|
284641
|
- |
|
rubyonrails
|
rails
|
Cross-site scripting (XSS) vulnerability in the simple_format helper in actionpack/lib/action_view/helpers/text_helper.rb in Ruby on Rails 4.x before 4.0.2 allows remote attackers to inject arbitrary…
|
CWE-79
Cross-site Scripting
|
CVE-2013-6416
|
2024-11-21 10:59 |
2013-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284642
|
- |
|
rubyonrails
|
ruby_on_rails rails
|
Cross-site scripting (XSS) vulnerability in the number_to_currency helper in actionpack/lib/action_view/helpers/number_helper.rb in Ruby on Rails before 3.2.16 and 4.x before 4.0.2 allows remote atta…
|
CWE-79
Cross-site Scripting
|
CVE-2013-6415
|
2024-11-21 10:59 |
2013-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284643
|
- |
|
rubyonrails
|
rails ruby_on_rails
|
actionpack/lib/action_view/lookup_context.rb in Action View in Ruby on Rails 3.x before 3.2.16 and 4.x before 4.0.2 allows remote attackers to cause a denial of service (memory consumption) via a hea…
|
CWE-20
Improper Input Validation
|
CVE-2013-6414
|
2024-11-21 10:59 |
2013-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284644
|
- |
|
jamroom
|
search_module
|
Cross-site scripting (XSS) vulnerability in the Search module before 1.1.1 for Jamroom allows remote attackers to inject arbitrary web script or HTML via the search_string parameter to search/results…
|
CWE-79
Cross-site Scripting
|
CVE-2013-6804
|
2024-11-21 10:59 |
2013-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284645
|
- |
|
chamilo
|
chamilo_lms
|
SQL injection vulnerability in the check_user_password function in main/auth/profile.php in Chamilo LMS 1.9.6 and earlier, when using the non-encrypted passwords mode set at installation, allows remo…
|
CWE-89
SQL Injection
|
CVE-2013-6787
|
2024-11-21 10:59 |
2013-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284646
|
- |
|
ganglia
|
ganglia-web
|
Cross-site scripting (XSS) vulnerability in header.php in Ganglia Web 3.5.8 and 3.5.10 allows remote attackers to inject arbitrary web script or HTML via the host_regex parameter to the default URI, …
|
CWE-79
Cross-site Scripting
|
CVE-2013-6395
|
2024-11-21 10:59 |
2013-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284647
|
- |
|
dokeos
|
dokeos
|
SQL injection vulnerability in Dokeos 2.2 RC2 and earlier allows remote attackers to execute arbitrary SQL commands via the language parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2013-6341
|
2024-11-21 10:59 |
2013-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284648
|
- |
|
cybozu
|
garoon
|
Cross-site scripting (XSS) vulnerability in the Yahoo! User Interface Library in Cybozu Garoon before 3.7.2, when Internet Explorer 9 or 10 or Chrome is used, allows remote attackers to inject arbitr…
|
CWE-79
Cross-site Scripting
|
CVE-2013-6916
|
2024-11-21 10:59 |
2013-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284649
|
- |
|
cybozu
|
garoon
|
Cross-site scripting (XSS) vulnerability in the system-administration component in Cybozu Garoon before 3.7.2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified …
|
CWE-79
Cross-site Scripting
|
CVE-2013-6915
|
2024-11-21 10:59 |
2013-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284650
|
- |
|
cybozu
|
garoon
|
Cross-site scripting (XSS) vulnerability in a calendar component in Cybozu Garoon before 3.7.2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-6914
|
2024-11-21 10:59 |
2013-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|