260131
|
- |
|
redhat
|
jboss_operations_network
|
The server in Red Hat JBoss Operations Network (JON) 3.1.2 logs passwords in plaintext, which allows local users to obtain sensitive information by reading the log files.
|
CWE-310
Cryptographic Issues
|
CVE-2013-4293
|
2013-10-25 23:33 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260132
|
- |
|
apache
|
sling sling_auth_core_component
|
Open redirect vulnerability in the AbstractAuthenticationFormServlet in the Auth Core (org.apache.sling.auth.core) bundle before 1.1.4 in Apache Sling allows remote attackers to redirect users to arb…
|
CWE-20
Improper Input Validation
|
CVE-2013-4390
|
2013-10-25 23:30 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260133
|
- |
|
apple
|
mac_os_x
|
socketfilterfw in Application Firewall in Apple Mac OS X before 10.9 does not properly implement the --blockApp option, which allows remote attackers to bypass intended access restrictions via a netw…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5165
|
2013-10-25 09:10 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260134
|
- |
|
apple
|
mac_os_x
|
CoreGraphics in Apple Mac OS X before 10.9, when display-sleep mode is used, does not ensure that screen locking blocks the visibility of all windows, which allows physically proximate attackers to o…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5169
|
2013-10-25 09:09 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260135
|
- |
|
apple
|
mac_os_x
|
The random-number generator in the kernel in Apple Mac OS X before 10.9 provides lengthy exclusive access for processing of large requests, which allows local users to cause a denial of service (temp…
|
CWE-310
Cryptographic Issues
|
CVE-2013-5173
|
2013-10-25 09:04 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260136
|
- |
|
apple
|
mac_os_x
|
The kernel in Apple Mac OS X before 10.9 allows local users to obtain sensitive information or cause a denial of service (out-of-bounds read and system crash) via a crafted Mach-O file.
|
CWE-20
Improper Input Validation
|
CVE-2013-5175
|
2013-10-25 09:02 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260137
|
- |
|
apple
|
mac_os_x
|
The kernel in Apple Mac OS X before 10.9 does not properly handle integer values during unspecified tty device operations, which allows local users to cause a denial of service (system hang) by trigg…
|
CWE-189
Numeric Errors
|
CVE-2013-5176
|
2013-10-25 08:53 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260138
|
- |
|
apple
|
mac_os_x
|
The kernel in Apple Mac OS X before 10.9 allows local users to cause a denial of service (panic) via an invalid iovec structure.
|
CWE-189
Numeric Errors
|
CVE-2013-5177
|
2013-10-25 08:45 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260139
|
- |
|
apple
|
mac_os_x
|
Console in Apple Mac OS X before 10.9 allows user-assisted remote attackers to execute arbitrary applications by triggering a log entry with a crafted attached URL.
|
CWE-20
Improper Input Validation
|
CVE-2013-5168
|
2013-10-25 08:44 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260140
|
- |
|
apple
|
mac_os_x
|
The srandomdev function in Libc in Apple Mac OS X before 10.9, when the kernel random-number generator is unavailable, produces predictable values instead of the intended random values, which makes i…
|
CWE-310
Cryptographic Issues
|
CVE-2013-5180
|
2013-10-25 08:41 |
2013-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|