|
284811
|
- |
|
ibm
|
marketing_platform
|
IBM Marketing Platform 9.1 before FP2 allows remote authenticated users to hijack sessions, and consequently read records, modify records, or conduct transactions, via an unspecified link injection.
|
CWE-94
Code Injection
|
CVE-2013-6309
|
2024-11-21 10:58 |
2014-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284812
|
- |
|
ibm
|
marketing_platform
|
IBM Marketing Platform 9.1 before FP2 allows remote authenticated users to conduct phishing attacks and capture login credentials via an unspecified injection.
|
NVD-CWE-Other
|
CVE-2013-6308
|
2024-11-21 10:58 |
2014-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284813
|
- |
|
hp
|
service_virtualization
|
Directory traversal vulnerability in CommunicationServlet in HP Service Virtualization 3.x before 3.50.1, when the AutoPass license server is enabled, allows remote attackers to create arbitrary file…
|
CWE-22
Path Traversal
|
CVE-2013-6221
|
2024-11-21 10:58 |
2014-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284814
|
- |
|
emc
|
rsa_bsafe_toolkits rsa_data_protection_manager
|
The default configuration of EMC RSA BSAFE Toolkits and RSA Data Protection Manager (DPM) 20130918 uses the Dual Elliptic Curve Deterministic Random Bit Generation (Dual_EC_DRBG) algorithm, which mak…
|
CWE-310
Cryptographic Issues
|
CVE-2013-6078
|
2024-11-21 10:58 |
2014-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284815
|
- |
|
livezilla
|
livezilla
|
LiveZilla before 5.1.1.0 stores the admin Base64 encoded username and password in a 1click file, which allows local users to obtain access by reading the file.
|
CWE-255
Credentials Management
|
CVE-2013-6223
|
2024-11-21 10:58 |
2014-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284816
|
- |
|
qnap
|
photo_station_firmware photo_station
|
QNAP Photo Station before firmware 4.0.3 build0912 allows remote attackers to list OS user accounts via a request to photo/p/api/list.php.
|
CWE-200
Information Exposure
|
CVE-2013-5760
|
2024-11-21 10:58 |
2014-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284817
|
- |
|
openinfosecfoundation oisf
|
suricata
|
Suricata before 1.4.6 allows remote attackers to cause a denial of service (crash) via a malformed SSL record.
|
CWE-20
Improper Input Validation
|
CVE-2013-5919
|
2024-11-21 10:58 |
2014-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284818
|
- |
|
phpcms
|
guesbook_module
|
Multiple cross-site scripting (XSS) vulnerabilities in the Guestbook module for PHPCMS allow remote attackers to inject arbitrary web script or HTML via the (1) list or (2) introduce parameter to ind…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5939
|
2024-11-21 10:58 |
2014-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284819
|
- |
|
microweber
|
microweber
|
Directory traversal vulnerability in userfiles/modules/admin/backup/delete.php in Microweber before 0.830 allows remote attackers to delete arbitrary files via a .. (dot dot) in the file parameter.
|
CWE-22
Path Traversal
|
CVE-2013-5984
|
2024-11-21 10:58 |
2014-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284820
|
- |
|
simplerisk
|
simplerisk
|
Cross-site scripting (XSS) vulnerability in management/prioritize_planning.php in SimpleRisk before 20130916-001 allows remote attackers to inject arbitrary web script or HTML via the new_project par…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5749
|
2024-11-21 10:58 |
2014-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|