ID | Summary | Flags | Max Score |
---|---|---|---|
CVE-2013-6000 | Directory traversal vulnerability in Tattyan HP TOWN before 5_10_1 allows remote attackers to read a... | | |
CVE-2013-6001 | SQL injection vulnerability in the Space function in Cybozu Garoon before 3.7 SP1 allows remote auth... | | |
CVE-2013-6002 | The server in Cybozu Garoon before 3.7 SP1 allows remote attackers to cause a denial of service (CPU... | | |
CVE-2013-6003 | CRLF injection vulnerability in Cybozu Garoon 3.1 through 3.5 SP5, when Phone Messages forwarding is... | | |
CVE-2013-6004 | Session fixation vulnerability in Cybozu Garoon before 3.7.2 allows remote attackers to hijack web s... | | |
CVE-2013-6005 | Cross-site scripting (XSS) vulnerability in Cybozu Dezie before 8.1.0 allows remote attackers to inj... | | |
CVE-2013-6006 | Cybozu Garoon 3.5 through 3.7 SP2 allows remote attackers to bypass Keitai authentication via a modi... | | |
CVE-2013-6007 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6008 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6009 | CRLF injection vulnerability in Open-Xchange AppSuite before 7.2.2, when using AJP in certain condit... | | |
CVE-2013-6010 | Cross-site scripting (XSS) vulnerability in the Comment Attachment plugin 1.0 for WordPress allows r... | E | |
CVE-2013-6011 | Citrix NetScaler Application Delivery Controller (ADC) 10.0 before 10.0-76.7 allows remote attackers... | | |
CVE-2013-6012 | Juniper Junos 12.1X44 before 12.1.X44-D20 and 12.1X45 before 12.1X45-D15, when the no-validate optio... | | |
CVE-2013-6013 | Buffer overflow in the flow daemon (flowd) in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R7-... | | |
CVE-2013-6014 | Juniper Junos 10.4 before 10.4S15, 11.4 before 11.4R9, 11.4X27 before 11.4X27.44, 12.1 before 12.1R7... | | |
CVE-2013-6015 | Juniper Junos before 10.4S14, 11.4 before 11.4R5-S2, 12.1R before 12.1R3, 12.1X44 before 12.1X44-D20... | | |
CVE-2013-6016 | The Traffic Management Microkernel (TMM) in F5 BIG-IP LTM, APM, ASM, Edge Gateway, GTM, Link Control... | | |
CVE-2013-6017 | Cross-site scripting (XSS) vulnerability in Atmail Webmail Server before 7.2 allows remote attackers... | | |
CVE-2013-6018 | Cross-site request forgery (CSRF) vulnerability in login.jsp in Tyler Technologies TaxWeb 3.13.3.1 a... | | |
CVE-2013-6019 | Cross-site scripting (XSS) vulnerability in Tyler Technologies TaxWeb 3.13.3.1 allows remote attacke... | | |
CVE-2013-6020 | passwordRequestPOST.jsp in Tyler Technologies TaxWeb 3.13.3.1 sends different HTTP status codes for ... | | |
CVE-2013-6021 | Buffer overflow in WGagent in WatchGuard WSM and Fireware before 11.8 allows remote attackers to exe... | E S | |
CVE-2013-6022 | A Cross-Site Scripting (XSS) vulnerability exists in Tiki Wiki CMG Groupware 11.0 via the id paraZer... | | |
CVE-2013-6023 | Directory traversal vulnerability in the TVT TD-2308SS-B DVR with firmware 3.2.0.P-3520A-00 and earl... | E | |
CVE-2013-6024 | The Edge Client components in F5 BIG-IP APM 10.x, 11.x, 12.x, 13.x, and 14.x, BIG-IP Edge Gateway 10... | | |
CVE-2013-6025 | The XMLParse procedure in SAP Sybase Adaptive Server Enterprise (ASE) 15.7 ESD 2 allows remote authe... | E | |
CVE-2013-6026 | The web interface on D-Link DIR-100, DIR-120, DI-624S, DI-524UP, DI-604S, DI-604UP, DI-604+, and TM-... | E | |
CVE-2013-6027 | Stack-based buffer overflow in the RuntimeDiagnosticPing function in /bin/webs on D-Link DIR-100 rou... | E | |
CVE-2013-6028 | Multiple cross-site request forgery (CSRF) vulnerabilities in Atmail Webmail Server before 7.2 allow... | | |
CVE-2013-6029 | Stack-based buffer overflow in the AT&T Connect Participant Application before 9.5.51 on Windows all... | S | |
CVE-2013-6030 | Directory traversal vulnerability on the Emerson Network Power Avocent MergePoint Unity 2016 (aka MP... | | |
CVE-2013-6031 | The Huawei E355 adapter with firmware 21.157.37.01.910 does not require authentication for API pages... | E | |
CVE-2013-6032 | cgi-bin/postpf/cgi-bin/dynamic/config/config.html on Lexmark X94x before LC.BR.P142, X85x through LC... | | |
CVE-2013-6033 | Multiple cross-site scripting (XSS) vulnerabilities on Lexmark W840 through LS.HA.P252, T64x before ... | | |
CVE-2013-6034 | The firmware on GateHouse; Harris BGAN RF-7800B-VU204 and BGAN RF-7800B-DU204; Hughes Network System... | | |
CVE-2013-6035 | The firmware on GateHouse; Harris BGAN RF-7800B-VU204 and BGAN RF-7800B-DU204; Hughes Network System... | | |
CVE-2013-6037 | Cross-site scripting (XSS) vulnerability in index.php in Aker Secure Mail Gateway 2.5.2 and earlier ... | S | |
CVE-2013-6038 | Stack-based buffer overflow in Trimble SketchUp Viewer 13.0.4124 allows remote attackers to execute ... | | |
CVE-2013-6039 | Multiple cross-site scripting (XSS) vulnerabilities in NagiosQL 3.2 SP2 allow remote attackers to in... | | |
CVE-2013-6040 | MW6 Aztec, DataMatrix, and MaxiCode ActiveX controls versions before 4.0 are vulnerable to arbitrary code via crafted HTML document. | E | |
CVE-2013-6041 | index.php in Softaculous Webuzo before 2.1.4 allows remote attackers to execute arbitrary commands v... | | |
CVE-2013-6042 | Cross-site scripting (XSS) vulnerability in filemanager/login.php in the File Manager module in Soft... | | |
CVE-2013-6043 | The login function in Softaculous Webuzo before 2.1.4 provides different error messages for invalid ... | | |
CVE-2013-6044 | The is_safe_url function in utils/http.py in Django 1.4.x before 1.4.6, 1.5.x before 1.5.2, and 1.6 ... | S | |
CVE-2013-6045 | Multiple heap-based buffer overflows in OpenJPEG 1.3 and earlier might allow remote attackers to exe... | | |
CVE-2013-6047 | Multiple cross-site scripting (XSS) vulnerabilities in the site creation interface in ikiwiki-hostin... | | |
CVE-2013-6048 | The get_group_tree function in lib/Munin/Master/HTMLConfig.pm in Munin before 2.0.18 allows remote n... | S | |
CVE-2013-6049 | apt-listbugs before 0.1.10 creates temporary files insecurely, which allows attackers to have unspec... | | |
CVE-2013-6050 | Integer overflow in Links before 2.8 allows remote attackers to cause a denial of service (crash) vi... | | |
CVE-2013-6051 | The bgp_attr_unknown function in bgp_attr.c in Quagga 0.99.21 does not properly initialize the total... | | |
CVE-2013-6052 | OpenJPEG 1.3 and earlier allows remote attackers to obtain sensitive information via unspecified vec... | | |
CVE-2013-6053 | OpenJPEG 1.5.1 allows remote attackers to obtain sensitive information via unspecified vectors that ... | | |
CVE-2013-6054 | Heap-based buffer overflow in OpenJPEG 1.3 has unspecified impact and remote vectors, a different vu... | | |
CVE-2013-6055 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wi... | R | |
CVE-2013-6056 | OSSIM before 4.3.3.1 has tele_compress.php path traversal vulnerability... | | |
CVE-2013-6058 | SQL injection vulnerability in appRain CMF 3.0.2 and earlier allows remote attackers to execute arbi... | E | |
CVE-2013-6074 | Cross-site scripting (XSS) vulnerability in Open-Xchange (OX) AppSuite 7.2.x before 7.2.2-rev25 and ... | | |
CVE-2013-6075 | The compare_dn function in utils/identification.c in strongSwan 4.3.3 through 5.1.1 allows (1) remot... | S | |
CVE-2013-6076 | strongSwan 5.0.2 through 5.1.0 allows remote attackers to cause a denial of service (NULL pointer de... | S | |
CVE-2013-6077 | Citrix XenDesktop 7.0, when upgraded from XenDesktop 5.x, does not properly enforce policy rule perm... | | |
CVE-2013-6078 | The default configuration of EMC RSA BSAFE Toolkits and RSA Data Protection Manager (DPM) 20130918 u... | | |
CVE-2013-6079 | Buffer overflow in MostGear Soft Easy LAN Folder Share 3.2.0.100 allows local users to cause a denia... | E | |
CVE-2013-6080 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6081 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6082 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6083 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6084 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6085 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6086 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6087 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6088 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6089 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6090 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6091 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6092 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6093 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6094 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6095 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6096 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6097 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6098 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6099 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6100 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6101 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6102 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6103 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6104 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6111 | Cross-site scripting (XSS) vulnerability in the mod_pagespeed module 0.x, 1.0.22.7, 1.1.x, 1.24.1, 1... | | |
