|
284011
|
7.5 |
HIGH
Network
|
sybase
|
adaptive_server_enterprise
|
The Backup Server component in SAP Sybase ASE 15.7 before SP51 allows remote attackers to bypass access restrictions and perform database dumps by leveraging failure to validate credentials, aka SAP …
|
CWE-285
Improper Authorization
|
CVE-2013-7245
|
2024-11-21 11:00 |
2018-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284012
|
6.5 |
MEDIUM
Network
|
evergreen-ils
|
evergreen
|
The open-ils.pcrud endpoint in Evergreen before 2.5.9, 2.6.x before 2.6.7, and 2.7.x before 2.7.4 allows remote attackers to obtain sensitive settings history information by leveraging lack of user p…
|
CWE-200
Information Exposure
|
CVE-2013-7435
|
2024-11-21 11:00 |
2018-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284013
|
7.5 |
HIGH
Network
|
dkd
|
direct_mail
|
The Direct Mail (direct_mail) extension before 3.1.2 for TYPO3 allows remote attackers to obtain sensitive information by leveraging improper checking of authentication codes.
|
CWE-200
Information Exposure
|
CVE-2013-7400
|
2024-11-21 11:00 |
2017-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284014
|
8.1 |
HIGH
Network
|
codem-transcode_project
|
codem-transcode
|
The codem-transcode module before 0.5.0 for Node.js, when ffprobe is enabled, allows remote attackers to execute arbitrary commands via a POST request to /probe.
|
CWE-77
Command Injection
|
CVE-2013-7377
|
2024-11-21 11:00 |
2017-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284015
|
9.8 |
CRITICAL
Network
|
mapsplugin
|
googlemaps
|
The Googlemaps plugin before 3.1 for Joomla! allows remote attackers to conduct XML injection attacks via the url parameter to plugin_googlemap2_proxy.php.
|
CWE-91
Blind XPath Injection
|
CVE-2013-7429
|
2024-11-21 11:00 |
2017-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284016
|
7.5 |
HIGH
Network
|
mapsplugin
|
googlemaps
|
The Googlemaps plugin before 3.1 for Joomla! allows remote attackers to cause a denial of service via the url parameter to plugin_googlemap2_proxy.php.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2013-7428
|
2024-11-21 11:00 |
2017-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284017
|
6.1 |
MEDIUM
Network
|
mapsplugin
|
googlemaps
|
Cross-site scripting (XSS) vulnerability in the Googlemaps plugin before 3.1 for Joomla!.
|
CWE-79
Cross-site Scripting
|
CVE-2013-7433
|
2024-11-21 11:00 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284018
|
7.5 |
HIGH
Network
|
mapsplugin
|
googlemaps
|
The Googlemaps plugin before 3.1 for Joomla! allows remote attackers to bypass an intended protection mechanism.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-7432
|
2024-11-21 11:00 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284019
|
5.3 |
MEDIUM
Network
|
mapsplugin
|
googlemaps
|
Full path disclosure in the Googlemaps plugin before 3.1 for Joomla!.
|
CWE-200
Information Exposure
|
CVE-2013-7431
|
2024-11-21 11:00 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284020
|
9.8 |
CRITICAL
Network
|
kamailio
|
kamailio
|
Insecure Temporary file vulnerability in /tmp/kamailio_fifo in kamailio 4.0.1.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2013-7426
|
2024-11-21 11:00 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|