|
284031
|
- |
|
canonical debian linux oracle
|
ubuntu_linux debian_linux linux_kernel linux
|
The Crypto API in the Linux kernel before 3.18.5 allows local users to load arbitrary kernel modules via a bind system call for an AF_ALG socket with a module name in the salg_name field, a different…
|
CWE-269
Improper Privilege Management
|
CVE-2013-7421
|
2024-11-21 11:00 |
2015-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284032
|
- |
|
redhat canonical opensuse gnu
|
enterprise_linux_server_aus ubuntu_linux opensuse glibc
|
The send_dg function in resolv/res_send.c in GNU C Library (aka glibc or libc6) before 2.20 does not properly reuse file descriptors, which allows remote attackers to send DNS queries to unintended l…
|
CWE-17
Code
|
CVE-2013-7423
|
2024-11-21 11:00 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284033
|
- |
|
kde
|
kde_applications
|
kwalletd in KWallet before KDE Applications 14.12.0 uses Blowfish with ECB mode instead of CBC mode when encrypting the password store, which makes it easier for attackers to guess passwords via a co…
|
CWE-310
Cryptographic Issues
|
CVE-2013-7252
|
2024-11-21 11:00 |
2015-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284034
|
- |
|
hancom
|
hancom_office_2010_se
|
Buffer overflow in Hancom Office 2010 SE allows remote attackers to execute arbitrary via a long string in the Text attribute in a TEXTART XML element in an HML file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-7420
|
2024-11-21 11:00 |
2015-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284035
|
- |
|
joomlaskin
|
js_multi_hotel
|
Cross-site scripting (XSS) vulnerability in includes/refreshDate.php in the Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 for WordPress allows remote attackers to inje…
|
CWE-79
Cross-site Scripting
|
CVE-2013-7419
|
2024-11-21 11:00 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284036
|
- |
|
ipcop
|
ipcop
|
cgi-bin/iptablesgui.cgi in IPCop (aka IPCop Firewall) before 2.1.5 allows remote authenticated users to execute arbitrary code via shell metacharacters in the TABLE parameter. NOTE: this can be expl…
|
CWE-77
Command Injection
|
CVE-2013-7418
|
2024-11-21 11:00 |
2015-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284037
|
- |
|
ipcop
|
ipcop
|
Cross-site scripting (XSS) vulnerability in cgi-bin/ipinfo.cgi in IPCop (aka IPCop Firewall) before 2.1.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY_STRING. NOTE: t…
|
CWE-79
Cross-site Scripting
|
CVE-2013-7417
|
2024-11-21 11:00 |
2015-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284038
|
- |
|
c-icap_project
|
c-icap
|
The parse_request function in request.c in c-icap 0.2.x allows remote attackers to cause a denial of service (crash) via a URI without a " " or "?" character in an ICAP request, as demonstrated by us…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-7401
|
2024-11-21 11:00 |
2014-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284039
|
- |
|
c-icap_project
|
c-icap
|
Multiple unspecified vulnerabilities in request.c in c-icap 0.2.x allow remote attackers to cause a denial of service (crash) via a crafted ICAP request.
|
NVD-CWE-noinfo
|
CVE-2013-7402
|
2024-11-21 11:00 |
2014-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284040
|
- |
|
canto
|
canto_curses
|
canto_curses/guibase.py in Canto Curses before 0.9.0 allows remote feed servers to execute arbitrary commands via shell metacharacters in a URL in a feed.
|
CWE-77
Command Injection
|
CVE-2013-7416
|
2024-11-21 11:00 |
2014-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|