CVE-2013-6114 | Integer overflow in the OZDocument::parseElement function in Apple Motion 5.0.7 allows remote attack... | E | |
CVE-2013-6117 | Dahua DVR 2.608.0000.0 and 2.608.GV00.0 allows remote attackers to bypass authentication and obtain ... | E | |
CVE-2013-6122 | goodix_tool.c in the Goodix gt915 touchscreen driver for the Linux kernel 3.x, as used in Qualcomm I... | E S | |
CVE-2013-6123 | Multiple array index errors in drivers/media/video/msm/server/msm_cam_server.c in the MSM camera dri... | E S | |
CVE-2013-6124 | The Qualcomm Innovation Center (QuIC) init scripts in Code Aurora Forum (CAF) releases of Android 4.... | | |
CVE-2013-6125 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in... | R | |
CVE-2013-6126 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in... | R | |
CVE-2013-6127 | The SUPERGRIDLib.SuperGrid ActiveX control in SuperGrid.ocx before 65.30.30000.10002 in WellinTech K... | E | |
CVE-2013-6128 | The KCHARTXYLib.KChartXY ActiveX control in KChartXY.ocx before 65.30.30000.10002 in WellinTech King... | E S | |
CVE-2013-6129 | The install/upgrade.php scripts in vBulletin 4.1 and 5 allow remote attackers to create administrati... | E | |
CVE-2013-6141 | Unspecified vulnerability in op5 Monitor before 6.1.3 allows attackers to read arbitrary files via u... | | |
CVE-2013-6142 | DNP3Driver.exe in the DNP3 driver in Schneider Electric ClearSCADA 2010 R2 through 2010 R3.1 and SCA... | | |
CVE-2013-6143 | The Schneider Electric Telvent SAGE 3030 RTU with firmware C3413-500-001D3_P4 and C3413-500-001F0_PB... | | |
CVE-2013-6144 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6145 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6146 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6147 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6148 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6149 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6150 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6151 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6152 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6153 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6154 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6155 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6156 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6157 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6158 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6159 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6160 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6161 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6162 | Cross-site scripting (XSS) vulnerability in Code-Crafters Ability Mail Server 3.1.1 allows remote at... | E | |
CVE-2013-6163 | Multiple cross-site scripting (XSS) vulnerabilities in ProjeQtOr (formerly Project'Or RIA) before 4.... | E | |
CVE-2013-6164 | SQL injection vulnerability in view/objectDetail.php in Project'Or RIA 3.4.0 allows remote attackers... | E | |
CVE-2013-6166 | Google Chrome before 29 sends HTTP Cookie headers without first validating that they have the requir... | | |
CVE-2013-6167 | Mozilla Firefox through 27 sends HTTP Cookie headers without first validating that they have the req... | | |
CVE-2013-6168 | Cross-site scripting (XSS) vulnerability in Zikula Application Framework before 1.3.6 allows remote ... | E S | |
CVE-2013-6169 | The TLS driver in ejabberd before 2.1.12 supports (1) SSLv2 and (2) weak SSL ciphers, which makes it... | | |
CVE-2013-6170 | Juniper Junos 10.0 before 10.0S28, 10.4 before 10.4R7, 11.1 before 11.1R5, 11.2 before 11.2R2, and 1... | | |
CVE-2013-6171 | checkpassword-reply in Dovecot before 2.2.7 performs setuid operations to a user who is authenticati... | S | |
CVE-2013-6172 | steps/utils/save_pref.inc in Roundcube webmail before 0.8.7 and 0.9.x before 0.9.5 allows remote att... | S | |
CVE-2013-6173 | Multiple cross-site request forgery (CSRF) vulnerabilities in EMC Document Sciences xPression 4.1 SP... | | |
CVE-2013-6174 | Multiple open redirect vulnerabilities in xAdmin in EMC Document Sciences xPression 4.1 SP1 before P... | | |
CVE-2013-6175 | Multiple cross-site scripting (XSS) vulnerabilities in EMC Document Sciences xPression 4.1 SP1 befor... | | |
CVE-2013-6176 | Multiple SQL injection vulnerabilities in EMC Document Sciences xPression 4.1 SP1 before Patch 47, 4... | | |
CVE-2013-6177 | Directory traversal vulnerability in EMC Document Sciences xPression 4.1 SP1 before Patch 47, 4.2 be... | | |
CVE-2013-6178 | Multiple cross-site scripting (XSS) vulnerabilities in EMC RSA Archer GRC 5.x before 5.4 SP1 allow r... | | |
CVE-2013-6179 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6180 | EMC RSA Security Analytics (SA) 10.x before 10.3, and RSA NetWitness NextGen 9.8, does not ensure th... | | |
CVE-2013-6181 | EMC Watch4Net before 6.3 stores cleartext polled-device passwords in the installation repository, wh... | | |
CVE-2013-6182 | Unquoted Windows search path vulnerability in EMC Replication Manager before 5.5 allows local users ... | | |
CVE-2013-6183 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6184 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6185 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6186 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6187 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual... | R | |
CVE-2013-6188 | Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) 7.1 through 7... | S | |
CVE-2013-6189 | Unspecified vulnerability in the Archive Query Server in HP Application Information Optimizer (forme... | | |
CVE-2013-6190 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6191 | Cross-site scripting (XSS) vulnerability in HP Operations Orchestration before 9 allows remote attac... | | |
CVE-2013-6192 | Cross-site request forgery (CSRF) vulnerability in HP Operations Orchestration before 9 allows remot... | | |
CVE-2013-6193 | Unspecified vulnerability on HP LaserJet M1522n and M2727; LaserJet Pro 100, 300, 400, CM1415fnw, CP... | | |
CVE-2013-6194 | Unspecified vulnerability in HP Storage Data Protector 6.2X allows remote attackers to execute arbit... | E | |
CVE-2013-6195 | Unspecified vulnerability in HP Storage Data Protector 6.2X allows remote attackers to execute arbit... | | |
CVE-2013-6196 | Cross-site scripting (XSS) vulnerability in HP Autonomy Ultraseek 5 allows remote authenticated user... | | |
CVE-2013-6197 | Unspecified vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9.21 before 9.21... | | |
CVE-2013-6198 | Cross-site scripting (XSS) vulnerability in HP Service Manager WebTier and Windows Client 9.20 and 9... | | |
CVE-2013-6199 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6200 | Unspecified vulnerability in m4 in HP HP-UX B.11.23 and B.11.31 allows local users to obtain sensiti... | | |
CVE-2013-6201 | Unspecified vulnerability in HP Security Management System 3.3.0, 3.5.0 before patch 1, and 3.6.0 be... | | |
CVE-2013-6202 | Multiple cross-site request forgery (CSRF) vulnerabilities in HP Service Manager 9.30, 9.31, 9.32, a... | | |
CVE-2013-6203 | The Web Console in HP Application Information Optimizer (formerly HP Database Archiving) 6.2, 6.3, 6... | | |
CVE-2013-6204 | The Web Console in HP Application Information Optimizer (formerly HP Database Archiving) 6.2, 6.3, 6... | | |
CVE-2013-6205 | Unspecified vulnerability in HP Rapid Deployment Pack (RDP) and Insight Control Server Deployment al... | | |
CVE-2013-6206 | Unspecified vulnerability in HP Rapid Deployment Pack (RDP) and Insight Control Server Deployment al... | | |
CVE-2013-6207 | Unspecified vulnerability in the loadFileContents function in the SOAP implementation in HP SiteScop... | | |
CVE-2013-6208 | Unspecified vulnerability in HP Smart Update Manager 5.3.5 before build 70 on Linux allows local use... | | |
CVE-2013-6209 | Unspecified vulnerability in rpc.lockd in the NFS subsystem in HP HP-UX B.11.11 and B.11.23 allows r... | | |
CVE-2013-6210 | Unspecified vulnerability in HP Unified Functional Testing before 12.0 allows remote attackers to ex... | | |
CVE-2013-6211 | Unspecified vulnerability in HP StoreOnce Virtual Storage Appliance (VSA) before 3.7.2, StoreOnce 26... | | |
