|
285011
|
- |
|
ibm
|
qradar_security_information_and_event_manager
|
The WinCollect agent in IBM Security QRadar SIEM before 7.1.1.569824 allows remote attackers to bypass intended access restrictions by injecting a (1) DLL or (2) configuration file.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5463
|
2024-11-21 10:57 |
2013-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285012
|
- |
|
ibm
|
qradar_security_information_and_event_manager
|
Cross-site scripting (XSS) vulnerability in the Right Click Plugin context menus in IBM Security QRadar SIEM 7.1 and 7.2 before 7.2 MR1 Patch 1 allows remote authenticated users to inject arbitrary w…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5448
|
2024-11-21 10:57 |
2013-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285013
|
- |
|
ibm
|
java
|
Unspecified vulnerability in IBM Java SDK 7.0.0 before SR6 allows remote attackers to execute arbitrary code via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2013-5458
|
2024-11-21 10:57 |
2013-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285014
|
- |
|
ibm
|
java
|
Unspecified vulnerability in IBM Java SDK 7.0.0 before SR6, 6.0.1 before SR7, and 6.0.0 before SR15 allows remote attackers to execute arbitrary code via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2013-5457
|
2024-11-21 10:57 |
2013-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285015
|
- |
|
ibm
|
java
|
The com.ibm.rmi.io.SunSerializableFactory class in IBM Java SDK 7.0.0 before SR6 allows remote attackers to bypass a sandbox protection mechanism and execute arbitrary code via vectors related to des…
|
NVD-CWE-noinfo
|
CVE-2013-5456
|
2024-11-21 10:57 |
2013-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285016
|
- |
|
ibm
|
java
|
Unspecified vulnerability in IBM Java SDK 7.0.0 before SR6, 6.0.1 before SR7, 6.0.0 before SR15, and 5.0.0 before SR16 FP4 allows remote attackers to access restricted classes via unspecified vectors…
|
NVD-CWE-noinfo
|
CVE-2013-5375
|
2024-11-21 10:57 |
2013-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285017
|
- |
|
mozilla
|
netscape_portable_runtime seamonkey firefox firefox_esr
|
Integer overflow in the PL_ArenaAllocate function in Mozilla Netscape Portable Runtime (NSPR) before 4.10.2, as used in Firefox before 25.0.1, Firefox ESR 17.x before 17.0.11 and 24.x before 24.1.1, …
|
CWE-189
Numeric Errors
|
CVE-2013-5607
|
2024-11-21 10:57 |
2013-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285018
|
- |
|
foscam
|
wireless_ip_camera
|
Cross-site scripting (XSS) vulnerability in the web interface "WiFi scan" option in FOSCAM Wireless IP Cameras allows remote attackers to inject arbitrary web script or HTML via the SSID.
|
CWE-79
Cross-site Scripting
|
CVE-2013-5215
|
2024-11-21 10:57 |
2013-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285019
|
- |
|
mozilla
|
network_security_services
|
The CERT_VerifyCert function in lib/certhigh/certvfy.c in Mozilla Network Security Services (NSS) 3.15 before 3.15.3 provides an unexpected return value for an incompatible key-usage certificate when…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5606
|
2024-11-21 10:57 |
2013-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285020
|
- |
|
mozilla
|
network_security_services
|
Mozilla Network Security Services (NSS) 3.14 before 3.14.5 and 3.15 before 3.15.3 allows remote attackers to cause a denial of service or possibly have unspecified other impact via invalid handshake …
|
CWE-20
Improper Input Validation
|
CVE-2013-5605
|
2024-11-21 10:57 |
2013-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|