|
287661
|
- |
|
ibm
|
sterling_connect
|
The file-copying functionality in IBM Sterling Connect:Direct 3.8.00, 4.0.00, and 4.1.0 for UNIX on AIX 6.1 through 7.1 uses incorrect privileges, which allows local users to bypass filesystem read p…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-2989
|
2024-11-21 10:52 |
2013-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287662
|
- |
|
ibm
|
infosphere_optim_data_growth_for_oracle_e-business_suite
|
The Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 does not provide an encrypted session for transmitting login credentials, which allows rem…
|
CWE-255
Credentials Management
|
CVE-2013-2959
|
2024-11-21 10:52 |
2013-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287663
|
- |
|
ibm
|
infosphere_optim_data_growth_for_oracle_e-business_suite
|
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote authenticated users to inject arbitrary web scr…
|
CWE-79
Cross-site Scripting
|
CVE-2013-2957
|
2024-11-21 10:52 |
2013-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287664
|
- |
|
ibm
|
infosphere_optim_data_growth_for_oracle_e-business_suite
|
SQL injection vulnerability in the Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote attackers to execute arbitrary SQL commands v…
|
CWE-89
SQL Injection
|
CVE-2013-2956
|
2024-11-21 10:52 |
2013-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287665
|
- |
|
ibm
|
infosphere_optim_data_growth_for_oracle_e-business_suite
|
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote authenticated users to inject arbitrary web scr…
|
CWE-79
Cross-site Scripting
|
CVE-2013-2955
|
2024-11-21 10:52 |
2013-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287666
|
- |
|
ibm
|
infosphere_optim_data_growth_for_oracle_e-business_suite
|
The login page in the Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 does not limit the number of incorrect authentication attempts, which ma…
|
CWE-287
Improper Authentication
|
CVE-2013-2954
|
2024-11-21 10:52 |
2013-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287667
|
- |
|
ibm
|
infosphere_optim_data_growth_for_oracle_e-business_suite
|
IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 relies on the MD5 algorithm for signatures in X.509 certificates, which makes it easier for man-in-the-mi…
|
CWE-310
Cryptographic Issues
|
CVE-2013-2953
|
2024-11-21 10:52 |
2013-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287668
|
- |
|
3s-software
|
codesys_gateway-server
|
Use-after-free vulnerability in the server application in 3S CODESYS Gateway 2.3.9.27 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via unspec…
|
CWE-399
Resource Management Errors
|
CVE-2013-2781
|
2024-11-21 10:52 |
2013-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287669
|
- |
|
google
|
chrome
|
Multiple cross-site scripting (XSS) vulnerabilities in Google Chrome before 27.0.1453.93 allow user-assisted remote attackers to inject arbitrary web script or HTML via vectors involving a (1) drag-a…
|
CWE-79
Cross-site Scripting
|
CVE-2013-2849
|
2024-11-21 10:52 |
2013-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287670
|
- |
|
google
|
chrome
|
The XSS Auditor in Google Chrome before 27.0.1453.93 might allow remote attackers to obtain sensitive information via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2013-2848
|
2024-11-21 10:52 |
2013-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|