|
288241
|
- |
|
owncloud
|
owncloud
|
The installation routine in ownCloud Server before 4.0.14, 4.5.x before 4.5.9, and 5.0.x before 5.0.4 uses the time function to seed the generation of the PostgreSQL database user password, which mak…
|
CWE-310
Cryptographic Issues
|
CVE-2013-1941
|
2024-11-21 10:50 |
2014-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288242
|
- |
|
rom_walton
|
boinc
|
Stack-based buffer overflow in BOINC 6.10.58 and 6.12.34 allows remote attackers to have unspecified impact via multiple file_signature elements.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-2019
|
2024-11-21 10:50 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288243
|
- |
|
openstack fedoraproject
|
keystone fedora
|
OpenStack Identity (Keystone) before 2013.1 allows remote attackers to cause a denial of service (memory consumption and crash) via multiple long requests.
|
CWE-20
Improper Input Validation
|
CVE-2013-2014
|
2024-11-21 10:50 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288244
|
- |
|
mediawiki
|
mediawiki
|
maintenance/mwdoc-filter.php in MediaWiki before 1.20.3 allows remote attackers to read arbitrary files via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2013-1818
|
2024-11-21 10:50 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288245
|
- |
|
mantisbt
|
mantisbt
|
Mantis Bug Tracker (aka MantisBT) 1.2.12 before 1.2.15 allows remote attackers to cause a denial of service (resource consumption) via a filter using a criteria, text search, and the "any condition" …
|
CWE-20
Improper Input Validation
|
CVE-2013-1883
|
2024-11-21 10:50 |
2014-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288246
|
- |
|
opalvoip ekiga suse
|
portable_tool_library ekiga suse_linux_enterprise_software_development_kit suse_linux_enterprise_desktop
|
The Portable Tool Library (aka PTLib) before 2.10.10, as used in Ekiga before 4.0.1, does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of ser…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-1864
|
2024-11-21 10:50 |
2014-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288247
|
- |
|
coscms
|
coscms
|
The uploadFile function in upload/index.php in CosCMS before 1.822 allows remote administrators to execute arbitrary commands via shell metacharacters in the name of an uploaded file.
|
CWE-78
OS Command
|
CVE-2013-1668
|
2024-11-21 10:50 |
2014-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288248
|
- |
|
mantisbt
|
mantisbt
|
Multiple cross-site scripting (XSS) vulnerabilities in core/summary_api.php in MantisBT 1.2.12 allow remote authenticated users with manager or administrator permissions to inject arbitrary web scrip…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1810
|
2024-11-21 10:50 |
2014-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288249
|
- |
|
cloudbees
|
jenkins
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Jenkins before 1.514, LTS before 1.509.1, and Enterprise 1.466.x before 1.466.14.1 and 1.480.x before 1.480.4.1 allow remote attackers to…
|
CWE-352
Origin Validation Error
|
CVE-2013-2034
|
2024-11-21 10:50 |
2014-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288250
|
- |
|
smart-flv_plugin_project
|
smart-flv
|
Multiple cross-site scripting (XSS) vulnerabilities in jwplayer.swf in the smart-flv plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) link or (2) playerr…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1765
|
2024-11-21 10:50 |
2014-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|