CVE-2013-6212 | Unspecified vulnerability in HP Database and Middleware Automation 10.0, 10.01, 10.10, and 10.20 bef... | | |
CVE-2013-6213 | Unspecified vulnerability in Virtual User Generator in HP LoadRunner before 11.52 Patch 1 allows rem... | | |
CVE-2013-6214 | Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Databa... | | |
CVE-2013-6215 | Unspecified vulnerability in the Integration Service in HP Universal Configuration Management Databa... | | |
CVE-2013-6216 | Unspecified vulnerability in HP Array Configuration Utility, Array Diagnostics Utility, ProLiant Arr... | | |
CVE-2013-6217 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6218 | Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.0x, 9.1x, and 9.2x allows remote att... | | |
CVE-2013-6219 | Unspecified vulnerability in HP HP-UX Whitelisting (aka WLI) before A.01.02.02 on HP-UX B.11.31 allo... | | |
CVE-2013-6220 | Cross-site scripting (XSS) vulnerability in HP Network Node Manager i (NNMi) 9.0, 9.10, and 9.20 all... | | |
CVE-2013-6221 | Directory traversal vulnerability in CommunicationServlet in HP Service Virtualization 3.x before 3.... | E | |
CVE-2013-6222 | Cross-site scripting (XSS) vulnerability in the Mobility Web Client and Service Request Catalog (SRC... | | |
CVE-2013-6223 | LiveZilla before 5.1.1.0 stores the admin Base64 encoded username and password in a 1click file, whi... | E | |
CVE-2013-6224 | Multiple cross-site scripting (XSS) vulnerabilities in LiveZilla before 5.1.1.0 allow remote attacke... | E S | |
CVE-2013-6225 | LiveZilla 5.0.1.4 has a Remote Code Execution vulnerability... | E | |
CVE-2013-6226 | Directory traversal vulnerability in plugins/editor.zoho/agent/save_zoho.php in the Zoho plugin in P... | E | |
CVE-2013-6227 | Unrestricted file upload vulnerability in plugins/editor.zoho/agent/save_zoho.php in the Zoho plugin... | E S | |
CVE-2013-6229 | Multiple cross-site scripting (XSS) vulnerabilities in Atmail Webmail Server 7.0.2 allow remote atta... | E | |
CVE-2013-6230 | The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9.6-ESV before 9.6-ES... | | |
CVE-2013-6231 | SpagoBI before 4.1 has Privilege Escalation via an error in the AdapterHTTP script... | E | |
CVE-2013-6232 | Cross-site scripting (XSS) vulnerability in SpagoBI before 4.1 allows remote authenticated users to ... | E | |
CVE-2013-6233 | Cross-site scripting (XSS) vulnerability in SpagoBI before 4.1 allows remote authenticated users to ... | E | |
CVE-2013-6234 | Unrestricted file upload vulnerability in the Worksheet designer in SpagoBI before 4.1 allows remote... | | |
CVE-2013-6235 | Multiple cross-site scripting (XSS) vulnerabilities in JAMon (Java Application Monitor) 2.7 and earl... | E | |
CVE-2013-6236 | IZON IP 2.0.2: hard-coded password vulnerability... | E | |
CVE-2013-6237 | The ISL Desktop plugin for Windows before 1.4.7 for ISL Light 3.5.4 and earlier allows remote authen... | E S | |
CVE-2013-6239 | Cross-site scripting (XSS) vulnerability in the photo gallery model in Exis Contexis before 2.0 allo... | E | |
CVE-2013-6241 | The Birthday widget in the backend in Open-Xchange (OX) AppSuite 7.2.x before 7.2.2-rev25 and 7.4.x ... | | |
CVE-2013-6242 | Cross-site scripting (XSS) vulnerability in the frontend in Open-Xchange (OX) AppSuite 6.22.3 before... | | |
CVE-2013-6243 | SQL injection vulnerability in the Landing Pages plugin 1.2.3, before 20131009, and earlier for Word... | E S | |
CVE-2013-6244 | The Live Update webdynpro application (webdynpro/dispatcher/sap.com/tc~slm~ui_lup/LUP) in SAP NetWea... | | |
CVE-2013-6245 | Unspecified vulnerability in SAP Sybase Adaptive Server Enterprise (ASE) before 15.0.3 ESD#4.3. 15.5... | | |
CVE-2013-6246 | The Dell Quest One Password Manager, possibly 5.0, allows remote attackers to bypass CAPTCHA protect... | E | |
CVE-2013-6247 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6248 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6249 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6250 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6251 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6252 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6253 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6254 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6255 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6256 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6257 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6258 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6259 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6260 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6261 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6262 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6263 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6264 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6265 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6266 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6267 | Multiple cross-site scripting (XSS) vulnerabilities in Claroline before 1.11.9 allow remote attacker... | E | |
CVE-2013-6271 | Android 4.0 through 4.3 allows attackers to bypass intended access restrictions and remove device lo... | E | |
CVE-2013-6272 | The NotificationBroadcastReceiver class in the com.android.phone process in Google Android 4.1.1 thr... | E | |
CVE-2013-6275 | Multiple CSRF issues in Horde Groupware Webmail Edition 5.1.2 and earlier in basic.php.... | E | |
CVE-2013-6276 | QNAP F_VioCard 2312 and F_VioGate 2308 have hardcoded entries in authorized_keys files. NOTE: 1. All... | E | |
CVE-2013-6277 | QNAP VioCard 300 has hardcoded RSA private keys.... | E | |
CVE-2013-6280 | Cross-site scripting (XSS) vulnerability in Social Sharing Toolkit plugin before 2.1.2 for WordPress... | S | |
CVE-2013-6281 | Cross-site scripting (XSS) vulnerability in codebase/spreadsheet.php in the Spreadsheet (dhtmlxSprea... | E | |
CVE-2013-6282 | The (1) get_user and (2) put_user API functions in the Linux kernel before 3.5.5 on the v6k and v7 A... | KEV E S | |
CVE-2013-6283 | VideoLAN VLC Media Player 2.0.8 and earlier allows remote attackers to cause a denial of service (cr... | E | |
CVE-2013-6284 | Unspecified vulnerability in the Statutory Reporting for Insurance (FS_SR) component in the Financia... | | |
CVE-2013-6285 | The search component in the Treasurer application in Tyler Technologies TaxWeb 3.13.3.1 allows remot... | | |
CVE-2013-6288 | Unspecified vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 has u... | S | |
CVE-2013-6289 | Cross-site scripting (XSS) vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 ... | S | |
CVE-2013-6295 | PrestaShop 1.5.5 vulnerable to privilege escalation via a Salesman account via upload module... | E | |
CVE-2013-6299 | Cross-site scripting (XSS) vulnerability in IBM Algo One, as used in MetaData Management Tools in UD... | | |
CVE-2013-6300 | Cross-site scripting (XSS) vulnerability in IBM Algo One, as used in MetaData Management Tools in UD... | | |
CVE-2013-6301 | Cross-site scripting (XSS) vulnerability in IBM Algo One, as used in MetaData Management Tools in UD... | | |
CVE-2013-6302 | SQL injection vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0 throu... | | |
CVE-2013-6303 | Directory traversal vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0... | | |
CVE-2013-6304 | Multiple directory traversal vulnerabilities in Algo Risk Application (ARA) 2.4.0.1 through 4.9.1 in... | S | |
CVE-2013-6305 | IBM Platform Symphony 5.2 before build 229037 and 6.1.0.1 before build 229073 uses the same credenti... | | |
CVE-2013-6306 | Unspecified vulnerability on IBM Power 7 Systems 740 before 740.70 01Ax740_121, 760 before 760.40 Ax... | | |
CVE-2013-6307 | Cross-site scripting (XSS) vulnerability in IBM Security QRadar SIEM 7.0 allows remote authenticated... | | |
CVE-2013-6308 | IBM Marketing Platform 9.1 before FP2 allows remote authenticated users to conduct phishing attacks ... | | |
CVE-2013-6309 | IBM Marketing Platform 9.1 before FP2 allows remote authenticated users to hijack sessions, and cons... | | |
CVE-2013-6310 | Cross-site scripting (XSS) vulnerability in IBM Marketing Platform 9.1 before FP2 allows remote auth... | | |
CVE-2013-6311 | SQL injection vulnerability in IBM Marketing Platform 9.1 before FP2 allows remote authenticated use... | | |
CVE-2013-6312 | Unspecified vulnerability in IBM Rational Service Tester 8.3.x and 8.5.x before 8.5.1 and Rational P... | | |
CVE-2013-6314 | Cross-site scripting (XSS) vulnerability in IBM InfoSphere Enterprise Records 4.5.1 before 4.5.1.7-I... | | |
CVE-2013-6315 | IBM InfoSphere Enterprise Records 4.5.1 before 4.5.1.7-IER-IF001 and Enterprise Records 5.1.1 before... | | |
CVE-2013-6316 | IBM WebSphere Portal 7.0.0.x before 7.0.0.2 CF26 and 8.0.0.x before 8.0.0.1 CF09 does not properly h... | S | |
