259681
|
- |
|
wikiwig_project
|
wikiwig
|
Multiple cross-site scripting (XSS) vulnerabilities in spell-check-savedicts.php in the SpellChecker module in Xinha, as used in WikiWig 5.01 and possibly other products, allow remote attackers to in…
|
CWE-79
Cross-site Scripting
|
CVE-2011-5267
|
2013-11-8 04:43 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259682
|
- |
|
saltstack
|
salt
|
Salt (aka SaltStack) 0.15.0 through 0.17.0 allows remote authenticated users who are using external authentication or client ACL to execute restricted routines by embedding the routine in another rou…
|
CWE-287
Improper Authentication
|
CVE-2013-4435
|
2013-11-8 04:42 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259683
|
- |
|
saltstack
|
salt
|
The default configuration for salt-ssh in Salt (aka SaltStack) 0.17.0 does not validate the SSH host key of requests, which allows remote attackers to have unspecified impact via a man-in-the-middle …
|
CWE-20
Improper Input Validation
|
CVE-2013-4436
|
2013-11-8 04:40 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259684
|
- |
|
saltstack
|
salt
|
Unspecified vulnerability in salt-ssh in Salt (aka SaltStack) 0.17.0 has unspecified impact and vectors related to "insecure Usage of /tmp."
|
NVD-CWE-noinfo
|
CVE-2013-4437
|
2013-11-8 04:36 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259685
|
- |
|
saltstack
|
salt
|
Salt (aka SaltStack) before 0.17.1 allows remote attackers to execute arbitrary YAML code via unspecified vectors. NOTE: the vendor states that this might not be a vulnerability because the YAML to …
|
CWE-94
Code Injection
|
CVE-2013-4438
|
2013-11-8 04:30 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259686
|
- |
|
adobe
|
coldfusion
|
Unspecified vulnerability in Adobe ColdFusion 9.0, 9.0.1, 9.0.2, and 10 allows remote attackers to read arbitrary files via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2013-3336
|
2013-11-7 13:39 |
2013-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259687
|
- |
|
adobe
|
coldfusion
|
Per http://www.adobe.com/support/security/advisories/apsa13-03.html
"Affected software versionsColdFusion 10, 9.0.2, 9.0.1 and 9.0 for Windows, Macintosh and UNIX"
|
NVD-CWE-noinfo
|
CVE-2013-3336
|
2013-11-7 13:39 |
2013-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259688
|
- |
|
novell
|
zenworks_configuration_management
|
Open redirect vulnerability in the fwdToURL function in the ZCC login page in zcc-framework.jar in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote at…
|
CWE-20
Improper Input Validation
|
CVE-2013-1093
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259689
|
- |
|
novell
|
zenworks_configuration_management
|
Cross-site scripting (XSS) vulnerability in a ZCC page in zenworks-core in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote attackers to inject arbitr…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1094
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259690
|
- |
|
novell
|
zenworks_configuration_management
|
Cross-site scripting (XSS) vulnerability in a ZCC page in njwc.jar in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote attackers to inject arbitrary w…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1095
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|