|
286971
|
- |
|
wptrafficanalyzer
|
trafficanalyzer
|
Cross-site scripting (XSS) vulnerability in js/ta_loaded.js.php in the Traffic Analyzer plugin, possibly 3.3.2 and earlier, for WordPress allows remote attackers to inject arbitrary web script or HTM…
|
CWE-79
Cross-site Scripting
|
CVE-2013-3526
|
2024-11-21 10:53 |
2013-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286972
|
- |
|
bestpractical
|
request_tracker
|
SQL injection vulnerability in Approvals/ in Request Tracker (RT) 4.0.10 and earlier allows remote attackers to execute arbitrary SQL commands via the ShowPending parameter. NOTE: the vendor dispute…
|
CWE-89
SQL Injection
|
CVE-2013-3525
|
2024-11-21 10:53 |
2013-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286973
|
- |
|
simpilotgroup
|
pop_up_news
|
SQL injection vulnerability in popupnewsitem/ in the Pop Up News module 2.0 and possibly earlier for phpVMS allows remote attackers to execute arbitrary SQL commands via the itemid parameter. NOTE: …
|
CWE-89
SQL Injection
|
CVE-2013-3524
|
2024-11-21 10:53 |
2013-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286974
|
- |
|
gajennings
|
this
|
SQL injection vulnerability in This HTML Is Simple (THIS) before 1.2.4 allows remote to execute arbitrary SQL commands via vectors related to op=page&id= in the URL.
|
CWE-89
SQL Injection
|
CVE-2013-3523
|
2024-11-21 10:53 |
2013-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286975
|
- |
|
vbulletin
|
vbulletin
|
SQL injection vulnerability in index.php/ajax/api/reputation/vote in vBulletin 5.0.0 Beta 11, 5.0.0 Beta 28, and earlier allows remote authenticated users to execute arbitrary SQL commands via the no…
|
CWE-89
SQL Injection
|
CVE-2013-3522
|
2024-11-21 10:53 |
2013-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286976
|
- |
|
wppa.opajaap
|
wp-photo-album-plus
|
Cross-site scripting (XSS) vulnerability in wp-admin/admin.php in the WP Photo Album Plus plugin before 5.0.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via the comm…
|
CWE-79
Cross-site Scripting
|
CVE-2013-3254
|
2024-11-21 10:53 |
2013-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286977
|
- |
|
adobe
|
coldfusion
|
Unspecified vulnerability in Adobe ColdFusion 9.0, 9.0.1, 9.0.2, and 10 allows remote attackers to read arbitrary files via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2013-3336
|
2024-11-21 10:53 |
2013-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286978
|
- |
|
juniper
|
smartpass
|
Cross-site scripting (XSS) vulnerability in Juniper SmartPass WLAN Security Management before 7.7 MR3 and 8.0 before MR2 allows remote attackers to inject arbitrary web script or HTML via unspecified…
|
CWE-79
Cross-site Scripting
|
CVE-2013-3498
|
2024-11-21 10:53 |
2013-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286979
|
- |
|
juniper
|
junos_space junos_space_virtual_appliance junos_space_ja1500_appliance
|
Juniper Junos Space before 12.3P2.8, as used on the JA1500 appliance and in other contexts, includes a cleartext password in a configuration tab, which makes it easier for physically proximate attack…
|
CWE-255
Credentials Management
|
CVE-2013-3497
|
2024-11-21 10:53 |
2013-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286980
|
- |
|
gwos
|
groundwork_monitor
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the Noma component in GroundWork Monitor Enterprise 6.7.0 allow remote attackers to hijack the authentication of unspecified victims for …
|
CWE-352
Origin Validation Error
|
CVE-2013-3513
|
2024-11-21 10:53 |
2013-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|