CVE-2013-6318 | Cross-site scripting (XSS) vulnerability in IBM Algo One, as used in MetaData Management Tools in UD... | | |
CVE-2013-6319 | IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0 through 5.0.0, ACSWeb in Algo Securi... | | |
CVE-2013-6320 | Cross-site scripting (XSS) vulnerability in IBM Algo One, as used in MetaData Management Tools in UD... | | |
CVE-2013-6321 | SQL injection vulnerability in IBM Atlas eDiscovery Process Management 6.0.1.5 and earlier and 6.0.2... | | |
CVE-2013-6322 | Cross-site scripting (XSS) vulnerability in Sterling Order Management in IBM Sterling Selling and Fu... | | |
CVE-2013-6323 | Cross-site scripting (XSS) vulnerability in the Administration Console in IBM WebSphere Application ... | | |
CVE-2013-6325 | IBM WebSphere Application Server 7.x before 7.0.0.31, 8.0.x before 8.0.0.8, and 8.5.x before 8.5.5.2... | | |
CVE-2013-6327 | Cross-site scripting (XSS) vulnerability in the HTTP Option in IBM Sterling Connect:Enterprise 1.3 b... | | |
CVE-2013-6328 | Cross-site scripting (XSS) vulnerability in the Web Content Manager (WCM) UI in IBM WebSphere Portal... | | |
CVE-2013-6329 | IBM Global Security Kit (aka GSKit), as used in Content Manager OnDemand 8.5 and 9.0 and other produ... | S | |
CVE-2013-6330 | IBM WebSphere Application Server 7.x before 7.0.0.31, when simpleFileServlet static file caching is ... | | |
CVE-2013-6331 | SQL injection vulnerability in IBM Algo One, as used in MetaData Management Tools in UDS 4.7.0 throu... | | |
CVE-2013-6332 | Unrestricted file upload vulnerability in IBM Algo One UDS 4.7.0 through 5.0.0 allows remote authent... | | |
CVE-2013-6333 | Cross-site scripting (XSS) vulnerability in IBM Algo One, as used in MetaData Management Tools in UD... | | |
CVE-2013-6334 | IBM Atlas eDiscovery Process Management 6.0.1.5 and earlier and 6.0.2, Disposal and Governance Manag... | | |
CVE-2013-6335 | The Backup-Archive client in IBM Tivoli Storage Manager (TSM) for Space Management 5.x and 6.x befor... | | |
CVE-2013-6336 | The ieee802154_map_rec function in epan/dissectors/packet-ieee802154.c in the IEEE 802.15.4 dissecto... | E S | |
CVE-2013-6337 | Unspecified vulnerability in the NBAP dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before 1... | | |
CVE-2013-6338 | The dissect_sip_common function in epan/dissectors/packet-sip.c in the SIP dissector in Wireshark 1.... | S | |
CVE-2013-6339 | The dissect_openwire_type function in epan/dissectors/packet-openwire.c in the OpenWire dissector in... | E S | |
CVE-2013-6340 | epan/dissectors/packet-tcp.c in the TCP dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before... | S | |
CVE-2013-6341 | SQL injection vulnerability in Dokeos 2.2 RC2 and earlier allows remote attackers to execute arbitra... | E | |
CVE-2013-6342 | Cross-site scripting (XSS) vulnerability in the Tweet Blender plugin before 4.0.2 for WordPress allo... | E S | |
CVE-2013-6343 | Multiple buffer overflows in web.c in httpd on the ASUS RT-N56U and RT-AC66U routers with firmware 3... | E | |
CVE-2013-6344 | The ZCC page in Novell ZENworks Configuration Management (ZCM) before 11.2.4 allows attackers to con... | | |
CVE-2013-6345 | Unspecified vulnerability in the ZCC page in Novell ZENworks Configuration Management (ZCM) before 1... | | |
CVE-2013-6346 | Cross-site request forgery (CSRF) vulnerability in the ZCC page in Novell ZENworks Configuration Man... | | |
CVE-2013-6347 | Session fixation vulnerability in Novell ZENworks Configuration Management (ZCM) before 11.2.4 allow... | | |
CVE-2013-6348 | Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 2.3.15.3 allow remote attackers... | E | |
CVE-2013-6349 | McAfee Email Gateway (MEG) 7.0 before 7.0.4 and 7.5 before 7.5.1 allows remote authenticated users t... | | |
CVE-2013-6355 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6355. Reason: This candidate... | R | |
CVE-2013-6356 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wi... | R | |
CVE-2013-6357 | Cross-site request forgery (CSRF) vulnerability in the Manager application in Apache Tomcat 5.5.25 a... | E | |
CVE-2013-6358 | PrestaShop 1.5.5 allows remote authenticated attackers to execute arbitrary code by uploading a craf... | E | |
CVE-2013-6359 | Munin::Master::Node in Munin before 2.0.18 allows remote attackers to cause a denial of service (abo... | S | |
CVE-2013-6360 | TRENDnet TS-S402 has a backdoor to enable TELNET.... | E | |
CVE-2013-6362 | Xerox ColorCube and WorkCenter devices in 2013 had hardcoded FTP and shell user accounts.... | E | |
CVE-2013-6364 | Horde Groupware Webmail Edition has CSRF and XSS when saving search as a virtual address book... | | |
CVE-2013-6365 | Horde Groupware Web mail 5.1.2 has CSRF with requests to change permissions... | E S | |
CVE-2013-6366 | The Groovy script console in VMware Hyperic HQ 4.6.6 allows remote authenticated administrators to e... | E | |
CVE-2013-6367 | The apic_get_tmcct function in arch/x86/kvm/lapic.c in the KVM subsystem in the Linux kernel through... | E S | |
CVE-2013-6368 | The KVM subsystem in the Linux kernel through 3.12.5 allows local users to gain privileges or cause ... | E S | |
CVE-2013-6369 | Stack-based buffer overflow in the jbg_dec_in function in libjbig/jbig.c in JBIG-KIT before 2.1 allo... | | |
CVE-2013-6370 | Buffer overflow in the printbuf APIs in json-c before 0.12 allows remote attackers to cause a denial... | E S | |
CVE-2013-6371 | The hash functionality in json-c before 0.12 allows context-dependent attackers to cause a denial of... | S | |
CVE-2013-6372 | The Subversion plugin before 1.54 for Jenkins stores credentials using base64 encoding, which allows... | E S | |
CVE-2013-6373 | The Exclusion plugin before 0.9 for Jenkins does not properly prevent access to resource locks, whic... | | |
CVE-2013-6374 | Cross-site scripting (XSS) vulnerability in the Build Failure Analyzer plugin before 1.5.1 for Jenki... | | |
CVE-2013-6375 | Xen 4.2.x and 4.3.x, when using Intel VT-d for PCI passthrough, does not properly flush the TLB afte... | | |
CVE-2013-6376 | The recalculate_apic_map function in arch/x86/kvm/lapic.c in the KVM subsystem in the Linux kernel t... | E S | |
CVE-2013-6377 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wi... | R | |
CVE-2013-6378 | The lbs_debugfs_write function in drivers/net/wireless/libertas/debugfs.c in the Linux kernel throug... | | |
CVE-2013-6379 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-4513. Reason: This candida... | R | |
CVE-2013-6380 | The aac_send_raw_srb function in drivers/scsi/aacraid/commctrl.c in the Linux kernel through 3.12.1 ... | E S | |
CVE-2013-6381 | Buffer overflow in the qeth_snmp_command function in drivers/s390/net/qeth_core_main.c in the Linux ... | E S | |
CVE-2013-6382 | Multiple buffer underflows in the XFS implementation in the Linux kernel through 3.12.1 allow local ... | E S | |
CVE-2013-6383 | The aac_compat_ioctl function in drivers/scsi/aacraid/linit.c in the Linux kernel before 3.11.8 does... | S | |
CVE-2013-6384 | (1) impl_db2.py and (2) impl_mongodb.py in OpenStack Ceilometer 2013.2 and earlier, when the logging... | E | |
CVE-2013-6385 | The form API in Drupal 6.x before 6.29 and 7.x before 7.24, when used with unspecified third-party m... | S | |
CVE-2013-6386 | Drupal 6.x before 6.29 and 7.x before 7.24 uses the PHP mt_rand function to generate random numbers,... | S | |
CVE-2013-6387 | Cross-site scripting (XSS) vulnerability in the Image module in Drupal 7.x before 7.24 allows remote... | S | |
CVE-2013-6388 | Cross-site scripting (XSS) vulnerability in the Color module in Drupal 7.x before 7.24 allows remote... | S | |
CVE-2013-6389 | Open redirect vulnerability in the Overlay module in Drupal 7.x before 7.24 allows remote attackers ... | S | |
CVE-2013-6390 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2013-6391 | The ec2tokens API in OpenStack Identity (Keystone) before Havana 2013.2.1 and Icehouse before icehou... | E | |
CVE-2013-6392 | The genlock_dev_ioctl function in genlock.c in the Genlock driver for the Linux kernel 3.x, as used ... | S | |
CVE-2013-6393 | The yaml_parser_scan_tag_uri function in scanner.c in LibYAML before 0.1.5 performs an incorrect cas... | S | |
CVE-2013-6394 | Percona XtraBackup before 2.1.6 uses a constant string for the initialization vector (IV), which mak... | S | |
CVE-2013-6395 | Cross-site scripting (XSS) vulnerability in header.php in Ganglia Web 3.5.8 and 3.5.10 allows remote... | E S | |
CVE-2013-6396 | The OpenStack Python client library for Swift (python-swiftclient) 1.0 through 1.9.0 does not verify... | | |
CVE-2013-6397 | Directory traversal vulnerability in SolrResourceLoader in Apache Solr before 4.6 allows remote atta... | E S | |
