|
284611
|
- |
|
instantsoft
|
instantcms
|
SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to execute arbitrary SQL commands via the orderby parameter to catalog/[id].
|
CWE-89
SQL Injection
|
CVE-2013-6839
|
2024-11-21 10:59 |
2013-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284612
|
- |
|
projectsprouts
|
sprout
|
The unpack_zip function in archive_unpacker.rb in the sprout gem 0.7.246 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a (1) filename or (2) pa…
|
CWE-94
Code Injection
|
CVE-2013-6421
|
2024-11-21 10:59 |
2013-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284613
|
- |
|
emc
|
connectrix_manager
|
The server in Brocade Network Advisor before 12.1.0, as used in EMC Connectrix Manager Converged Network Edition (CMCNE), HP B-series SAN Network Advisor, and possibly other products, allows remote a…
|
CWE-94
Code Injection
|
CVE-2013-6810
|
2024-11-21 10:59 |
2013-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284614
|
- |
|
suse opensuse mozilla canonical oracle fedoraproject
|
linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_software_development_kit firefox seamonkey ubuntu_linux solaris fedora
|
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow user-assisted remote attackers to read clipboard data by leveraging certain middle-click paste operations.
|
CWE-200
Information Exposure
|
CVE-2013-6672
|
2024-11-21 10:59 |
2013-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284615
|
5.9 |
MEDIUM
Network
|
fedoraproject mozilla suse opensuse canonical
|
fedora firefox_esr firefox thunderbird seamonkey linux_enterprise_desktop linux_enterprise_server opensuse suse_linux_enterprise_software_development_kit ubuntu_linux
|
Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 do not recognize a user's removal of trust from an EV X.509 certificate, which makes it e…
|
CWE-310
Cryptographic Issues
|
CVE-2013-6673
|
2024-11-21 10:59 |
2013-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284616
|
9.8 |
CRITICAL
Network
|
mozilla canonical redhat opensuse suse fedoraproject
|
firefox_esr firefox thunderbird seamonkey ubuntu_linux enterprise_linux_server enterprise_linux_server_eus enterprise_linux_workstation enterprise_linux_server_aus enterpri…
|
The nsGfxScrollFrameInner::IsLTR function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary…
|
CWE-94
Code Injection
|
CVE-2013-6671
|
2024-11-21 10:59 |
2013-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284617
|
- |
|
siemens
|
comos
|
Siemens COMOS before 9.2.0.8.1, 10.0 before 10.0.3.1.40, and 10.1 before 10.1.0.0.2 allows local users to gain database privileges via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6840
|
2024-11-21 10:59 |
2013-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284618
|
- |
|
cisco
|
cloud_portal
|
Cisco Cloud Portal 9.4 allows remote attackers to read files of unspecified types via a direct request, aka Bug IDs CSCuj08426 and CSCui60889.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6708
|
2024-11-21 10:59 |
2013-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284619
|
- |
|
linux
|
linux_kernel
|
The ping_recvmsg function in net/ipv4/ping.c in the Linux kernel before 3.12.4 does not properly interact with read system calls on ping sockets, which allows local users to cause a denial of service…
|
NVD-CWE-Other
|
CVE-2013-6432
|
2024-11-21 10:59 |
2013-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284620
|
- |
|
linux
|
linux_kernel
|
The fib6_add function in net/ipv6/ip6_fib.c in the Linux kernel before 3.11.5 does not properly implement error-code encoding, which allows local users to cause a denial of service (NULL pointer dere…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6431
|
2024-11-21 10:59 |
2013-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|