|
286291
|
- |
|
adaptivecomputing
|
torque_resource_manager
|
pbs_mom in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 2.5.x, 4.x, and earlier does not properly restrict access by unprivileged ports, which allows remote authenti…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4319
|
2024-11-21 10:55 |
2013-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286292
|
- |
|
condor_project redhat
|
condor enterprise_mrg
|
The policy definition evaluator in Condor 7.5.4, 8.0.0, and earlier does not properly handle attributes in a (1) PREEMPT, (2) SUSPEND, (3) CONTINUE, (4) WANT_VACATE, or (5) KILL policy that evaluate …
|
CWE-20
Improper Input Validation
|
CVE-2013-4255
|
2024-11-21 10:55 |
2013-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286293
|
- |
|
richard_cook
|
rgpg
|
The self.run_gpg function in lib/rgpg/gpg_helper.rb in the rgpg gem before 0.2.3 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified vectors.
|
CWE-94
Code Injection
|
CVE-2013-4203
|
2024-11-21 10:55 |
2013-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286294
|
- |
|
xymon
|
xymon
|
Directory traversal vulnerability in the trend-data daemon (xymond_rrd) in Xymon 4.x before 4.3.12 allows remote attackers to delete arbitrary files via a .. (dot dot) in the host name in a "drophost…
|
CWE-22
Path Traversal
|
CVE-2013-4173
|
2024-11-21 10:55 |
2013-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286295
|
- |
|
cmsmadesimple
|
cms_made_simple
|
Cross-site scripting (XSS) vulnerability in CMS Made Simple (CMSMS) before 1.11.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-4167
|
2024-11-21 10:55 |
2013-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286296
|
- |
|
mediawiki
|
mediawiki
|
Cross-site request forgery (CSRF) vulnerability in api/ApiQueryCheckUser.php in the CheckUser extension for MediaWiki, possibly Checkuser before 2.3, allows remote attackers to hijack the authenticat…
|
CWE-352
Origin Validation Error
|
CVE-2013-4306
|
2024-11-21 10:55 |
2013-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286297
|
- |
|
mediawiki
|
mediawiki
|
Cross-site scripting (XSS) vulnerability in contrib/example.php in the SyntaxHighlight GeSHi extension for MediaWiki, possibly as downloaded before September 2013, allows remote attackers to inject a…
|
CWE-79
Cross-site Scripting
|
CVE-2013-4305
|
2024-11-21 10:55 |
2013-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286298
|
- |
|
x
|
x.org_x11
|
Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in the xorg-server module before 1.14.4 in X.Org X11 allows remote authenticated users to cause a denial of service (daemon …
|
CWE-399
Resource Management Errors
|
CVE-2013-4396
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286299
|
- |
|
linux
|
linux_kernel
|
net/ipv6/ip6_output.c in the Linux kernel through 3.11.4 does not properly determine the need for UDP Fragmentation Offload (UFO) processing of small packets after the UFO queueing of a large packet,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-4387
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286300
|
- |
|
linux fedoraproject redhat
|
linux_kernel fedora enterprise_linux enterprise_mrg
|
Off-by-one error in the get_prng_bytes function in crypto/ansi_cprng.c in the Linux kernel through 3.11.4 makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms…
|
CWE-189
Numeric Errors
|
CVE-2013-4345
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|