|
287821
|
- |
|
hp
|
service_virtualization
|
Directory traversal vulnerability in CommunicationServlet in HP Service Virtualization 3.x before 3.50.1, when the AutoPass license server is enabled, allows remote attackers to create arbitrary file…
|
CWE-22
Path Traversal
|
CVE-2013-6221
|
2024-11-21 10:58 |
2014-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287822
|
- |
|
emc
|
rsa_bsafe_toolkits rsa_data_protection_manager
|
The default configuration of EMC RSA BSAFE Toolkits and RSA Data Protection Manager (DPM) 20130918 uses the Dual Elliptic Curve Deterministic Random Bit Generation (Dual_EC_DRBG) algorithm, which mak…
|
CWE-310
Cryptographic Issues
|
CVE-2013-6078
|
2024-11-21 10:58 |
2014-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287823
|
- |
|
livezilla
|
livezilla
|
LiveZilla before 5.1.1.0 stores the admin Base64 encoded username and password in a 1click file, which allows local users to obtain access by reading the file.
|
CWE-255
Credentials Management
|
CVE-2013-6223
|
2024-11-21 10:58 |
2014-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287824
|
- |
|
qnap
|
photo_station_firmware photo_station
|
QNAP Photo Station before firmware 4.0.3 build0912 allows remote attackers to list OS user accounts via a request to photo/p/api/list.php.
|
CWE-200
Information Exposure
|
CVE-2013-5760
|
2024-11-21 10:58 |
2014-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287825
|
- |
|
openinfosecfoundation oisf
|
suricata
|
Suricata before 1.4.6 allows remote attackers to cause a denial of service (crash) via a malformed SSL record.
|
CWE-20
Improper Input Validation
|
CVE-2013-5919
|
2024-11-21 10:58 |
2014-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287826
|
- |
|
phpcms
|
guesbook_module
|
Multiple cross-site scripting (XSS) vulnerabilities in the Guestbook module for PHPCMS allow remote attackers to inject arbitrary web script or HTML via the (1) list or (2) introduce parameter to ind…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5939
|
2024-11-21 10:58 |
2014-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287827
|
- |
|
microweber
|
microweber
|
Directory traversal vulnerability in userfiles/modules/admin/backup/delete.php in Microweber before 0.830 allows remote attackers to delete arbitrary files via a .. (dot dot) in the file parameter.
|
CWE-22
Path Traversal
|
CVE-2013-5984
|
2024-11-21 10:58 |
2014-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287828
|
- |
|
simplerisk
|
simplerisk
|
Cross-site scripting (XSS) vulnerability in management/prioritize_planning.php in SimpleRisk before 20130916-001 allows remote attackers to inject arbitrary web script or HTML via the new_project par…
|
CWE-79
Cross-site Scripting
|
CVE-2013-5749
|
2024-11-21 10:58 |
2014-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287829
|
- |
|
simplerisk
|
simplerisk
|
Cross-site request forgery (CSRF) vulnerability in management/prioritize_planning.php in SimpleRisk before 20130916-001 allows remote attackers to hijack the authentication of users for requests that…
|
CWE-352
Origin Validation Error
|
CVE-2013-5748
|
2024-11-21 10:58 |
2014-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287830
|
- |
|
hp
|
network_node_manager_i
|
Cross-site scripting (XSS) vulnerability in HP Network Node Manager i (NNMi) 9.0, 9.10, and 9.20 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-6220
|
2024-11-21 10:58 |
2014-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|