|
285631
|
- |
|
juniper
|
junos_space junos_space_virtual_appliance junos_space_ja1500_appliance
|
Juniper Junos Space before 13.1R1.6, as used on the JA1500 appliance and in other contexts, does not properly restrict access to the list of user accounts and their MD5 password hashes, which makes i…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5097
|
2024-11-21 10:57 |
2013-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285632
|
- |
|
juniper
|
junos_space junos_space_virtual_appliance junos_space_ja1500_appliance
|
Juniper Junos Space before 13.1R1.6, as used on the JA1500 appliance and in other contexts, does not properly implement role-based access control, which allows remote authenticated users to modify th…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5096
|
2024-11-21 10:57 |
2013-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285633
|
- |
|
juniper
|
junos_space junos_space_virtual_appliance junos_space_ja1500_appliance
|
Cross-site scripting (XSS) vulnerability in the web-based interface in Juniper Junos Space before 13.1R1.6, as used on the JA1500 appliance and in other contexts, allows remote attackers to inject ar…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5095
|
2024-11-21 10:57 |
2013-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285634
|
- |
|
alienvault
|
open_source_security_information_management
|
Multiple cross-site scripting (XSS) vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) before 4.3.0 allow remote attackers to inject arbitrary web script or HTML via th…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5300
|
2024-11-21 10:57 |
2013-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285635
|
- |
|
phpfox
|
phpfox
|
SQL injection vulnerability in PHPFox before 3.6.0 (build6) allows remote attackers to execute arbitrary SQL commands via the search[sort_by] parameter to user/browse/view_/.
|
CWE-89
SQL Injection
|
CVE-2013-5121
|
2024-11-21 10:57 |
2013-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285636
|
- |
|
phpfox
|
phpfox
|
SQL injection vulnerability in PHPFox before 3.6.0 (build4) allows remote attackers to execute arbitrary SQL commands via the search[gender] parameter to user/browse/view_/.
|
CWE-89
SQL Injection
|
CVE-2013-5120
|
2024-11-21 10:57 |
2013-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285637
|
- |
|
franz_holzinger
|
static_methods
|
Cross-site scripting (XSS) vulnerability in the Static Methods since 2007 (div2007) extension before 0.10.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified ve…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5100
|
2024-11-21 10:57 |
2013-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285638
|
- |
|
anchor
|
anchor_cms
|
Cross-site scripting (XSS) vulnerability in article.php in Anchor CMS 0.9.1, when comments are enabled, allows remote attackers to inject arbitrary web script or HTML via the Name field. NOTE: some …
|
CWE-79
Cross-site Scripting
|
CVE-2013-5099
|
2024-11-21 10:57 |
2013-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285639
|
- |
|
mikejolley
|
download_monitor
|
Cross-site scripting (XSS) vulnerability in admin/admin.php in the Download Monitor plugin before 3.3.6.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the sort par…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5098
|
2024-11-21 10:57 |
2013-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285640
|
5.4 |
MEDIUM
Network
|
otrs
|
otrs_itsm otrs
|
Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) ITSM 3.0.x before 3.0.9, 3.1.x before 3.1.10, and 3.2.x before 3.2.7 allows remote authenticated users to inject arbitrar…
|
CWE-79
Cross-site Scripting
|
CVE-2013-4718
|
2024-11-21 10:56 |
2021-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|