|
288371
|
- |
|
moodle
|
moodle
|
rss/file.php in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2.4.x before 2.4.5, and 2.5.x before 2.5.1 does not properly implement the use of RSS tokens for impersonation, which a…
|
CWE-287
Improper Authentication
|
CVE-2013-2245
|
2024-11-21 10:51 |
2013-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288372
|
- |
|
moodle
|
moodle
|
Multiple cross-site scripting (XSS) vulnerabilities in lib/conditionlib.php in Moodle 2.4.x before 2.4.5 and 2.5.x before 2.5.1 allow remote attackers to inject arbitrary web script or HTML via the c…
|
CWE-79
Cross-site Scripting
|
CVE-2013-2244
|
2024-11-21 10:51 |
2013-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288373
|
- |
|
moodle
|
moodle
|
mod/lesson/pagetypes/matching.php in Moodle through 2.2.11, 2.3.x before 2.3.8, 2.4.x before 2.4.5, and 2.5.x before 2.5.1 allows remote authenticated users to obtain sensitive answer information by …
|
CWE-200
Information Exposure
|
CVE-2013-2243
|
2024-11-21 10:51 |
2013-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288374
|
- |
|
moodle
|
moodle
|
mod/chat/gui_sockets/index.php in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2.4.x before 2.4.5, and 2.5.x before 2.5.1 does not consider the mod/chat:chat capability before auth…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-2242
|
2024-11-21 10:51 |
2013-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288375
|
- |
|
hp
|
loadrunner
|
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1671.
|
NVD-CWE-noinfo
|
CVE-2013-2370
|
2024-11-21 10:51 |
2013-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288376
|
- |
|
hp
|
loadrunner
|
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1670.
|
NVD-CWE-noinfo
|
CVE-2013-2369
|
2024-11-21 10:51 |
2013-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288377
|
- |
|
hp
|
loadrunner
|
Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to cause a denial of service via unknown vectors, aka ZDI-CAN-1669.
|
NVD-CWE-noinfo
|
CVE-2013-2368
|
2024-11-21 10:51 |
2013-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288378
|
- |
|
apache
|
http_server
|
mod_session_dbd.c in the mod_session_dbd module in the Apache HTTP Server before 2.4.5 proceeds with save operations for a session without considering the dirty flag and the requirement for a new ses…
|
NVD-CWE-noinfo
|
CVE-2013-2249
|
2024-11-21 10:51 |
2013-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288379
|
- |
|
redhat
|
jboss_operations_network richfaces jboss_enterprise_web_platform jboss_enterprise_portal_platform jboss_enterprise_soa_platform jboss_web_framework_kit jboss_enterprise_application_…
|
ResourceBuilderImpl.java in the RichFaces 3.x through 5.x implementation in Red Hat JBoss Web Framework Kit before 2.3.0, Red Hat JBoss Web Platform through 5.2.0, Red Hat JBoss Enterprise Applicatio…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-2165
|
2024-11-21 10:51 |
2013-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288380
|
- |
|
hp
|
database_and_middleware_automation
|
HP Database and Middleware Automation (DMA) 10.x before 10.10, when SSL is used, allows remote attackers to obtain sensitive information via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2013-2365
|
2024-11-21 10:51 |
2013-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|