|
286031
|
5.5 |
MEDIUM
Local
|
redhat
|
virtual_desktop_server_manager storage enterprise_virtualization
|
Insecure temporary file vulnerability in RedHat vsdm 4.9.6.
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2013-4280
|
2024-11-21 10:55 |
2019-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286032
|
5.5 |
MEDIUM
Local
|
redhat
|
update_infrastructure
|
RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates
|
CWE-200
Information Exposure
|
CVE-2013-4518
|
2024-11-21 10:55 |
2019-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286033
|
5.5 |
MEDIUM
Local
|
redhat
|
cloudforms
|
CloudForms stores user passwords in recoverable format
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2013-4423
|
2024-11-21 10:55 |
2019-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286034
|
7.5 |
HIGH
Network
|
berlios debian
|
slim debian_linux
|
slim has NULL pointer dereference when using crypt() method from glibc 2.17
|
CWE-476
NULL Pointer Dereference
|
CVE-2013-4412
|
2024-11-21 10:55 |
2019-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286035
|
6.1 |
MEDIUM
Network
|
smokeping debian fedoraproject
|
smokeping debian_linux fedora
|
Cross-site scripting (XSS) vulnerability in SmokePing 2.6.9 in the start and end time fields.
|
CWE-79
Cross-site Scripting
|
CVE-2013-4168
|
2024-11-21 10:55 |
2019-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286036
|
7.8 |
HIGH
Local
|
ovirt
|
ovirt-engine
|
ovirt-engine 3.2 running on Linux kernel 3.1 and newer creates certain files world-writeable due to an upstream kernel change which impacted how python's os.chmod() works when passed a mode of '-1'.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2013-4367
|
2024-11-21 10:55 |
2019-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286037
|
9.8 |
CRITICAL
Network
|
gitolite
|
gitolite
|
gitolite commit fa06a34 through 3.5.3 might allow attackers to have unspecified impact via vectors involving world-writable permissions when creating (1) ~/.gitolite.rc, (2) ~/.gitolite, or (3) ~/rep…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4451
|
2024-11-21 10:55 |
2018-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286038
|
3.3 |
LOW
Local
|
redhat
|
automatic_bug_reporting_tool
|
Automatic Bug Reporting Tool (ABRT) before 2.1.6 allows local users to obtain sensitive information about arbitrary files via vectors related to sha1sums.
|
CWE-200
Information Exposure
|
CVE-2013-4209
|
2024-11-21 10:55 |
2018-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286039
|
4.3 |
MEDIUM
Network
|
katello
|
katello
|
Katello allows remote authenticated users to call the "system remove_deletion" CLI command via vectors related to "remove system" permissions.
|
CWE-275
Permission Issues
|
CVE-2013-4201
|
2024-11-21 10:55 |
2018-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286040
|
4.3 |
MEDIUM
Network
|
apache
|
cloudstack
|
In Apache CloudStack 4.1.0 and 4.1.1, when calling the CloudStack API call listProjectAccounts as a regular, non-administrative user, the user is able to see information for accounts other than their…
|
CWE-200
Information Exposure
|
CVE-2013-4317
|
2024-11-21 10:55 |
2018-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|