259481
|
- |
|
adobe
|
coldfusion
|
Per http://www.adobe.com/support/security/advisories/apsa13-03.html
"Affected software versionsColdFusion 10, 9.0.2, 9.0.1 and 9.0 for Windows, Macintosh and UNIX"
|
NVD-CWE-noinfo
|
CVE-2013-3336
|
2013-11-7 13:39 |
2013-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259482
|
- |
|
novell
|
zenworks_configuration_management
|
Open redirect vulnerability in the fwdToURL function in the ZCC login page in zcc-framework.jar in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote at…
|
CWE-20
Improper Input Validation
|
CVE-2013-1093
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259483
|
- |
|
novell
|
zenworks_configuration_management
|
Cross-site scripting (XSS) vulnerability in a ZCC page in zenworks-core in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote attackers to inject arbitr…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1094
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259484
|
- |
|
novell
|
zenworks_configuration_management
|
Cross-site scripting (XSS) vulnerability in a ZCC page in njwc.jar in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote attackers to inject arbitrary w…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1095
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259485
|
- |
|
novell
|
zenworks_configuration_management
|
Cross-site scripting (XSS) vulnerability in a ZCC page in njwc.jar in Novell ZENworks Configuration Management (ZCM) 11.2 before 11.2.3a Monthly Update 1 allows remote attackers to inject arbitrary w…
|
CWE-79
Cross-site Scripting
|
CVE-2013-1097
|
2013-11-7 13:36 |
2013-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259486
|
- |
|
saltstack
|
salt
|
Salt (aka SaltStack) before 0.15.0 through 0.17.0 allows remote authenticated minions to impersonate arbitrary minions via a crafted minion with a valid key.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4439
|
2013-11-7 10:29 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259487
|
- |
|
s9y
|
serendipity
|
Cross-site scripting (XSS) vulnerability in spell-check-savedicts.php in the htmlarea SpellChecker module, as used in Serendipity before 1.7.3 and possibly other products, allows remote attackers to …
|
CWE-79
Cross-site Scripting
|
CVE-2013-5670
|
2013-11-7 10:23 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259488
|
- |
|
citrix
|
xendesktop
|
Citrix XenDesktop 7.0, when upgraded from XenDesktop 5.x, does not properly enforce policy rule permissions, which allows remote attackers to bypass intended restrictions.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6077
|
2013-11-7 10:22 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259489
|
- |
|
smackcoders
|
wp_ultimate_email_marketer_plugin
|
Multiple cross-site scripting (XSS) vulnerabilities in the WP Ultimate Email Marketer plugin 1.1.0 and possibly earlier for Wordpress allow remote attackers to inject arbitrary web script or HTML via…
|
CWE-79
Cross-site Scripting
|
CVE-2013-3263
|
2013-11-7 10:21 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259490
|
- |
|
openstack
|
havana grizzly folsom
|
The XenAPI backend in OpenStack Compute (Nova) Folsom, Grizzly, and Havana before 2013.2 does not properly apply security groups (1) when resizing an image or (2) during live migration, which allows …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4497
|
2013-11-7 10:11 |
2013-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|