|
288921
|
- |
|
cisco
|
connected_grid_network_management_system
|
Multiple cross-site scripting (XSS) vulnerabilities in the element-list implementation in Cisco Connected Grid Network Management System (CG-NMS) allow remote attackers to inject arbitrary web script…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1171
|
2024-11-21 10:49 |
2013-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288922
|
- |
|
cisco
|
connected_grid_network_management_system
|
Multiple SQL injection vulnerabilities in the device-management implementation in Cisco Connected Grid Network Management System (CG-NMS) allow remote attackers to execute arbitrary SQL commands via …
|
CWE-89
SQL Injection
|
CVE-2013-1163
|
2024-11-21 10:49 |
2013-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288923
|
- |
|
microsoft
|
modern_mail
|
Microsoft Windows Modern Mail allows remote attackers to spoof link targets via a crafted HTML e-mail message.
|
NVD-CWE-noinfo
|
CVE-2013-1299
|
2024-11-21 10:49 |
2013-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288924
|
- |
|
oracle mysql
|
mysql
|
Buffer overflow in yaSSL, as used in MySQL 5.1.x before 5.1.68 and 5.5.x before 5.5.30, has unspecified impact and attack vectors, a different vulnerability than CVE-2012-0553.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-1492
|
2024-11-21 10:49 |
2013-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288925
|
- |
|
symantec
|
enterprise_vault_for_file_system_archiving
|
Multiple unquoted Windows search path vulnerabilities in the (1) File Collector and (2) File PlaceHolder services in Symantec Enterprise Vault (EV) for File System Archiving before 9.0.4 and 10.x bef…
|
NVD-CWE-Other
|
CVE-2013-1609
|
2024-11-21 10:49 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288926
|
- |
|
symantec
|
netbackup_appliance
|
Directory traversal vulnerability in the Management Console on the Symantec NetBackup (NBU) appliance 2.0.x allows remote attackers to read arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2013-1608
|
2024-11-21 10:49 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288927
|
- |
|
cisco
|
ios_xr
|
The traffic engineering (TE) processing subsystem in Cisco IOS XR allows remote attackers to cause a denial of service (process restart) via crafted TE packets, aka Bug ID CSCue04000.
|
CWE-20
Improper Input Validation
|
CVE-2013-1162
|
2024-11-21 10:49 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288928
|
- |
|
cisco
|
jabber_im
|
The XML parser in the Cisco Jabber IM application for Android allows remote authenticated users to cause a denial of service (blocked connection) by leveraging an entry on a Buddy list and sending a …
|
CWE-20
Improper Input Validation
|
CVE-2013-1161
|
2024-11-21 10:49 |
2013-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288929
|
- |
|
lighttpd
|
lighttpd
|
The configuration file for the FastCGI PHP support for lighttpd before 1.4.28 on Debian GNU/Linux creates a socket file with a predictable name in /tmp, which allows local users to hijack the PHP con…
|
CWE-310
Cryptographic Issues
|
CVE-2013-1427
|
2024-11-21 10:49 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288930
|
- |
|
oracle
|
support_tools
|
asr in Oracle Auto Service Request in Oracle Support Tools before 4.3.2 allows local users to modify arbitrary files via a symlink attack on a predictable filename in /tmp.
|
CWE-59
Link Following
|
CVE-2013-1495
|
2024-11-21 10:49 |
2013-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|