|
290011
|
9.8 |
CRITICAL
Network
|
netgear
|
wndr4700_firmware
|
An Authentication Bypass vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34 in http://<router_ip>/apply.cgi?/hdd_usr_setup.htm that when visited by any user, authenticated or not, cau…
|
CWE-287
Improper Authentication
|
CVE-2013-3072
|
2024-11-21 10:52 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290012
|
7.5 |
HIGH
Network
|
netgear
|
wndr4700_firmware
|
An Information Disclosure vulnerability exists in Netgear WNDR4700 running firmware 1.0.0.34 in the management web interface, which discloses the PSK of the wireless LAN.
|
CWE-200
Information Exposure
|
CVE-2013-3070
|
2024-11-21 10:52 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290013
|
9.8 |
CRITICAL
Network
|
netgear
|
wndr4700_firmware
|
A Symlink Traversal vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34.
|
CWE-22
Path Traversal
|
CVE-2013-3073
|
2024-11-21 10:52 |
2019-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290014
|
9.8 |
CRITICAL
Network
|
readymedia_project debian
|
readymedia debian_linux
|
MiniDLNA has heap-based buffer overflow
|
CWE-119 CWE-787
Incorrect Access of Indexable Resource ('Range Error') Out-of-bounds Write
|
CVE-2013-2739
|
2024-11-21 10:52 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290015
|
9.8 |
CRITICAL
Network
|
readymedia_project
|
readymedia
|
minidlna has SQL Injection that may allow retrieval of arbitrary files
|
CWE-89
SQL Injection
|
CVE-2013-2738
|
2024-11-21 10:52 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290016
|
7.5 |
HIGH
Network
|
miniupnp_project debian
|
miniupnpd debian_linux
|
MiniUPnPd has information disclosure use of snprintf()
|
CWE-200
Information Exposure
|
CVE-2013-2600
|
2024-11-21 10:52 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290017
|
7.5 |
HIGH
Network
|
rockwellautomation
|
rslinx_enterprise
|
Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 does not handle input correctly and results in a logi…
|
CWE-125
Out-of-bounds Read
|
CVE-2013-2805
|
2024-11-21 10:52 |
2019-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290018
|
7.5 |
HIGH
Network
|
rockwellautomation
|
rslinx_enterprise
|
Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 does not handle input correctly and results in a logi…
|
CWE-125
Out-of-bounds Read
|
CVE-2013-2807
|
2024-11-21 10:52 |
2019-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290019
|
7.5 |
HIGH
Network
|
rockwellautomation
|
rslinx_enterprise
|
Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 does not handle input correctly and results in a logi…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2013-2806
|
2024-11-21 10:52 |
2019-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290020
|
7.5 |
HIGH
Network
|
ibm
|
websphere_cast_iron_cloud_integration
|
IBM WebSphere Cast Iron 6.3 allows remote attackers to bypass intended access restrictions via unspecified vectors. IBM X-Force ID: 83868.
|
CWE-284
Improper Access Control
|
CVE-2013-2972
|
2024-11-21 10:52 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|