|
287021
|
- |
|
roundcube
|
webmail
|
Multiple cross-site scripting (XSS) vulnerabilities in Roundcube webmail before 0.9.3 allow user-assisted remote attackers to inject arbitrary web script or HTML via the body of a message visited in …
|
CWE-79
Cross-site Scripting
|
CVE-2013-5645
|
2024-11-21 10:57 |
2013-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287022
|
- |
|
debian cacti opensuse
|
debian_linux cacti opensuse
|
SQL injection vulnerability in cacti/host.php in Cacti 0.8.8b and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2013-5589
|
2024-11-21 10:57 |
2013-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287023
|
- |
|
cacti opensuse
|
cacti opensuse
|
Multiple cross-site scripting (XSS) vulnerabilities in Cacti 0.8.8b and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the step parameter to install/index.php or (2) th…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5588
|
2024-11-21 10:57 |
2013-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287024
|
- |
|
freebsd
|
freebsd
|
The sctp_send_initiate_ack function in sys/netinet/sctp_output.c in the SCTP implementation in the kernel in FreeBSD 8.3 through 9.2-PRERELEASE does not properly initialize the state-cookie data stru…
|
CWE-200
Information Exposure
|
CVE-2013-5209
|
2024-11-21 10:57 |
2013-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287025
|
- |
|
staruml
|
staruml
|
Buffer overflow in the ToDot method in the WINGRAPHVIZLib.NEATO ActiveX control in WinGraphviz.dll in StarUML allows remote attackers to execute arbitrary code via a long argument.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-5578
|
2024-11-21 10:57 |
2013-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287026
|
- |
|
bestpractical
|
rt
|
Cross-site scripting (XSS) vulnerability in Request Tracker (RT) 4.x before 4.0.13, when MakeClicky is configured, allows remote attackers to inject arbitrary web script or HTML via a URL in a ticket…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5587
|
2024-11-21 10:57 |
2013-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287027
|
- |
|
axel_jung
|
js_css_optimizer
|
Cross-site scripting (XSS) vulnerability in the Javascript and CSS Optimizer extension before 1.1.14 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-5570
|
2024-11-21 10:57 |
2013-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287028
|
- |
|
heiko_sudar
|
slideshare
|
SQL injection vulnerability in the Slideshare extension 0.1.0 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2013-5569
|
2024-11-21 10:57 |
2013-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287029
|
- |
|
stanislas_rolland
|
static_info_tables
|
Cross-site scripting (XSS) vulnerability in the Static Info Tables (static_info_tables) extension before 2.3.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5323
|
2024-11-21 10:57 |
2013-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287030
|
- |
|
jan_bednarik
|
cooluri
|
SQL injection vulnerability in the CoolURI extension before 1.0.30 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2013-5322
|
2024-11-21 10:57 |
2013-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|