attackers to cause a denial of service (device crash).
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2013-3074
|
2024-11-21 10:52 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285922
|
9.8 |
CRITICAL
Network
|
netgear
|
wndr4700_firmware
|
NETGEAR Centria WNDR4700 devices with firmware 1.0.0.34 allow authentication bypass.
|
CWE-287
Improper Authentication
|
CVE-2013-3071
|
2024-11-21 10:52 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285923
|
6.1 |
MEDIUM
Network
|
united-security-providers
|
secure_entry_server
|
Secure Entry Server before 4.7.0 contains a URI Redirection vulnerability which could allow remote attackers to conduct phishing attacks due to HSP_AbsoluteRedirects being disabled by default.
|
CWE-601
Open Redirect
|
CVE-2013-2764
|
2024-11-21 10:52 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285924
|
9.8 |
CRITICAL
Network
|
belkin
|
wemo_switch_firmware
|
Belkin Wemo Switch before WeMo_US_2.00.2176.PVT could allow remote attackers to upload arbitrary files onto the system.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2013-2748
|
2024-11-21 10:52 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285925
|
6.1 |
MEDIUM
Network
|
podpress_project
|
podpress
|
Cross-site Scripting (XSS) in WordPress podPress Plugin 8.8.10.13 could allow remote attackers to inject arbitrary web script or html via the 'playerID' parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2013-2714
|
2024-11-21 10:52 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285926
|
9.8 |
CRITICAL
Network
|
huawei
|
e587_firmware
|
Command-injection vulnerability in Huawei E587 3G Mobile Hotspot 11.203.27 allows remote attackers to execute arbitrary shell commands with root privileges due to an error in the Web UI.
|
CWE-78
OS Command
|
CVE-2013-2612
|
2024-11-21 10:52 |
2020-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285927
|
7.8 |
HIGH
Local
|
gonitro
|
nitropdf
|
Nitro PDF 8.5.0.26: A specially crafted DLL file can facilitate Arbitrary Code Execution
|
CWE-426
Untrusted Search Path
|
CVE-2013-2773
|
2024-11-21 10:52 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285928
|
9.8 |
CRITICAL
Network
|
belkin
|
n900_firmware
|
Belkin N900 router (F9K1104v1) contains an Authentication Bypass using "Javascript debugging".
|
CWE-287
Improper Authentication
|
CVE-2013-3088
|
2024-11-21 10:52 |
2019-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285929
|
9.8 |
CRITICAL
Network
|
belkin
|
f5d8236-4_firmware
|
An authentication bypass exists in the web management interface in Belkin F5D8236-4 v2.
|
CWE-287
Improper Authentication
|
CVE-2013-3085
|
2024-11-21 10:52 |
2019-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285930
|
9.8 |
CRITICAL
Network
|
minidlna_project debian
|
minidlna debian_linux
|
An SQL Injection vulnerability exists in MiniDLNA prior to 1.1.0
|
CWE-89
SQL Injection
|
CVE-2013-2745
|
2024-11-21 10:52 |
2019-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|