CVE-2013-6398 | The virtual router in Apache CloudStack before 4.2.1 does not preserve the source restrictions in fi... | | |
CVE-2013-6399 | Array index error in the virtio_load function in hw/virtio/virtio.c in QEMU before 1.7.2 allows remo... | S | |
CVE-2013-6400 | Xen 4.2.x and 4.3.x, when using Intel VT-d and a PCI device has been assigned, does not clear the fl... | | |
CVE-2013-6401 | Jansson, possibly 2.4 and earlier, does not restrict the ability to trigger hash collisions predicta... | | |
CVE-2013-6402 | base/pkit.py in HP Linux Imaging and Printing (HPLIP) through 3.13.11 allows local users to overwrit... | | |
CVE-2013-6403 | The admin page in ownCloud before 5.0.13 allows remote attackers to bypass intended access restricti... | | |
CVE-2013-6404 | Quassel core (server daemon) in Quassel IRC before 0.9.2 does not properly verify the user ID when a... | E S | |
CVE-2013-6405 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-7263, CVE-2013-7264, CVE-20... | R | |
CVE-2013-6406 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-6858. Reason: This candidate... | R | |
CVE-2013-6407 | The UpdateRequestHandler for XML in Apache Solr before 4.1 allows remote attackers to have an unspec... | S | |
CVE-2013-6408 | The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntity... | S | |
CVE-2013-6409 | Debian adequate before 0.8.1, when run by root with the --user option, allows local users to hijack ... | | |
CVE-2013-6410 | nbd-server in Network Block Device (nbd) before 3.5 does not properly check IP addresses, which migh... | S | |
CVE-2013-6411 | The HandleCrashedAircraft function in aircraft_cmd.cpp in OpenTTD 0.3.6 through 1.3.2 allows remote ... | E S | |
CVE-2013-6412 | The transform_save function in transform.c in Augeas 1.0.0 through 1.1.0 does not properly calculate... | | |
CVE-2013-6413 | Use-after-free vulnerability in UnrealIRCd 3.2.10 before 3.2.10.2 allows remote attackers to cause a... | | |
CVE-2013-6414 | actionpack/lib/action_view/lookup_context.rb in Action View in Ruby on Rails 3.x before 3.2.16 and 4... | S | |
CVE-2013-6415 | Cross-site scripting (XSS) vulnerability in the number_to_currency helper in actionpack/lib/action_v... | S | |
CVE-2013-6416 | Cross-site scripting (XSS) vulnerability in the simple_format helper in actionpack/lib/action_view/h... | | |
CVE-2013-6417 | actionpack/lib/action_dispatch/http/request.rb in Ruby on Rails before 3.2.16 and 4.x before 4.0.2 d... | | |
CVE-2013-6418 | PyWBEM 0.7 and earlier uses a separate connection to validate X.509 certificates, which allows man-i... | | |
CVE-2013-6419 | Interaction error in OpenStack Nova and Neutron before Havana 2013.2.1 and icehouse-1 does not valid... | S | |
CVE-2013-6420 | The asn1_time_to_time_t function in ext/openssl/openssl.c in PHP before 5.3.28, 5.4.x before 5.4.23,... | E S | |
CVE-2013-6421 | The unpack_zip function in archive_unpacker.rb in the sprout gem 0.7.246 for Ruby allows context-dep... | E | |
CVE-2013-6422 | The GnuTLS backend in libcurl 7.21.4 through 7.33.0, when disabling digital signature verification (... | | |
CVE-2013-6423 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2013-6424 | Integer underflow in the xTrapezoidValid macro in render/picture.h in X.Org allows context-dependent... | S | |
CVE-2013-6425 | Integer underflow in the pixman_trapezoid_valid macro in pixman.h in Pixman before 0.32.0, as used i... | S | |
CVE-2013-6426 | The cloudformation-compatible API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and I... | E S | |
CVE-2013-6427 | upgrade.py in the hp-upgrade service in HP Linux Imaging and Printing (HPLIP) 3.x through 3.13.11 la... | E | |
CVE-2013-6428 | The ReST API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehou... | E S | |
CVE-2013-6429 | The SourceHttpMessageConverter in Spring MVC in Spring Framework before 3.2.5 and 4.0.0.M1 through 4... | | |
CVE-2013-6430 | The JavaScriptUtils.javaScriptEscape method in web/util/JavaScriptUtils.java in Spring MVC in Spring... | S | |
CVE-2013-6431 | The fib6_add function in net/ipv6/ip6_fib.c in the Linux kernel before 3.11.5 does not properly impl... | E S | |
CVE-2013-6432 | The ping_recvmsg function in net/ipv4/ping.c in the Linux kernel before 3.12.4 does not properly int... | E S | |
CVE-2013-6433 | The default configuration in the Red Hat openstack-neutron package before 2013.2.3-7 does not proper... | | |
CVE-2013-6434 | The remote-viewer in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.3, when using a nat... | | |
CVE-2013-6435 | Race condition in RPM 4.11.1 and earlier allows remote attackers to execute arbitrary code via a cra... | | |
CVE-2013-6436 | The lxcDomainGetMemoryParameters method in lxc/lxc_driver.c in libvirt 1.0.5 through 1.2.0 does not ... | | |
CVE-2013-6437 | The libvirt driver in OpenStack Compute (Nova) before 2013.2.2 and icehouse before icehouse-2 allows... | S | |
CVE-2013-6438 | The dav_xml_get_cdata function in main/util.c in the mod_dav module in the Apache HTTP Server before... | S | |
CVE-2013-6439 | Candlepin in Red Hat Subscription Asset Manager 1.0 through 1.3 uses a weak authentication scheme wh... | | |
CVE-2013-6440 | The (1) BasicParserPool, (2) StaticBasicParserPool, (3) XML Decrypter, and (4) SAML Decrypter in Shi... | | |
CVE-2013-6441 | The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions ... | E S | |
CVE-2013-6442 | The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6... | | |
CVE-2013-6443 | CloudForms 3.0 Management Engine before 5.2.1.6 allows remote attackers to bypass the Ruby on Rails ... | | |
CVE-2013-6444 | PyWBEM 0.7 and earlier does not verify that the server hostname matches a domain name in the subject... | | |
CVE-2013-6445 | Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, uses the DES-based crypt ... | | |
CVE-2013-6446 | The JobHistory Server in Cloudera CDH 4.x before 4.6.0 and 5.x before 5.0.0 Beta 2, when using MRv2/... | | |
CVE-2013-6447 | Multiple XML External Entity (XXE) vulnerabilities in the (1) ExecutionHandler, (2) PollHandler, and... | S | |
CVE-2013-6448 | The InterfaceGenerator handler in JBoss Seam Remoting in JBoss Seam 2 framework 2.3.1 and earlier, a... | S | |
CVE-2013-6449 | The ssl_get_algorithm2 function in ssl/s3_lib.c in OpenSSL before 1.0.2 obtains a certain version nu... | | |
CVE-2013-6450 | The DTLS retransmission implementation in OpenSSL 1.0.0 before 1.0.0l and 1.0.1 before 1.0.1f does n... | | |
CVE-2013-6451 | Cross-site scripting (XSS) vulnerability in MediaWiki 1.19.9 before 1.19.10, 1.2x before 1.21.4, and... | | |
CVE-2013-6452 | Cross-site scripting (XSS) vulnerability in MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x... | S | |
CVE-2013-6453 | MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 does not properly sanitize SV... | S | |
CVE-2013-6454 | Cross-site scripting (XSS) vulnerability in MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x... | S | |
CVE-2013-6455 | The CentralAuth extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1... | | |
CVE-2013-6456 | The LXC driver (lxc/lxc_driver.c) in libvirt 1.0.1 through 1.2.1 allows local users to (1) delete ar... | | |
CVE-2013-6457 | The libxlDomainGetNumaParameters function in the libxl driver (libxl/libxl_driver.c) in libvirt befo... | | |
CVE-2013-6458 | Multiple race conditions in the (1) virDomainBlockStats, (2) virDomainGetBlockInf, (3) qemuDomainBlo... | | |
CVE-2013-6459 | Cross-site scripting (XSS) vulnerability in the will_paginate gem before 3.0.5 for Ruby allows remot... | S | |
CVE-2013-6460 | Nokogiri gem 1.5.x has Denial of Service via infinite loop when parsing XML documents... | E S | |
CVE-2013-6461 | Nokogiri gem 1.5.x and 1.6.x has DoS while parsing XML entities by failing to apply limits... | E | |
CVE-2013-6462 | Stack-based buffer overflow in the bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont ... | E S | |
CVE-2013-6463 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-7266, CVE-2013-7267, CVE-20... | R | |
CVE-2013-6464 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2013-6465 | Multiple cross-site scripting (XSS) vulnerabilities in JBPM KIE Workbench 6.0.x allow remote authent... | S | |
CVE-2013-6466 | Openswan 2.6.39 and earlier allows remote attackers to cause a denial of service (NULL pointer deref... | | |
CVE-2013-6467 | Libreswan 3.7 and earlier allows remote attackers to cause a denial of service (NULL pointer derefer... | | |
CVE-2013-6468 | JBoss Drools, Red Hat JBoss BRMS before 6.0.1, and Red Hat JBoss BPM Suite before 6.0.1 allows remot... | | |
CVE-2013-6469 | JBoss Overlord Run Time Governance (RTGov) 1.0 for JBossAS allows remote authenticated users to exec... | | |
CVE-2013-6470 | The default configuration in the standalone controller quickstack manifest in openstack-foreman-inst... | | |
