258441
|
- |
|
munin-monitoring
|
munin
|
The get_group_tree function in lib/Munin/Master/HTMLConfig.pm in Munin before 2.0.18 allows remote nodes to cause a denial of service (infinite loop and memory consumption in the munin-html process) …
|
CWE-20
Improper Input Validation
|
CVE-2013-6048
|
2014-03-6 13:49 |
2013-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258442
|
- |
|
munin-monitoring
|
munin
|
Munin::Master::Node in Munin before 2.0.18 allows remote attackers to cause a denial of service (abort data collection for node) via a plugin that uses "multigraph" as a multigraph service name.
|
CWE-20
Improper Input Validation
|
CVE-2013-6359
|
2014-03-6 13:49 |
2013-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258443
|
- |
|
hp
|
linux_imaging_and_printing_project
|
base/pkit.py in HP Linux Imaging and Printing (HPLIP) through 3.13.11 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/hp-pkservice.log temporary file.
|
CWE-59
Link Following
|
CVE-2013-6402
|
2014-03-6 13:49 |
2014-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258444
|
- |
|
hp
|
linux_imaging_and_printing_project
|
upgrade.py in the hp-upgrade service in HP Linux Imaging and Printing (HPLIP) 3.x through 3.13.11 launches a program from an http URL, which allows man-in-the-middle attackers to execute arbitrary co…
|
CWE-94
Code Injection
|
CVE-2013-6427
|
2014-03-6 13:49 |
2013-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258445
|
- |
|
openstack
|
heat
|
The ReST API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 allows remote authenticated users to bypass the tenant scoping restrictions via a modified ten…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6428
|
2014-03-6 13:49 |
2013-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258446
|
- |
|
google
|
chrome
|
Use-after-free vulnerability in the Channel::SendRTCPPacket function in voice_engine/channel.cc in libjingle in WebRTC, as used in Google Chrome before 31.0.1650.48 and other products, allows remote …
|
NVD-CWE-Other
|
CVE-2013-6631
|
2014-03-6 13:49 |
2013-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258447
|
- |
|
google
|
chrome
|
CWE-416: Use After Free per http://cwe.mitre.org/data/definitions/416.html
|
NVD-CWE-Other
|
CVE-2013-6631
|
2014-03-6 13:49 |
2013-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258448
|
- |
|
google
|
chrome
|
The OneClickSigninHelper::ShowInfoBarIfPossible function in browser/ui/sync/one_click_signin_helper.cc in Google Chrome before 31.0.1650.63 uses an incorrect URL during realm validation, which allows…
|
CWE-287
Improper Authentication
|
CVE-2013-6634
|
2014-03-6 13:49 |
2013-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258449
|
- |
|
google
|
chrome
|
The FrameLoader::notifyIfInitialDocumentAccessed function in core/loader/FrameLoader.cpp in Blink, as used in Google Chrome before 31.0.1650.63, makes an incorrect check for an empty document during …
|
CWE-20
Improper Input Validation
|
CVE-2013-6636
|
2014-03-6 13:49 |
2013-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258450
|
- |
|
google
|
chrome
|
Multiple unspecified vulnerabilities in Google Chrome before 31.0.1650.63 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2013-6637
|
2014-03-6 13:49 |
2013-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|