|
289251
|
- |
|
emc
|
avamar
|
EMC Avamar Client before 6.1.101-89 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man…
|
CWE-20
Improper Input Validation
|
CVE-2013-0945
|
2024-11-21 10:48 |
2013-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289252
|
- |
|
emc
|
avamar
|
The web-based file-restore interface in EMC Avamar Server before 6.1.0 allows remote authenticated users to read arbitrary files via a crafted URL.
|
CWE-200
Information Exposure
|
CVE-2013-0944
|
2024-11-21 10:48 |
2013-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289253
|
- |
|
emc
|
networker
|
The nsrpush process in the client in EMC NetWorker before 7.6.5.3 and 8.x before 8.0.1.4 sets weak permissions for unspecified files, which allows local users to gain privileges via unknown vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0940
|
2024-11-21 10:48 |
2013-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289254
|
- |
|
novell
|
iprint
|
Stack-based buffer overflow in Novell iPrint Client before 5.90 allows remote attackers to execute arbitrary code via unspecified vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-1091
|
2024-11-21 10:48 |
2013-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289255
|
- |
|
galilmc
|
rio-47100_plc
|
The Galil RIO-47100 Pocket PLC allows remote attackers to cause a denial of service via a session that includes "repeated requests."
|
CWE-20
Improper Input Validation
|
CVE-2013-0699
|
2024-11-21 10:48 |
2013-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289256
|
- |
|
bluemarblegeo
|
global_mapper
|
Multiple untrusted search path vulnerabilities in Global Mapper 14.1.0 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll or (2) ibfs32.dll file in the current working directory, …
|
NVD-CWE-Other
|
CVE-2013-0727
|
2024-11-21 10:48 |
2013-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289257
|
- |
|
hexagon
|
erdas_apollo_ecwp
|
Multiple stack-based buffer overflows in NCSAddOn.dll in the ERDAS APOLLO ECWP plugin before 13.00.0001 for Internet Explorer, Firefox, and Chrome allow remote attackers to execute arbitrary code via…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0728
|
2024-11-21 10:48 |
2013-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289258
|
- |
|
novell
|
imanager
|
Cross-site request forgery (CSRF) vulnerability in Novell iManager 2.7 before SP6 Patch 1 allows remote attackers to hijack the authentication of arbitrary users by leveraging improper request valida…
|
CWE-352
Origin Validation Error
|
CVE-2013-1088
|
2024-11-21 10:48 |
2013-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289259
|
- |
|
siemens
|
simatic_s7-1200_firmware simatic_s7-1200_cpu_1211c_firmware simatic_s7-1200_cpu_1212c_firmware simatic_s7-1200_cpu_1212fc_firmware simatic_s7-1200_cpu_1214_fc_firmware simatic_s7-1200_…
|
Siemens SIMATIC S7-1200 PLCs 2.x and 3.x allow remote attackers to cause a denial of service (defect-mode transition and control outage) via crafted packets to TCP port 102 (aka the ISO-TSAP port).
|
NVD-CWE-noinfo
|
CVE-2013-0700
|
2024-11-21 10:48 |
2013-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289260
|
- |
|
novell
|
groupwise
|
Cross-site scripting (XSS) vulnerability in WebAccess in Novell GroupWise before 8.0.3 HP3, and 2012 before SP2, allows remote attackers to inject arbitrary web script or HTML via vectors involving a…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1086
|
2024-11-21 10:48 |
2013-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|