CVE-2013-6471 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2013-6472 | MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to ob... | S | |
CVE-2013-6473 | Multiple heap-based buffer overflows in the urftopdf filter in cups-filters 1.0.25 before 1.0.47 all... | S | |
CVE-2013-6474 | Heap-based buffer overflow in the pdftoopvp filter in CUPS and cups-filters before 1.0.47 allows rem... | S | |
CVE-2013-6475 | Multiple integer overflows in (1) OPVPOutputDev.cxx and (2) oprs/OPVPSplash.cxx in the pdftoopvp fil... | S | |
CVE-2013-6476 | The OPVPWrapper::loadDriver function in oprs/OPVPWrapper.cxx in the pdftoopvp filter in CUPS and cup... | S | |
CVE-2013-6477 | Multiple integer signedness errors in libpurple in Pidgin before 2.10.8 allow remote attackers to ca... | | |
CVE-2013-6478 | gtkimhtml.c in Pidgin before 2.10.8 does not properly interact with underlying library support for w... | | |
CVE-2013-6479 | util.c in libpurple in Pidgin before 2.10.8 does not properly allocate memory for HTTP responses tha... | | |
CVE-2013-6480 | Libcloud 0.12.3 through 0.13.2 does not set the scrub_data parameter for the destroy DigitalOcean AP... | | |
CVE-2013-6481 | libpurple/protocols/yahoo/libymsg.c in Pidgin before 2.10.8 allows remote attackers to cause a denia... | | |
CVE-2013-6482 | Pidgin before 2.10.8 allows remote MSN servers to cause a denial of service (NULL pointer dereferenc... | | |
CVE-2013-6483 | The XMPP protocol plugin in libpurple in Pidgin before 2.10.8 does not properly determine whether th... | | |
CVE-2013-6484 | The STUN protocol implementation in libpurple in Pidgin before 2.10.8 allows remote STUN servers to ... | | |
CVE-2013-6485 | Buffer overflow in util.c in libpurple in Pidgin before 2.10.8 allows remote HTTP servers to cause a... | | |
CVE-2013-6486 | gtkutils.c in Pidgin before 2.10.8 on Windows allows user-assisted remote attackers to execute arbit... | | |
CVE-2013-6487 | Integer overflow in libpurple/protocols/gg/lib/http.c in the Gadu-Gadu (gg) parser in Pidgin before ... | | |
CVE-2013-6488 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-0328. Reason: This candidate... | R | |
CVE-2013-6489 | Integer signedness error in the MXit functionality in Pidgin before 2.10.8 allows remote attackers t... | | |
CVE-2013-6490 | The SIMPLE protocol functionality in Pidgin before 2.10.8 allows remote attackers to have an unspeci... | | |
CVE-2013-6491 | The python-qpid client (common/rpc/impl_qpid.py) in OpenStack Oslo before 2013.2 does not enforce SS... | | |
CVE-2013-6492 | The Piranha Configuration Tool in Piranha 0.8.6 does not properly restrict access to webpages, which... | | |
CVE-2013-6493 | The LiveConnect implementation in plugin/icedteanp/IcedTeaNPPlugin.cc in IcedTea-Web before 1.4.2 al... | E S | |
CVE-2013-6494 | fedup 0.9.0 in Fedora 19, 20, and 21 uses a temporary directory with a static name for its download ... | S | |
CVE-2013-6495 | JBossWeb Bayeux has reflected XSS... | | |
CVE-2013-6496 | Red Hat Conga 0.12.2 allows remote attackers to obtain sensitive information via a crafted request t... | | |
CVE-2013-6497 | clamscan in ClamAV before 0.98.5, when using -a option, allows remote attackers to cause a denial of... | S | |
CVE-2013-6498 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a... | R | |
CVE-2013-6499 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was with... | R | |
CVE-2013-6500 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was with... | R | |
CVE-2013-6501 | The default soap.wsdl_cache_dir setting in (1) php.ini-production and (2) php.ini-development in PHP... | | |
CVE-2013-6502 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was with... | R | |
CVE-2013-6503 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was with... | R | |
CVE-2013-6504 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was with... | R | |
CVE-2013-6505 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was with... | R | |
CVE-2013-6506 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was with... | R | |
CVE-2013-6507 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6508 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6509 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6510 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6511 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6512 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6513 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6514 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6515 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6516 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6517 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6518 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6519 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6520 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6521 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6522 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6523 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6524 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6525 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6526 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6527 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6528 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6529 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6530 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6531 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6532 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6533 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6534 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6535 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6536 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6537 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6538 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6539 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6540 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6541 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6542 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6543 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6544 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6545 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6546 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6547 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6548 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6549 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6550 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6551 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6552 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6553 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6554 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6555 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6556 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6557 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6558 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6559 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6560 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6561 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6562 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6563 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6564 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6565 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6566 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6567 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6568 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6569 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6570 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6571 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6572 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6573 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6574 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6575 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6576 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6577 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6578 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6579 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6580 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6581 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6582 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6583 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6584 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6585 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6586 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6587 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6588 