259641
|
- |
|
apple
|
mac_os_x
|
Apple Mac OS X 10.9 allows local users to cause a denial of service (memory corruption or panic) by creating a hard link to a directory. NOTE: this vulnerability exists because of an incomplete fix f…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-6799
|
2013-11-20 09:17 |
2013-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259642
|
- |
|
dlink
|
dsl-2740b_firmware dsl-2740b
|
The D-Link DSL-2740B Gateway with firmware EU_1.0, when an active administrator session exists, allows remote attackers to bypass authentication and gain administrator access via a request to login.c…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-2271
|
2013-11-20 08:18 |
2013-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259643
|
- |
|
dlink
|
dsl-2740b_firmware dsl-2740b
|
Advisory from D-Link says all versions of firmware for DSL-2740B are vulnerable per http://securityadvisories.dlink.com/security/publication.aspx?name=SAP10004
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-2271
|
2013-11-20 08:18 |
2013-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259644
|
- |
|
cisco
|
service_portal
|
The "Files Available for Download" implementation in the Cisco Intelligent Automation for Cloud component in Cisco Services Portal 9.4(1) allows remote authenticated users to read arbitrary files via…
|
CWE-20
Improper Input Validation
|
CVE-2013-3406
|
2013-11-20 08:10 |
2013-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259645
|
- |
|
cisco
|
ios
|
The SSL VPN implementation in Cisco IOS 15.3(1)T2 and earlier allows remote authenticated users to cause a denial of service (interface queue wedge) via crafted DTLS packets in an SSL session, aka Bu…
|
CWE-20
Improper Input Validation
|
CVE-2013-6686
|
2013-11-20 04:27 |
2013-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259646
|
- |
|
sunil_nanda
|
blue_wrench_video_widget
|
Cross-site request forgery (CSRF) vulnerability in bluewrench-video-widget.php in the Blue Wrench Video Widget plugin before 2.0.0 for WordPress allows remote attackers to hijack the authentication o…
|
CWE-352
Origin Validation Error
|
CVE-2013-6797
|
2013-11-20 04:27 |
2013-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259647
|
- |
|
cisco
|
unified_communications_manager
|
Directory traversal vulnerability in the license-upload interface in the Enterprise License Manager (ELM) component in Cisco Unified Communications Manager 9.1(1) and earlier allows remote authentica…
|
CWE-22
Path Traversal
|
CVE-2013-6688
|
2013-11-20 04:26 |
2013-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259648
|
- |
|
cisco
|
unified_communications_manager
|
Cisco Unified Communications Manager (Unified CM) 9.1(1) and earlier allows local users to bypass file permissions, and read, modify, or create arbitrary files, via an "overload" of the command-line …
|
CWE-20
Improper Input Validation
|
CVE-2013-6689
|
2013-11-20 04:13 |
2013-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259649
|
- |
|
percipientstudios
|
imagen
|
Cross-site scripting (XSS) vulnerability in imagegen.ashx in Percipient Studios ImageGen before 2.9.0 for Umbraco CMS allows remote attackers to inject arbitrary web script or HTML via the font param…
|
CWE-79
Cross-site Scripting
|
CVE-2013-0741
|
2013-11-20 04:06 |
2013-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259650
|
- |
|
cisco
|
server_provisioner
|
The web interface in Cisco Server Provisioner 6.4.0 Patch 5-1301292331 and earlier does not require authentication for unspecified pages, which allows remote attackers to obtain sensitive information…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-3407
|
2013-11-20 03:57 |
2013-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|