|
284531
|
- |
|
redhat
|
jboss_seam_2_framework
|
Multiple XML External Entity (XXE) vulnerabilities in the (1) ExecutionHandler, (2) PollHandler, and (3) SubscriptionHandler classes in JBoss Seam Remoting in JBoss Seam 2 framework 2.3.1 and earlier…
|
CWE-200
Information Exposure
|
CVE-2013-6447
|
2024-11-21 10:59 |
2014-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284532
|
- |
|
augeas
|
augeas
|
The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate the permission values when the umask contains a "7," which causes world-writable permissions to be…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6412
|
2024-11-21 10:59 |
2014-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284533
|
- |
|
ibm
|
filenet_p8_business_process_manager filenet_case_foundation filenet_content_manager
|
Cross-site scripting (XSS) vulnerability in FileNet P8 Platform Documentation Installable Info Center 4.5.1 through 5.2.0 in IBM FileNet Business Process Manager 4.5.1 through 5.1.0, FileNet Content …
|
CWE-79
Cross-site Scripting
|
CVE-2013-6746
|
2024-11-21 10:59 |
2014-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284534
|
- |
|
asus
|
tm-ac1900_firmware rt-n56u_firmware rt-ac66u_firmware
|
Multiple buffer overflows in web.c in httpd on the ASUS RT-N56U and RT-AC66U routers with firmware 3.0.0.4.374_979 allow remote attackers to execute arbitrary code via the (1) apps_name or (2) apps_f…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-6343
|
2024-11-21 10:59 |
2014-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284535
|
- |
|
seagate
|
blackarmor_nas_220_firmware blackarmor_nas_220
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the Seagate BlackArmor NAS 220 devices with firmware sg2000-2000.1331 allow remote attackers to hijack the authentication of administrato…
|
CWE-352
Origin Validation Error
|
CVE-2013-6922
|
2024-11-21 10:59 |
2014-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284536
|
- |
|
o-dyn
|
collabtive
|
SQL injection vulnerability in managetimetracker.php in Collabtive before 1.2 allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a projectpdf action.
|
CWE-89
SQL Injection
|
CVE-2013-6872
|
2024-11-21 10:59 |
2014-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284537
|
- |
|
pixman canonical debian redhat opensuse
|
pixman ubuntu_linux debian_linux enterprise_linux_server enterprise_linux_workstation enterprise_linux_server_aus enterprise_linux_server_tus enterprise_linux_desktop enterpri…
|
Integer underflow in the pixman_trapezoid_valid macro in pixman.h in Pixman before 0.32.0, as used in X.Org server and cairo, allows context-dependent attackers to cause a denial of service (crash) v…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2013-6425
|
2024-11-21 10:59 |
2014-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284538
|
- |
|
pixman debian opensuse canonical
|
pixman debian_linux opensuse ubuntu_linux
|
Integer underflow in the xTrapezoidValid macro in render/picture.h in X.Org allows context-dependent attackers to cause a denial of service (crash) via a negative bottom value.
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2013-6424
|
2024-11-21 10:59 |
2014-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284539
|
- |
|
ibm
|
websphere_application_server
|
Cross-site scripting (XSS) vulnerability in the Administrative Console in IBM WebSphere Application Server 7.x before 7.0.0.31, 8.0.x before 8.0.0.8, and 8.5.x before 8.5.5.2 allows remote authentica…
|
CWE-79
Cross-site Scripting
|
CVE-2013-6725
|
2024-11-21 10:59 |
2014-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284540
|
- |
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server 7.x before 7.0.0.31, when simpleFileServlet static file caching is enabled, allows remote authenticated users to obtain sensitive information via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2013-6330
|
2024-11-21 10:59 |
2014-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|