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6589 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6590 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6591 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6592 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6593 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6594 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6595 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6596 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6597 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6598 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6599 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6600 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6601 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6602 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6603 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6604 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6605 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6606 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6607 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6608 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6609 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6610 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6611 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6612 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6613 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6614 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6615 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6616 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6617 | The salt master in Salt (aka SaltStack) 0.11.0 through 0.17.0 does not properly drop group privilege... | | |
CVE-2013-6618 | jsdm/ajax/port.php in J-Web in Juniper Junos before 10.4R13, 11.4 before 11.4R7, 12.1 before 12.1R5,... | E | |
CVE-2013-6621 | Use-after-free vulnerability in Google Chrome before 31.0.1650.48 allows remote attackers to cause a... | E | |
CVE-2013-6622 | Use-after-free vulnerability in the HTMLMediaElement::didMoveToNewDocument function in core/html/HTM... | | |
CVE-2013-6623 | The SVG implementation in Blink, as used in Google Chrome before 31.0.1650.48, allows remote attacke... | | |
CVE-2013-6624 | Use-after-free vulnerability in Google Chrome before 31.0.1650.48 allows remote attackers to cause a... | | |
CVE-2013-6625 | Use-after-free vulnerability in core/dom/ContainerNode.cpp in Blink, as used in Google Chrome before... | | |
CVE-2013-6626 | The WebContentsImpl::AttachInterstitialPage function in content/browser/web_contents/web_contents_im... | | |
CVE-2013-6627 | net/http/http_stream_parser.cc in Google Chrome before 31.0.1650.48 does not properly process HTTP I... | E | |
CVE-2013-6628 | net/socket/ssl_client_socket_nss.cc in the TLS implementation in Google Chrome before 31.0.1650.48 d... | | |
CVE-2013-6629 | The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in... | S | |
CVE-2013-6630 | The get_dht function in jdmarker.c in libjpeg-turbo through 1.3.0, as used in Google Chrome before 3... | | |
CVE-2013-6631 | Use-after-free vulnerability in the Channel::SendRTCPPacket function in voice_engine/channel.cc in l... | S | |
CVE-2013-6632 | Integer overflow in Google Chrome before 31.0.1650.57 allows remote attackers to execute arbitrary c... | | |
CVE-2013-6634 | The OneClickSigninHelper::ShowInfoBarIfPossible function in browser/ui/sync/one_click_signin_helper.... | S | |
CVE-2013-6635 | Use-after-free vulnerability in the editing implementation in Blink, as used in Google Chrome before... | S | |
CVE-2013-6636 | The FrameLoader::notifyIfInitialDocumentAccessed function in core/loader/FrameLoader.cpp in Blink, a... | S | |
CVE-2013-6637 | Multiple unspecified vulnerabilities in Google Chrome before 31.0.1650.63 allow attackers to cause a... | | |
CVE-2013-6638 | Multiple buffer overflows in runtime.cc in Google V8 before 3.22.24.7, as used in Google Chrome befo... | S | |
CVE-2013-6639 | The DehoistArrayIndex function in hydrogen-dehoist.cc (aka hydrogen.cc) in Google V8 before 3.22.24.... | S | |
CVE-2013-6640 | The DehoistArrayIndex function in hydrogen-dehoist.cc (aka hydrogen.cc) in Google V8 before 3.22.24.... | S | |
CVE-2013-6641 | Use-after-free vulnerability in the FormAssociatedElement::formRemovedFromTree function in core/html... | E S | |
CVE-2013-6642 | Google Chrome through 32.0.1700.23 on Android allows remote attackers to spoof the address bar via u... | | |
CVE-2013-6643 | The OneClickSigninBubbleView::WindowClosing function in browser/ui/views/sync/one_click_signin_bubbl... | E S | |
CVE-2013-6644 | Multiple unspecified vulnerabilities in Google Chrome before 32.0.1700.76 on Windows and before 32.0... | E | |
CVE-2013-6645 | Use-after-free vulnerability in the OnWindowRemovingFromRootWindow function in content/browser/web_c... | E S | |
CVE-2013-6646 | Use-after-free vulnerability in the Web Workers implementation in Google Chrome before 32.0.1700.76 ... | E S | |
CVE-2013-6647 | A use-after-free in AnimationController::endAnimationUpdate in Google Chrome.... | | |
CVE-2013-6648 | SkRegion::setPath in Skia allows remote attackers to cause a denial of service (crash).... | S | |
CVE-2013-6649 | Use-after-free vulnerability in the RenderSVGImage::paint function in core/rendering/svg/RenderSVGIm... | E | |
CVE-2013-6650 | The StoreBuffer::ExemptPopularPages function in store-buffer.cc in Google V8 before 3.22.24.16, as u... | E | |
CVE-2013-6652 | Directory traversal vulnerability in sandbox/win/src/named_pipe_dispatcher.cc in Google Chrome befor... | S | |
CVE-2013-6653 | Use-after-free vulnerability in the web contents implementation in Google Chrome before 33.0.1750.11... | | |
CVE-2013-6654 | The SVGAnimateElement::calculateAnimatedValue function in core/svg/SVGAnimateElement.cpp in Blink, a... | | |
CVE-2013-6655 | Use-after-free vulnerability in Blink, as used in Google Chrome before 33.0.1750.117, allows remote ... | | |
CVE-2013-6656 | The XSSAuditor::init function in core/html/parser/XSSAuditor.cpp in the XSS auditor in Blink, as use... | S | |
CVE-2013-6657 | core/html/parser/XSSAuditor.cpp in the XSS auditor in Blink, as used in Google Chrome before 33.0.17... | S | |
CVE-2013-6658 | Multiple use-after-free vulnerabilities in the layout implementation in Blink, as used in Google Chr... | | |
CVE-2013-6659 | The SSLClientSocketNSS::Core::OwnAuthCertHandler function in net/socket/ssl_client_socket_nss.cc in ... | S | |
CVE-2013-6660 | The drag-and-drop implementation in Google Chrome before 33.0.1750.117 does not properly restrict th... | | |
CVE-2013-6661 | Multiple unspecified vulnerabilities in Google Chrome before 33.0.1750.117 allow attackers to bypass... | | |
CVE-2013-6662 | Google Chrome caches TLS sessions before certificate validation occurs.... | S | |
CVE-2013-6663 | Use-after-free vulnerability in the SVGImage::setContainerSize function in core/svg/graphics/SVGImag... | | |
CVE-2013-6664 | Use-after-free vulnerability in the FormAssociatedElement::formRemovedFromTree function in core/html... | | |
CVE-2013-6665 | Heap-based buffer overflow in the ResourceProvider::InitializeSoftware function in cc/resources/reso... | | |
CVE-2013-6666 | The PepperFlashRendererHost::OnNavigate function in renderer/pepper/pepper_flash_renderer_host.cc in... | | |
CVE-2013-6667 | Multiple unspecified vulnerabilities in Google Chrome before 33.0.1750.146 allow attackers to cause ... | | |
CVE-2013-6668 | Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before... | | |
CVE-2013-6671 | The nsGfxScrollFrameInner::IsLTR function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24... | E | |
CVE-2013-6672 | Mozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow user-assisted remote attackers ... | | |
CVE-2013-6673 | Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey be... | E | |
CVE-2013-6674 | Cross-site scripting (XSS) vulnerability in Mozilla Thunderbird 17.x through 17.0.8, Thunderbird ESR... | E | |
CVE-2013-6675 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6676 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6677 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6678 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6679 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6680 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6681 | Tube Map Live Underground for Android before 3.0.22 has an Information Disclosure Vulnerability... | | |
CVE-2013-6682 | The phone-proxy implementation in Cisco Adaptive Security Appliance (ASA) Software 9.0.3.6 and earli... | | |
CVE-2013-6683 | The IPv6 implementation in Cisco NX-OS does not properly handle neighbor-table adjacencies, which al... | | |
