260791
|
- |
|
piwigo
|
piwigo
|
Directory traversal vulnerability in install.php in Piwigo before 2.4.7 allows remote attackers to read and delete arbitrary files via a .. (dot dot) in the dl parameter.
|
CWE-22
Path Traversal
|
CVE-2013-1469
|
2013-03-19 13:00 |
2013-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260792
|
- |
|
apache
|
qpid
|
The default configuration for Apache Qpid 0.20 and earlier, when the federation_tag attribute is enabled, accepts AMQP connections without checking the source user ID, which allows remote attackers t…
|
CWE-287
Improper Authentication
|
CVE-2012-4446
|
2013-03-19 13:00 |
2013-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260793
|
- |
|
apache
|
qpid
|
Integer overflow in the qpid::framing::Buffer::checkAvailable function in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (crash) via a crafted message, which trigge…
|
CWE-189
Numeric Errors
|
CVE-2012-4459
|
2013-03-19 13:00 |
2013-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260794
|
- |
|
redhat
|
automatic_bug_reporting_tool
|
Untrusted search path vulnerability in plugins/abrt-action-install-debuginfo-to-abrt-cache.c in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to load and execute arbitrary …
|
NVD-CWE-Other
|
CVE-2012-5659
|
2013-03-19 13:00 |
2013-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260795
|
- |
|
redhat
|
automatic_bug_reporting_tool
|
Per: http://cwe.mitre.org/data/definitions/426.html
'CWE-426: Untrusted Search Path'
|
NVD-CWE-Other
|
CVE-2012-5659
|
2013-03-19 13:00 |
2013-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260796
|
- |
|
david_king
|
vino
|
Vino before 2.99.4 can connect external networks contrary to the statement in the vino-preferences dialog box, which might make it easier for remote attackers to perform attacks.
|
CWE-16
Configuration
|
CVE-2011-1164
|
2013-03-19 13:00 |
2013-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260797
|
- |
|
david_king
|
vino
|
Vino, possibly before 3.2, does not properly document that it opens ports in UPnP routers when the "Configure network to automatically accept connections" setting is enabled, which might make it easi…
|
NVD-CWE-Other
|
CVE-2011-1165
|
2013-03-19 13:00 |
2013-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260798
|
- |
|
apple
|
safari
|
WebKit in Apple Safari before 6.0.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2013-…
|
NVD-CWE-noinfo
|
CVE-2013-0960
|
2013-03-19 02:06 |
2013-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260799
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
The Apple mod_hfs_apple module for the Apache HTTP Server in Apple Mac OS X before 10.8.3 does not properly handle ignorable Unicode characters, which allows remote attackers to bypass intended direc…
|
NVD-CWE-noinfo
|
CVE-2013-0966
|
2013-03-19 01:52 |
2013-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260800
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
CoreTypes in Apple Mac OS X before 10.8.3 includes JNLP files in the list of safe file types, which allows remote attackers to bypass a Java plug-in disabled setting, and trigger the launch of Java W…
|
NVD-CWE-noinfo
|
CVE-2013-0967
|
2013-03-19 01:48 |
2013-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|