260011
|
- |
|
ovislink
|
airlive_wl2600cam
|
Directory traversal vulnerability in cgi-bin/admin/fileread in AirLive WL2600CAM and possibly other camera models allows remote attackers to read arbitrary files via a .. (dot dot) in the READ.filePa…
|
CWE-22
Path Traversal
|
CVE-2013-3541
|
2013-10-8 00:38 |
2013-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260012
|
- |
|
brickom
|
100ap_device_firmware fb-100ap md-100ap ob-100ae osd-040e wcb-100ap wfb-100ap
|
Brickcom FB-100Ap, WCB-100Ap, MD-100Ap, WFB-100Ap, OB-100Ae, OSD-040E, and possibly other camera models with firmware 3.0.6.16C1 and earlier, do not properly restrict access to configfile.dump, which…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-3689
|
2013-10-8 00:38 |
2013-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260013
|
- |
|
watchguard
|
server_center
|
Multiple untrusted search path vulnerabilities in (1) Watchguard Log Collector (wlcollector.exe) and (2) Watchguard WebBlocker Server (wbserver.exe) in WatchGuard Server Center 11.7.4, 11.7.3, and po…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5701
|
2013-10-8 00:30 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260014
|
- |
|
accelatech
|
bizsearch
|
Cross-site scripting (XSS) vulnerability in Accela BizSearch 3.2 on Linux and Solaris allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-4711
|
2013-10-8 00:07 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260015
|
- |
|
ovislink
|
airlive_od-2025hd airlive_od-2060hd airlive_poe100hd airlive_poe200hd airlive_poe250hd airlive_poe2600hd
|
Cross-site request forgery (CSRF) vulnerability in cgi-bin/admin/usrgrp.cgi in AirLive POE2600HD, POE250HD, POE200HD, OD-325HD, OD-2025HD, OD-2060HD, POE100HD, and possibly other camera models allows…
|
CWE-352
Origin Validation Error
|
CVE-2013-3540
|
2013-10-7 23:55 |
2013-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260016
|
- |
|
citrix
|
netscaler_application_delivery_controller_firmware netscaler_application_delivery_controller
|
Citrix NetScaler Application Delivery Controller (ADC) 10.0 before 10.0-76.7 allows remote attackers to cause a denial of service (nsconfigd crash and appliance reboot) via a crafted request.
|
CWE-20
Improper Input Validation
|
CVE-2013-6011
|
2013-10-7 23:52 |
2013-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260017
|
- |
|
rsyslog
|
rsyslog
|
Double free vulnerability in the writeDataError function in the ElasticSearch plugin (omelasticsearch) in rsyslog before 7.4.2 and before 7.5.2 devel, when errorfile is set to local logging, allows r…
|
CWE-399
Resource Management Errors
|
CVE-2013-4758
|
2013-10-7 23:29 |
2013-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260018
|
- |
|
iij
|
seil\%2fx1_firmware seil\/x1 seil\%2fb1_firmware seil\/b1 seil\%2fx2_firmware seil\/x2 seil\%2fx86_firmware seil\/x86 seil\%2fturbo_firmware seil\/turbo seil\%2fneu_2fe_…
|
The PPP Access Concentrator (PPPAC) in Internet Initiative Japan Inc. SEIL/x86 1.00 through 2.80, SEIL/X1 1.00 through 4.30, SEIL/X2 1.00 through 4.30, SEIL/B1 1.00 through 4.30, SEIL/Turbo 1.80 thro…
|
CWE-310
Cryptographic Issues
|
CVE-2013-4708
|
2013-10-7 23:06 |
2013-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260019
|
- |
|
corel
|
pdf_fusion
|
Stack-based buffer overflow in Corel PDF Fusion 1.11 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a long ZIP directory entry name in an XPS f…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0742
|
2013-10-7 22:35 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260020
|
- |
|
apple
|
mac_os_x
|
Directory Services in Apple Mac OS X before 10.8.5 Supplemental Update allows local users to bypass password-based authentication and modify arbitrary Directory Services records via unspecified vecto…
|
CWE-287
Improper Authentication
|
CVE-2013-5163
|
2013-10-7 22:06 |
2013-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|