|
288851
|
- |
|
microsoft
|
system_center_operations_manager
|
Cross-site scripting (XSS) vulnerability in Microsoft System Center Operations Manager 2007 SP1 and R2 allows remote attackers to inject arbitrary web script or HTML via crafted input, aka "System Ce…
|
CWE-79
Cross-site Scripting
|
CVE-2013-0009
|
2024-11-21 10:46 |
2013-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288852
|
- |
|
microsoft
|
windows_vista windows_server_2008 windows_7 windows_8 windows_server_2012 windows_rt
|
win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, Windows Server 2012, and Windows RT does not properly…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0008
|
2024-11-21 10:46 |
2013-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288853
|
- |
|
microsoft
|
xml_core_services windows_7 windows_8 windows_server_2003 windows_server_2008 windows_server_2012 windows_vista windows_xp windows_rt expression_web groove_server off…
|
Microsoft XML Core Services (aka MSXML) 4.0, 5.0, and 6.0 does not properly parse XML content, which allows remote attackers to execute arbitrary code via a crafted web page, aka "MSXML XSLT Vulnerab…
|
CWE-94
Code Injection
|
CVE-2013-0007
|
2024-11-21 10:46 |
2013-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288854
|
- |
|
microsoft
|
xml_core_services windows_7 windows_8 windows_server_2003 windows_server_2008 windows_server_2012 windows_vista windows_xp windows_rt expression_web groove_server off…
|
Microsoft XML Core Services (aka MSXML) 3.0, 5.0, and 6.0 does not properly parse XML content, which allows remote attackers to execute arbitrary code via a crafted web page, aka "MSXML Integer Trunc…
|
CWE-189
Numeric Errors
|
CVE-2013-0006
|
2024-11-21 10:46 |
2013-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288855
|
- |
|
microsoft
|
.net_framework management_odata_iis_extension
|
The WCF Replace function in the Open Data (aka OData) protocol implementation in Microsoft .NET Framework 3.5, 3.5 SP1, 3.5.1, and 4, and the Management OData IIS Extension on Windows Server 2012, al…
|
CWE-20
Improper Input Validation
|
CVE-2013-0005
|
2024-11-21 10:46 |
2013-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288856
|
- |
|
microsoft
|
.net_framework
|
Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly validate the permissions of objects in memory, which allows remote attackers to execute arbitrary…
|
CWE-20
Improper Input Validation
|
CVE-2013-0004
|
2024-11-21 10:46 |
2013-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288857
|
- |
|
microsoft
|
.net_framework
|
Buffer overflow in a System.DirectoryServices.Protocols (S.DS.P) namespace method in Microsoft .NET Framework 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4, and 4.5 allows remote attackers to execute arbitrary cod…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0003
|
2024-11-21 10:46 |
2013-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288858
|
- |
|
microsoft
|
.net_framework
|
Buffer overflow in the Windows Forms (aka WinForms) component in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4, and 4.5 allows remote attackers to execute arbitrary code …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0002
|
2024-11-21 10:46 |
2013-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288859
|
- |
|
microsoft
|
.net_framework
|
The Windows Forms (aka WinForms) component in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.0 SP2, 4, and 4.5 does not properly initialize memory arrays, which allows remote attackers to obta…
|
CWE-200
Information Exposure
|
CVE-2013-0001
|
2024-11-21 10:46 |
2013-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288860
|
- |
|
maxtom
|
atomymaxsite
|
Unrestricted file upload vulnerability in index.php in Atomymaxsite 2.5 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing …
|
NVD-CWE-Other
|
CVE-2012-6498
|
2024-11-21 10:46 |
2013-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|