|
286621
|
- |
|
b-e-soft
|
artweaver_plus artweaver_free
|
Stack-based buffer overflow in Artweaver Plus and Free before 3.1.5 allows remote attackers to execute arbitrary code via a crafted JPG image file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-3481
|
2024-11-21 10:53 |
2014-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286622
|
- |
|
solarwinds
|
dameware_remote_support
|
Stack-based buffer overflow in the "Add from text file" feature in the DameWare Exporter tool (DWExporter.exe) in DameWare Remote Support 10.0.0.372, 9.0.1.247, and earlier allows user-assisted attac…
|
CWE-787
Out-of-bounds Write
|
CVE-2013-3249
|
2024-11-21 10:53 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286623
|
- |
|
apptha
|
video_gallery_plugin
|
SQL injection vulnerability in Apptha WordPress Video Gallery 2.0, 1.6, and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the playid parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2013-3478
|
2024-11-21 10:53 |
2014-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286624
|
- |
|
ait-pro
|
bulletproof-security
|
Multiple cross-site scripting (XSS) vulnerabilities in the security log in the BulletProof Security plugin before .49 for WordPress allow remote attackers to inject arbitrary web script or HTML via u…
|
CWE-79
Cross-site Scripting
|
CVE-2013-3487
|
2024-11-21 10:53 |
2014-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286625
|
- |
|
inmatrix
|
zoom_player
|
Heap-based buffer overflow in INMATRIX Zoom Player before 8.7 beta 11 allows remote attackers to execute arbitrary code via a large biClrUsed value in a BMP file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-3260
|
2024-11-21 10:53 |
2014-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286626
|
- |
|
inmatrix
|
zoom_player
|
Stack-based buffer overflow in INMATRIX Zoom Player before 8.7 beta 11 allows remote attackers to execute arbitrary code via a large biClrUsed value in a BMP file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-3259
|
2024-11-21 10:53 |
2014-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286627
|
- |
|
exponentcms
|
exponent_cms
|
Multiple SQL injection vulnerabilities in Exponent CMS before 2.2.0 release candidate 1 allow remote attackers to execute arbitrary SQL commands via the (1) src or (2) username parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2013-3294
|
2024-11-21 10:53 |
2014-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286628
|
- |
|
trendnet
|
tew-812dru
|
TRENDnet TEW-812DRU router allows remote authenticated users to execute arbitrary commands via shell metacharacters in the (1) wan network prefix to internet/ipv6.asp; (2) remote port to adm/manageme…
|
CWE-78
OS Command
|
CVE-2013-3365
|
2024-11-21 10:53 |
2014-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286629
|
- |
|
trendnet
|
tew-812dru_firmware tew-812dru
|
Multiple cross-site request forgery (CSRF) vulnerabilities in TRENDnet TEW-812DRU router with firmware before 1.0.9.0 allow remote attackers to hijack the authentication of administrators for request…
|
CWE-352
Origin Validation Error
|
CVE-2013-3098
|
2024-11-21 10:53 |
2014-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286630
|
- |
|
dell
|
powerconnect_3524p powerconnect_3348 powerconnect_5324
|
The login page in the GoAhead web server on Dell PowerConnect 3348 1.2.1.3, 3524p 2.0.0.48, and 5324 2.0.1.4 switches allows remote attackers to cause a denial of service (device outage) via a long u…
|
CWE-20
Improper Input Validation
|
CVE-2013-3606
|
2024-11-21 10:53 |
2014-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|