|
284291
|
- |
|
xen
|
xen
|
Xen 4.2.x and 4.3.x, when using Intel VT-d and a PCI device has been assigned, does not clear the flag that suppresses IOMMU TLB flushes when unspecified errors occur, which causes the TLB entries to…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6400
|
2024-11-21 10:59 |
2013-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284292
|
- |
|
munin-monitoring
|
munin
|
Munin::Master::Node in Munin before 2.0.18 allows remote attackers to cause a denial of service (abort data collection for node) via a plugin that uses "multigraph" as a multigraph service name.
|
CWE-20
Improper Input Validation
|
CVE-2013-6359
|
2024-11-21 10:59 |
2013-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284293
|
- |
|
percona opensuse
|
xtrabackup opensuse
|
Percona XtraBackup before 2.1.6 uses a constant string for the initialization vector (IV), which makes it easier for local users to defeat cryptographic protection mechanisms and conduct plaintext at…
|
CWE-310
Cryptographic Issues
|
CVE-2013-6394
|
2024-11-21 10:59 |
2013-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284294
|
- |
|
instantsoft
|
instantcms
|
SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to execute arbitrary SQL commands via the orderby parameter to catalog/[id].
|
CWE-89
SQL Injection
|
CVE-2013-6839
|
2024-11-21 10:59 |
2013-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284295
|
- |
|
projectsprouts
|
sprout
|
The unpack_zip function in archive_unpacker.rb in the sprout gem 0.7.246 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a (1) filename or (2) pa…
|
CWE-94
Code Injection
|
CVE-2013-6421
|
2024-11-21 10:59 |
2013-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284296
|
- |
|
emc
|
connectrix_manager
|
The server in Brocade Network Advisor before 12.1.0, as used in EMC Connectrix Manager Converged Network Edition (CMCNE), HP B-series SAN Network Advisor, and possibly other products, allows remote a…
|
CWE-94
Code Injection
|
CVE-2013-6810
|
2024-11-21 10:59 |
2013-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284297
|
- |
|
suse opensuse mozilla canonical oracle fedoraproject
|
linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_software_development_kit firefox seamonkey ubuntu_linux solaris fedora
|
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow user-assisted remote attackers to read clipboard data by leveraging certain middle-click paste operations.
|
CWE-200
Information Exposure
|
CVE-2013-6672
|
2024-11-21 10:59 |
2013-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284298
|
5.9 |
MEDIUM
Network
|
fedoraproject mozilla suse opensuse canonical
|
fedora firefox_esr firefox thunderbird seamonkey linux_enterprise_desktop linux_enterprise_server opensuse suse_linux_enterprise_software_development_kit ubuntu_linux
|
Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 do not recognize a user's removal of trust from an EV X.509 certificate, which makes it e…
|
CWE-310
Cryptographic Issues
|
CVE-2013-6673
|
2024-11-21 10:59 |
2013-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284299
|
9.8 |
CRITICAL
Network
|
mozilla canonical redhat opensuse suse fedoraproject
|
firefox_esr firefox thunderbird seamonkey ubuntu_linux enterprise_linux_server enterprise_linux_server_eus enterprise_linux_workstation enterprise_linux_server_aus enterpri…
|
The nsGfxScrollFrameInner::IsLTR function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary…
|
CWE-94
Code Injection
|
CVE-2013-6671
|
2024-11-21 10:59 |
2013-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284300
|
- |
|
siemens
|
comos
|
Siemens COMOS before 9.2.0.8.1, 10.0 before 10.0.3.1.40, and 10.1 before 10.1.0.0.2 allows local users to gain database privileges via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6840
|
2024-11-21 10:59 |
2013-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|