|
285021
|
- |
|
triplc
|
nano-10_plc_firmware nano-10_plc
|
Triangle Research International (aka Tri) Nano-10 PLC devices with firmware r81 and earlier do not properly handle large length values in MODBUS data, which allows remote attackers to cause a denial …
|
CWE-20
Improper Input Validation
|
CVE-2013-5741
|
2024-11-21 10:58 |
2013-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285022
|
- |
|
ingo_renner
|
apache_solr
|
Cross-site scripting (XSS) vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-6289
|
2024-11-21 10:58 |
2013-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285023
|
- |
|
ingo_renner
|
apache_solr
|
Unspecified vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 has unknown impact and remote attack vectors, related to "Insecure Unserialize."
|
NVD-CWE-noinfo
|
CVE-2013-6288
|
2024-11-21 10:58 |
2013-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285024
|
9.3 |
CRITICAL
Adjacent
|
juniper
|
junos
|
Juniper Junos 10.4 before 10.4S15, 11.4 before 11.4R9, 11.4X27 before 11.4X27.44, 12.1 before 12.1R7, 12.1X44 before 12.1X44-D20, 12.1X45 before 12.1X45-D15, 12.2 before 12.2R6, 12.3 before 12.3R3, 1…
|
CWE-200
Information Exposure
|
CVE-2013-6014
|
2024-11-21 10:58 |
2013-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285025
|
- |
|
juniper
|
junos
|
Juniper Junos 12.1X44 before 12.1.X44-D20 and 12.1X45 before 12.1X45-D15, when the no-validate option is enabled, does not properly handle configuration validation errors during the config commit pha…
|
CWE-287
Improper Authentication
|
CVE-2013-6012
|
2024-11-21 10:58 |
2013-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285026
|
- |
|
fengoffice
|
feng_office
|
Cross-site scripting (XSS) vulnerability in Feng Office 2.3.2-rc and earlier allows remote attackers to inject arbitrary web script or HTML via an arbitrary ref_XXX parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2013-5744
|
2024-11-21 10:58 |
2013-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285027
|
- |
|
tylertech
|
taxweb
|
The search component in the Treasurer application in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to obtain sensitive query-structure information via an invalid search request, a differ…
|
CWE-200
Information Exposure
|
CVE-2013-6285
|
2024-11-21 10:58 |
2013-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285028
|
- |
|
tylertech
|
taxweb
|
passwordRequestPOST.jsp in Tyler Technologies TaxWeb 3.13.3.1 sends different HTTP status codes for invalid password-recovery requests depending on whether the user account exists, which allows remot…
|
CWE-200
Information Exposure
|
CVE-2013-6020
|
2024-11-21 10:58 |
2013-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285029
|
- |
|
tylertech
|
taxweb
|
Cross-site scripting (XSS) vulnerability in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to inject arbitrary web script or HTML via the accountNum parameter to an unspecified component.
|
CWE-79
Cross-site Scripting
|
CVE-2013-6019
|
2024-11-21 10:58 |
2013-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285030
|
- |
|
tylertech
|
taxweb
|
Cross-site request forgery (CSRF) vulnerability in login.jsp in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to hijack the authentication of arbitrary users for requests that change a p…
|
CWE-352
Origin Validation Error
|
CVE-2013-6018
|
2024-11-21 10:58 |
2013-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|