|
286961
|
- |
|
smackcoders
|
wp_ultimate_email_marketer_plugin
|
The WP Ultimate Email Marketer plugin 1.1.0 and possibly earlier for Wordpress does not properly restrict access to (1) list/edit.php and (2) campaign/editCampaign.php, which allows remote attackers …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-3264
|
2024-11-21 10:53 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286962
|
- |
|
smackcoders
|
wp_ultimate_email_marketer_plugin
|
Multiple cross-site scripting (XSS) vulnerabilities in the WP Ultimate Email Marketer plugin 1.1.0 and possibly earlier for Wordpress allow remote attackers to inject arbitrary web script or HTML via…
|
CWE-79
Cross-site Scripting
|
CVE-2013-3263
|
2024-11-21 10:53 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286963
|
- |
|
openbravo
|
openbravo_erp
|
The XML API in Openbravo ERP 2.5, 3.0, and earlier allows remote authenticated users to read arbitrary files via an XML document with an external entity declaration in conjunction with an entity refe…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-3617
|
2024-11-21 10:53 |
2013-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286964
|
- |
|
dell
|
emc_unisphere
|
EMC Unisphere for VMAX before 1.6.1.6, when using an unspecified level of debug logging in LDAP configurations, allows local users to discover the cleartext LDAP bind password by reading the console.
|
CWE-310
Cryptographic Issues
|
CVE-2013-3287
|
2024-11-21 10:53 |
2013-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286965
|
- |
|
emc
|
networker
|
The NetWorker Management Console (NMC) in EMC NetWorker 8.0.x before 8.0.2.3, when using Active Directory/LDAP for authentication, allows remote authenticated users to discover cleartext administrato…
|
CWE-310
Cryptographic Issues
|
CVE-2013-3285
|
2024-11-21 10:53 |
2013-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286966
|
- |
|
opentext
|
opentext\/ixos_ecm_for_sap_netweaver
|
Unspecified vulnerability in OpenText/IXOS ECM for SAP NetWeaver allows remote attackers to execute arbitrary ABAP code via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2013-3243
|
2024-11-21 10:53 |
2013-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286967
|
- |
|
emc
|
rsa_authentication_agent
|
EMC RSA Authentication Agent 7.1.x before 7.1.2 for Web for Internet Information Services has a fail-open design, which allows remote attackers to bypass intended access restrictions via vectors that…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-3280
|
2024-11-21 10:53 |
2013-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286968
|
- |
|
sap
|
erp_central_component
|
Multiple unspecified vulnerabilities in the CJDB_FILL_MEMORY_FROM_PPB function in the Project System (PS-IS) module for SAP ERP Central Component (ECC) allow remote attackers to execute arbitrary cod…
|
CWE-94
Code Injection
|
CVE-2013-3244
|
2024-11-21 10:53 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286969
|
- |
|
emc
|
atmos
|
EMC Atmos before 2.1.4 has a blank password for the PostgreSQL account, which allows remote attackers to obtain sensitive administrative information via a database-server connection.
|
CWE-255
Credentials Management
|
CVE-2013-3279
|
2024-11-21 10:53 |
2013-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286970
|
- |
|
cisco
|
adaptive_security_appliance_software
|
Cisco Adaptive Security Appliance (ASA) Software 8.4.x before 8.4(3) and 8.6.x before 8.6(1.3) does not properly manage memory upon an AnyConnect SSL VPN client disconnection, which allows remote att…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-3415
|
2024-11-21 10:53 |
2013-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|