259801
|
- |
|
apple
|
safari
|
WebKit in Apple Safari before 6.1 disables the Private Browsing feature upon a launch of the Web Inspector, which makes it easier for context-dependent attackers to obtain browsing information by lev…
|
CWE-200
Information Exposure
|
CVE-2013-5130
|
2013-10-25 08:24 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259802
|
- |
|
cisco
|
secure_access_control_system
|
Cisco Secure Access Control System (ACS) does not properly implement an incoming-packet firewall rule, which allows remote attackers to cause a denial of service (process crash) via a flood of crafte…
|
CWE-20
Improper Input Validation
|
CVE-2013-5536
|
2013-10-25 08:23 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259803
|
- |
|
apple
|
keynote
|
Apple Keynote before 6.0 does not properly handle the interaction between Keynote presentation mode and the Screen Lock implementation, which allows physically proximate attackers to obtain access by…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5148
|
2013-10-25 03:24 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259804
|
- |
|
apple
|
os_x_server
|
The RADIUS service in Server App in Apple OS X Server before 3.0 selects a fallback X.509 certificate in unspecified circumstances, which might allow man-in-the-middle attackers to hijack RADIUS sess…
|
NVD-CWE-Other
|
CVE-2013-5143
|
2013-10-25 01:59 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259805
|
- |
|
mozilla
|
bugzilla
|
Cross-site request forgery (CSRF) vulnerability in attachment.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.3.x and 4.4.x before 4.4.1 allows remote attackers…
|
CWE-352
Origin Validation Error
|
CVE-2013-1734
|
2013-10-25 01:35 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259806
|
- |
|
apple
|
mac_os_x
|
Smart Card Services in Apple Mac OS X before 10.9 does not properly implement certificate-revocation checks, which allows remote attackers to cause a denial of service (Smart Card usage outage) by in…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5190
|
2013-10-25 01:19 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259807
|
- |
|
dell
|
quest_one_password_manager
|
The Dell Quest One Password Manager, possibly 5.0, allows remote attackers to bypass CAPTCHA protections and obtain sensitive information (user's full name) by sending a login request with a valid do…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6246
|
2013-10-25 01:18 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259808
|
- |
|
apple
|
mac_os_x
|
The USB hub controller in Apple Mac OS X before 10.9 allows local users to cause a denial of service (system crash) via a request with a crafted (1) port or (2) port number.
|
CWE-20
Improper Input Validation
|
CVE-2013-5192
|
2013-10-25 01:10 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259809
|
- |
|
apple
|
mac_os_x
|
The syslog implementation in Apple Mac OS X before 10.9 allows local users to obtain sensitive information by leveraging access to the Guest account and reading console-log messages from previous Gue…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5191
|
2013-10-25 01:05 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259810
|
- |
|
apple
|
mac_os_x
|
The Screen Lock implementation in Apple Mac OS X before 10.9, when hibernation and autologin are enabled, does not require a password for a transition out of hibernation, which allows physically prox…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5188
|
2013-10-25 00:51 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|