|
289021
|
- |
|
kde
|
kde_applications
|
kwalletd in KWallet before KDE Applications 14.12.0 uses Blowfish with ECB mode instead of CBC mode when encrypting the password store, which makes it easier for attackers to guess passwords via a co…
|
CWE-310
Cryptographic Issues
|
CVE-2013-7252
|
2024-11-21 11:00 |
2015-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289022
|
- |
|
hancom
|
hancom_office_2010_se
|
Buffer overflow in Hancom Office 2010 SE allows remote attackers to execute arbitrary via a long string in the Text attribute in a TEXTART XML element in an HML file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-7420
|
2024-11-21 11:00 |
2015-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289023
|
- |
|
joomlaskin
|
js_multi_hotel
|
Cross-site scripting (XSS) vulnerability in includes/refreshDate.php in the Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 for WordPress allows remote attackers to inje…
|
CWE-79
Cross-site Scripting
|
CVE-2013-7419
|
2024-11-21 11:00 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289024
|
- |
|
ipcop
|
ipcop
|
cgi-bin/iptablesgui.cgi in IPCop (aka IPCop Firewall) before 2.1.5 allows remote authenticated users to execute arbitrary code via shell metacharacters in the TABLE parameter. NOTE: this can be expl…
|
CWE-77
Command Injection
|
CVE-2013-7418
|
2024-11-21 11:00 |
2015-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289025
|
- |
|
ipcop
|
ipcop
|
Cross-site scripting (XSS) vulnerability in cgi-bin/ipinfo.cgi in IPCop (aka IPCop Firewall) before 2.1.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY_STRING. NOTE: t…
|
CWE-79
Cross-site Scripting
|
CVE-2013-7417
|
2024-11-21 11:00 |
2015-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289026
|
- |
|
c-icap_project
|
c-icap
|
The parse_request function in request.c in c-icap 0.2.x allows remote attackers to cause a denial of service (crash) via a URI without a " " or "?" character in an ICAP request, as demonstrated by us…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-7401
|
2024-11-21 11:00 |
2014-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289027
|
- |
|
c-icap_project
|
c-icap
|
Multiple unspecified vulnerabilities in request.c in c-icap 0.2.x allow remote attackers to cause a denial of service (crash) via a crafted ICAP request.
|
NVD-CWE-noinfo
|
CVE-2013-7402
|
2024-11-21 11:00 |
2014-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289028
|
- |
|
canto
|
canto_curses
|
canto_curses/guibase.py in Canto Curses before 0.9.0 allows remote feed servers to execute arbitrary commands via shell metacharacters in a URL in a feed.
|
CWE-77
Command Injection
|
CVE-2013-7416
|
2024-11-21 11:00 |
2014-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289029
|
- |
|
axway
|
securetransport
|
Cross-site request forgery (CSRF) vulnerability in Axway SecureTransport 5.1 SP2 and earlier allows remote attackers to hijack the authentication of unspecified users for requests that upload arbitra…
|
CWE-352
Origin Validation Error
|
CVE-2013-7057
|
2024-11-21 11:00 |
2014-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289030
|
- |
|
allplayer
|
allplayer
|
Buffer overflow in ALLPlayer 5.6.2 through 5.8.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .m3u (playlist) file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-7409
|
2024-11-21 11:00 |
2014-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|