257671
|
- |
|
idleman
|
leed
|
Leed (Light Feed), possibly before 1.5 Stable, allows remote attackers to bypass authorization via vectors related to the (1) importForm, (2) importFeed, (3) addFavorite, or (4) removeFavorite action…
|
CWE-20
Improper Input Validation
|
CVE-2013-2629
|
2014-01-14 13:25 |
2013-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257672
|
- |
|
redhat
|
cloudforms_management_engine
|
Multiple directory traversal vulnerabilities in the AgentController in Red Hat CloudForms Management Engine 2.0 allow remote attackers to create and overwrite arbitrary files via a .. (dot dot) in th…
|
CWE-22
Path Traversal
|
CVE-2013-2068
|
2014-01-14 13:24 |
2013-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257673
|
- |
|
canonical
|
ubuntu_linux
|
Race condition in the post-installation script (mysql-server-5.5.postinst) for MySQL Server 5.5 for Debian GNU/Linux and Ubuntu Linux creates a configuration file with world-readable permissions befo…
|
CWE-362
Race Condition
|
CVE-2013-2162
|
2014-01-14 13:24 |
2013-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257674
|
- |
|
rubygems
|
rubygems
|
RubyGems before 1.8.23 can redirect HTTPS connections to HTTP, which makes it easier for remote attackers to observe or modify a gem during installation via a man-in-the-middle attack.
|
NVD-CWE-Other
|
CVE-2012-2125
|
2014-01-14 13:17 |
2013-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257675
|
- |
|
rubygems
|
rubygems
|
RubyGems before 1.8.23 does not verify an SSL certificate, which allows remote attackers to modify a gem during installation via a man-in-the-middle attack.
|
CWE-310
Cryptographic Issues
|
CVE-2012-2126
|
2014-01-14 13:17 |
2013-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257676
|
- |
|
oracle
|
fusion_middleware
|
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.5 and 8.3.7 allows context-dependent attackers to affect confidentiality, integrity, and availa…
|
NVD-CWE-noinfo
|
CVE-2012-0110
|
2014-01-14 13:14 |
2012-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257677
|
- |
|
oracle
|
fusion_middleware
|
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.2.0 and 8.3.5.0 allows context-dependent attackers to affect confidentiality, integrity, and av…
|
NVD-CWE-noinfo
|
CVE-2011-2264
|
2014-01-14 13:09 |
2011-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257678
|
- |
|
oracle
|
fusion_middleware
|
Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.2.0 and 8.3.5.0 allows context-dependent attackers to affect availability via unknown vectors r…
|
NVD-CWE-noinfo
|
CVE-2011-2267
|
2014-01-14 13:09 |
2011-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257679
|
- |
|
oracle
|
application_server
|
Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.2.2 and 8.3.0 allows local users to affect confidentiality, integrity, and availability, related to HTM…
|
NVD-CWE-noinfo
|
CVE-2009-1011
|
2014-01-14 12:46 |
2009-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257680
|
- |
|
cgene
|
security_file_manager
|
Directory traversal vulnerability in the CGENE Security File Manager Pro application 1.0.6 and earlier, and Security File Manager Trial application 1.0.6 and earlier, for Android allows attackers to …
|
CWE-22
Path Traversal
|
CVE-2014-0804
|
2014-01-14 05:05 |
2014-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|