|
285241
|
- |
|
no-margin-for-errors
|
prettyphoto
|
Cross-site scripting (XSS) vulnerability in the setTimeout function in js/jquery.prettyPhoto.js in prettyPhoto 3.1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via a c…
|
CWE-79
Cross-site Scripting
|
CVE-2013-6837
|
2024-11-21 10:59 |
2013-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285242
|
- |
|
gnome
|
gnumeric
|
Heap-based buffer overflow in the ms_escher_get_data function in plugins/excel/ms-escher.c in GNOME Office Gnumeric before 1.12.9 allows remote attackers to cause a denial of service (crash) via a cr…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-6836
|
2024-11-21 10:59 |
2013-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285243
|
- |
|
zabbix
|
zabbix
|
Zabbix before 1.8.19rc1, 2.0 before 2.0.10rc1, and 2.2 before 2.2.1rc1 allows remote Zabbix servers and proxies to execute arbitrary commands via a newline in a flexible user parameter.
|
CWE-94
Code Injection
|
CVE-2013-6824
|
2024-11-21 10:59 |
2013-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285244
|
- |
|
cisco
|
cisco_ons_15454_system_software ons_15454_mspp ons_15454_mstp ons_15454e_optical_transport_platform ons_15454 ons_15454_multiservice_transport_platform ons_15454_sdh_multiservice_pr…
|
The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritize health pings, which allows remote attackers to c…
|
CWE-20
Improper Input Validation
|
CVE-2013-6701
|
2024-11-21 10:59 |
2013-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285245
|
- |
|
cru-inc
|
ditto_forensic_fieldstation_firmware ditto_forensic_fieldstation
|
Cross-site request forgery (CSRF) vulnerability in CRU Ditto Forensic FieldStation with firmware before 2013Oct15a allows remote attackers to hijack the authentication of administrators for requests …
|
CWE-352
Origin Validation Error
|
CVE-2013-6883
|
2024-11-21 10:59 |
2013-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285246
|
- |
|
cru-inc
|
ditto_forensic_fieldstation_firmware ditto_forensic_fieldstation
|
Multiple cross-site scripting (XSS) vulnerabilities in CRU Ditto Forensic FieldStation with firmware 2013Oct15a and earlier allow (1) remote attackers to inject arbitrary web script or HTML via the u…
|
CWE-79
Cross-site Scripting
|
CVE-2013-6882
|
2024-11-21 10:59 |
2013-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285247
|
- |
|
ibm
|
sametime
|
Cross-site scripting (XSS) vulnerability in the Web Application in the Classic Meeting Server in IBM Sametime 7.5.1.2 through 8.5.2.1 allows remote attackers to inject arbitrary web script or HTML vi…
|
CWE-79
Cross-site Scripting
|
CVE-2013-6733
|
2024-11-21 10:59 |
2013-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285248
|
- |
|
ibm
|
websphere_service_registry_and_repository
|
Cross-site scripting (XSS) vulnerability in IBM WebSphere Service Registry and Repository (WSRR) 7.5.x before 7.5.0.4 and 8.x through 8.0.0.2 allows remote authenticated users to inject arbitrary web…
|
CWE-79
Cross-site Scripting
|
CVE-2013-6721
|
2024-11-21 10:59 |
2013-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285249
|
- |
|
ibm
|
security_access_manager_for_web content_manager_ondemand_for_multiplatforms global_security_kit
|
IBM Global Security Kit (aka GSKit), as used in Content Manager OnDemand 8.5 and 9.0 and other products, allows remote attackers to cause a denial of service via a crafted handshake during resumption…
|
CWE-310
Cryptographic Issues
|
CVE-2013-6329
|
2024-11-21 10:59 |
2013-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285250
|
- |
|
ibm
|
sterling_connect_enterprise_http_option
|
Cross-site scripting (XSS) vulnerability in the HTTP Option in IBM Sterling Connect:Enterprise 1.3 before 1.3.0.2 iFix 1 and 1.4 before 1.4.0.0 iFix 1 allows remote attackers to inject arbitrary web …
|
CWE-79
Cross-site Scripting
|
CVE-2013-6327
|
2024-11-21 10:59 |
2013-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|