|
286531
|
- |
|
adgjm
|
angel_browser
|
The Angel Browser application 1.47b and earlier for Android 1.6 through 2.1, 1.62b and earlier for Android 2.2 through 2.3.4, 1.68b and earlier for Android 3.0 through 4.0.3, and 1.76b and earlier fo…
|
CWE-200
Information Exposure
|
CVE-2013-3642
|
2024-11-21 10:54 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286532
|
- |
|
siemens
|
wincc simatic_pcs7
|
The Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, exhibits different behavior for NetBIOS user names depending on whether the use…
|
CWE-200
Information Exposure
|
CVE-2013-3959
|
2024-11-21 10:54 |
2013-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286533
|
- |
|
siemens
|
wincc simatic_pcs7
|
The login implementation in the Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, has a hardcoded account, which makes it easier for …
|
CWE-255
Credentials Management
|
CVE-2013-3958
|
2024-11-21 10:54 |
2013-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286534
|
- |
|
siemens
|
wincc simatic_pcs7
|
SQL injection vulnerability in the login screen in the Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, allows remote attackers to e…
|
CWE-89
SQL Injection
|
CVE-2013-3957
|
2024-11-21 10:54 |
2013-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286535
|
- |
|
orchardproject
|
orchard
|
Cross-site scripting (XSS) vulnerability in the Orchard.Comments module in Orchard before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-3645
|
2024-11-21 10:54 |
2013-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286536
|
- |
|
juniper
|
junos_pulse_secure_access_service junos_pulse_access_control_service
|
Juniper Junos Pulse Secure Access Service (aka SSL VPN) with IVE OS 7.0r2 through 7.0r8 and 7.1r1 through 7.1r5 and Junos Pulse Access Control Service (aka UAC) with UAC OS 4.1r1 through 4.1r5 includ…
|
CWE-310
Cryptographic Issues
|
CVE-2013-3970
|
2024-11-21 10:54 |
2013-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286537
|
- |
|
pizzahut
|
pizza_hut_japan_official_order_application
|
The Pizza Hut Japan Official Order application before 1.1.1.a for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sen…
|
CWE-310
Cryptographic Issues
|
CVE-2013-3641
|
2024-11-21 10:54 |
2013-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286538
|
- |
|
filemaker
|
filemaker_pro filemaker_pro_advanced
|
Cross-site scripting (XSS) vulnerability in the Instant Web Publish function in FileMaker Pro before 12 and Pro Advanced before 12 allows remote attackers to inject arbitrary web script or HTML via u…
|
CWE-79
Cross-site Scripting
|
CVE-2013-3640
|
2024-11-21 10:54 |
2013-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286539
|
- |
|
ffmpeg
|
ffmpeg
|
The process_frame_obj function in sanm.c in libavcodec in FFmpeg before 1.2.1 does not validate width and height values, which allows remote attackers to cause a denial of service (integer overflow, …
|
CWE-20
Improper Input Validation
|
CVE-2013-3675
|
2024-11-21 10:54 |
2013-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286540
|
- |
|
ffmpeg
|
ffmpeg
|
The cdg_decode_frame function in cdgraphics.c in libavcodec in FFmpeg before 1.2.1 does not validate the presence of non-header data in a buffer, which allows remote attackers to cause a denial of se…
|
CWE-20
Improper Input Validation
|
CVE-2013-3674
|
2024-11-21 10:54 |
2013-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|