259461
|
- |
|
adobe
|
coldfusion
|
Unspecified vulnerability in Adobe ColdFusion 9.0, 9.0.1, 9.0.2, and 10 allows remote attackers to read arbitrary files via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2013-3336
|
2013-11-7 13:39 |
2013-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259462
|
- |
|
adobe
|
coldfusion
|
Per http://www.adobe.com/support/security/advisories/apsa13-03.html
"Affected software versionsColdFusion 10, 9.0.2, 9.0.1 and 9.0 for Windows, Macintosh and UNIX"
|
NVD-CWE-noinfo
|
CVE-2013-3336
|
2013-11-7 13:39 |
2013-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259463
|
- |
|
novell
|
zenworks_configuration_management
|
Open redirect vulnerability in the fwdToURL function in the ZCC login page in zcc-framework.jar in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote at…
|
CWE-20
Improper Input Validation
|
CVE-2013-1093
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259464
|
- |
|
novell
|
zenworks_configuration_management
|
Cross-site scripting (XSS) vulnerability in a ZCC page in zenworks-core in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote attackers to inject arbitr…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1094
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259465
|
- |
|
novell
|
zenworks_configuration_management
|
Cross-site scripting (XSS) vulnerability in a ZCC page in njwc.jar in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote attackers to inject arbitrary w…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1095
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259466
|
- |
|
novell
|
zenworks_configuration_management
|
Cross-site scripting (XSS) vulnerability in a ZCC page in njwc.jar in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote attackers to inject arbitrary w…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1097
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259467
|
- |
|
saltstack
|
salt
|
Salt (aka SaltStack) before 0.15.0 through 0.17.0 allows remote authenticated minions to impersonate arbitrary minions via a crafted minion with a valid key.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4439
|
2013-11-7 10:29 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259468
|
- |
|
s9y
|
serendipity
|
Cross-site scripting (XSS) vulnerability in spell-check-savedicts.php in the htmlarea SpellChecker module, as used in Serendipity before 1.7.3 and possibly other products, allows remote attackers to …
|
CWE-79
Cross-site Scripting
|
CVE-2013-5670
|
2013-11-7 10:23 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259469
|
- |
|
citrix
|
xendesktop
|
Citrix XenDesktop 7.0, when upgraded from XenDesktop 5.x, does not properly enforce policy rule permissions, which allows remote attackers to bypass intended restrictions.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6077
|
2013-11-7 10:22 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259470
|
- |
|
smackcoders
|
wp_ultimate_email_marketer_plugin
|
Multiple cross-site scripting (XSS) vulnerabilities in the WP Ultimate Email Marketer plugin 1.1.0 and possibly earlier for Wordpress allow remote attackers to inject arbitrary web script or HTML via…
|
CWE-79
Cross-site Scripting
|
CVE-2013-3263
|
2013-11-7 10:21 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|