|
285271
|
- |
|
suse opensuse mozilla canonical oracle fedoraproject
|
linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_software_development_kit firefox seamonkey ubuntu_linux solaris fedora
|
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow user-assisted remote attackers to read clipboard data by leveraging certain middle-click paste operations.
|
CWE-200
Information Exposure
|
CVE-2013-6672
|
2024-11-21 10:59 |
2013-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285272
|
5.9 |
MEDIUM
Network
|
fedoraproject mozilla suse opensuse canonical
|
fedora firefox_esr firefox thunderbird seamonkey linux_enterprise_desktop linux_enterprise_server opensuse suse_linux_enterprise_software_development_kit ubuntu_linux
|
Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 do not recognize a user's removal of trust from an EV X.509 certificate, which makes it e…
|
CWE-310
Cryptographic Issues
|
CVE-2013-6673
|
2024-11-21 10:59 |
2013-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285273
|
9.8 |
CRITICAL
Network
|
mozilla canonical redhat opensuse suse fedoraproject
|
firefox_esr firefox thunderbird seamonkey ubuntu_linux enterprise_linux_server enterprise_linux_server_eus enterprise_linux_workstation enterprise_linux_server_aus enterpri…
|
The nsGfxScrollFrameInner::IsLTR function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary…
|
CWE-94
Code Injection
|
CVE-2013-6671
|
2024-11-21 10:59 |
2013-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285274
|
- |
|
siemens
|
comos
|
Siemens COMOS before 9.2.0.8.1, 10.0 before 10.0.3.1.40, and 10.1 before 10.1.0.0.2 allows local users to gain database privileges via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6840
|
2024-11-21 10:59 |
2013-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285275
|
- |
|
cisco
|
cloud_portal
|
Cisco Cloud Portal 9.4 allows remote attackers to read files of unspecified types via a direct request, aka Bug IDs CSCuj08426 and CSCui60889.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6708
|
2024-11-21 10:59 |
2013-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285276
|
- |
|
linux
|
linux_kernel
|
The ping_recvmsg function in net/ipv4/ping.c in the Linux kernel before 3.12.4 does not properly interact with read system calls on ping sockets, which allows local users to cause a denial of service…
|
NVD-CWE-Other
|
CVE-2013-6432
|
2024-11-21 10:59 |
2013-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285277
|
- |
|
linux
|
linux_kernel
|
The fib6_add function in net/ipv6/ip6_fib.c in the Linux kernel before 3.11.5 does not properly implement error-code encoding, which allows local users to cause a denial of service (NULL pointer dere…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6431
|
2024-11-21 10:59 |
2013-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285278
|
- |
|
hp
|
linux_imaging_and_printing_project
|
upgrade.py in the hp-upgrade service in HP Linux Imaging and Printing (HPLIP) 3.x through 3.13.11 launches a program from an http URL, which allows man-in-the-middle attackers to execute arbitrary co…
|
CWE-94
Code Injection
|
CVE-2013-6427
|
2024-11-21 10:59 |
2013-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285279
|
- |
|
quassel-irc
|
quassel_irc
|
Quassel core (server daemon) in Quassel IRC before 0.9.2 does not properly verify the user ID when accessing user backlogs, which allows remote authenticated users to read other users' backlogs via t…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6404
|
2024-11-21 10:59 |
2013-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285280
|
- |
|
drupal
|
drupal
|
Open redirect vulnerability in the Overlay module in Drupal 7.x before 7.24 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
|
CWE-20
Improper Input Validation
|
CVE-2013-6389
|
2024-11-21 10:59 |
2013-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|