CVE-2013-6684 | The web framework on Cisco Wireless LAN Controller (WLC) devices does not properly validate configur... | | |
CVE-2013-6685 | The firmware on Cisco Unified IP phones 8961, 9951, and 9971 uses weak permissions for memory block ... | | |
CVE-2013-6686 | The SSL VPN implementation in Cisco IOS 15.3(1)T2 and earlier allows remote authenticated users to c... | | |
CVE-2013-6687 | The web portal in the Enterprise License Manager component in Cisco WebEx Meetings Server allows rem... | | |
CVE-2013-6688 | Directory traversal vulnerability in the license-upload interface in the Enterprise License Manager ... | | |
CVE-2013-6689 | Cisco Unified Communications Manager (Unified CM) 9.1(1) and earlier allows local users to bypass fi... | | |
CVE-2013-6690 | Multiple cross-site scripting (XSS) vulnerabilities in the web interface in the Assurance component ... | | |
CVE-2013-6691 | The WebVPN CIFS implementation in Cisco Adaptive Security Appliance (ASA) Software 9.0(.4.1) and ear... | | |
CVE-2013-6692 | Cisco IOS XE 3.8S(.2) and earlier does not properly use a DHCP pool during assignment of an IP addre... | | |
CVE-2013-6693 | The MLDP implementation in Cisco IOS 15.3(3)S and earlier on 7600 routers, when many VRFs are config... | | |
CVE-2013-6694 | The IPSec implementation in Cisco IOS allows remote attackers to cause a denial of service (MTU chan... | | |
CVE-2013-6695 | The RBAC implementation in Cisco Secure Access Control System (ACS) does not properly verify privile... | | |
CVE-2013-6696 | Cisco Adaptive Security Appliance (ASA) Software does not properly handle errors during the processi... | | |
CVE-2013-6698 | The web interface on Cisco Wireless LAN Controller (WLC) devices does not properly restrict use of I... | | |
CVE-2013-6699 | The Control and Provisioning of Wireless Access Points (CAPWAP) protocol implementation on Cisco Wir... | | |
CVE-2013-6700 | The SNMP module in Cisco IOS XR allows remote attackers to cause a denial of service (process reload... | | |
CVE-2013-6701 | The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with sof... | | |
CVE-2013-6702 | The management implementation on Cisco ONS 15454 controller cards with software 9.8 and earlier allo... | | |
CVE-2013-6703 | The TLS/SSLv3 module on Cisco ONS 15454 controller cards allows remote attackers to cause a denial o... | | |
CVE-2013-6704 | Cisco IOS XE does not properly manage memory for TFTP UDP flows, which allows remote attackers to ca... | | |
CVE-2013-6705 | The IP Device Tracking (IPDT) feature in Cisco IOS and IOS XE allows remote attackers to cause a den... | | |
CVE-2013-6706 | The Cisco Express Forwarding processing module in Cisco IOS XE allows remote attackers to cause a de... | | |
CVE-2013-6707 | Memory leak in the connection-manager implementation in Cisco Adaptive Security Appliance (ASA) Soft... | | |
CVE-2013-6708 | Cisco Cloud Portal 9.4 allows remote attackers to read files of unspecified types via a direct reque... | | |
CVE-2013-6709 | The registration component in Cisco WebEx Training Center provides the training-session URL before p... | | |
CVE-2013-6710 | Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Training Center allows remote attacke... | | |
CVE-2013-6711 | Cross-site scripting (XSS) vulnerability in the product-creation administrative page in Cisco WebEx ... | | |
CVE-2013-6712 | The scan function in ext/date/lib/parse_iso_intervals.c in PHP through 5.5.6 does not properly restr... | S | |
CVE-2013-6713 | The Data Protection for VMware component in IBM Tivoli Storage Manager for Virtual Environments (TSM... | | |
CVE-2013-6714 | The FlashCopy Manager for VMware component in IBM Tivoli Storage FlashCopy Manager 3.1 through 4.1.0... | | |
CVE-2013-6716 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6717 | The OLAP query engine in IBM DB2 and DB2 Connect 9.7 through FP9, 9.8 through FP5, 10.1 through FP3,... | | |
CVE-2013-6718 | The Advanced Management Module (AMM) with firmware 3.64B, 3.64C, and 3.64G for IBM BladeCenter syste... | | |
CVE-2013-6719 | delivery.php in the Passive Capture Application (PCA) web console in IBM Tealeaf CX 7.x, 8.x through... | E | |
CVE-2013-6720 | Directory traversal vulnerability in download.php in the Passive Capture Application (PCA) web conso... | E | |
CVE-2013-6721 | Cross-site scripting (XSS) vulnerability in IBM WebSphere Service Registry and Repository (WSRR) 7.5... | S | |
CVE-2013-6722 | Unrestricted file upload vulnerability in the Registration/Edit My Profile portlet in IBM WebSphere ... | | |
CVE-2013-6723 | IBM WebSphere Portal 8.0.0.1 before CF09 does not properly handle references in compute="always" Web... | S | |
CVE-2013-6724 | Unspecified vulnerability in the vsflex8l ActiveX control in IBM SPSS SamplePower 3.0.1 before FP1 I... | | |
CVE-2013-6725 | Cross-site scripting (XSS) vulnerability in the Administrative Console in IBM WebSphere Application ... | | |
CVE-2013-6726 | Multiple cross-site scripting (XSS) vulnerabilities in WebProcess.srv in IBM TRIRIGA Application Pla... | | |
CVE-2013-6727 | The Connect client in IBM Sametime 8.5.2 through 8.5.2.1 and 9.0 before HF1 does not properly restri... | | |
CVE-2013-6728 | The charting component in IBM WebSphere Dashboard Framework (WDF) 6.1.5 and 7.0.1 allows remote atta... | | |
CVE-2013-6729 | Cross-site scripting (XSS) vulnerability in IBM QuickFile 1.0.0.0 before iFix 4 and 1.1.0.1 before i... | | |
CVE-2013-6730 | IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.0.x before 7.0.... | | |
CVE-2013-6731 | IBM Netezza Performance Portal 2.x before 2.0.0.3 allows remote authenticated users to change arbitr... | S | |
CVE-2013-6732 | Cross-site scripting (XSS) vulnerability in the server in IBM Cognos Business Intelligence (BI) 8.4.... | | |
CVE-2013-6733 | Cross-site scripting (XSS) vulnerability in the Web Application in the Classic Meeting Server in IBM... | | |
CVE-2013-6734 | IBM WebSphere eXtreme Scale Client 7.1 through 8.6.0.4 does not properly isolate the cached data of ... | | |
CVE-2013-6735 | IBM WebSphere Portal 6.0.0.x through 6.0.0.1, 6.0.1.x through 6.0.1.7, 6.1.0.x through 6.1.0.6 CF27,... | E S | |
CVE-2013-6737 | IBM System Storage Storwize V7000 Unified 1.3.x and 1.4.x before 1.4.3.0 does not properly restrict ... | | |
CVE-2013-6738 | Cross-site scripting (XSS) vulnerability in IBM SmartCloud Analytics Log Analysis 1.1 and 1.2 before... | | |
CVE-2013-6739 | IBM SPSS Modeler before 16 on UNIX allows remote authenticated users to bypass intended access restr... | S | |
CVE-2013-6741 | IBM Maximo Asset Management 7.x before 7.1.1.7 LAFIX.20140319-0837 and 7.5.x before 7.5.0.5 IFIX006;... | | |
CVE-2013-6742 | The Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1 and 9.x through 9.0.0.1 do not have an off ... | | |
CVE-2013-6743 | Cross-site scripting (XSS) vulnerability in the Meeting Server in IBM Sametime 8.5.2 through 8.5.2.1... | | |
CVE-2013-6744 | The Stored Procedure infrastructure in IBM DB2 9.5, 9.7 before FP9a, 10.1 before FP3a, and 10.5 befo... | | |
CVE-2013-6745 | Cross-site scripting (XSS) vulnerability in the IMS server before Ifix 6 in IBM Security Access Mana... | | |
CVE-2013-6746 | Cross-site scripting (XSS) vulnerability in FileNet P8 Platform Documentation Installable Info Cente... | | |
CVE-2013-6747 | IBM GSKit 7.x before 7.0.4.48 and 8.x before 8.0.50.16, as used in IBM Security Directory Server (IS... | | |
CVE-2013-6748 | Buffer overflow in the ActiveX control in qp2.cab in IBM Lotus Quickr for Domino 8.5.1 before 8.5.1.... | | |
CVE-2013-6749 | Buffer overflow in the ActiveX control in qp2.cab in IBM Lotus Quickr for Domino 8.5.1 before 8.5.1.... | | |
CVE-2013-6751 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6752 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6753 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6754 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6755 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6756 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6757 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6758 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6759 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6760 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6761 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6762 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual w... | R | |
CVE-2013-6763 | The uio_mmap_physical function in drivers/uio/uio.c in the Linux kernel before 3.12 does not validat... | E S | |
CVE-2013-6764 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-6795. Reason: This candidat... | R | |
CVE-2013-6765 | OpenVAS Manager 3.0 before 3.0.7 and 4.0 before 4.0.4 allows remote attackers to bypass the OMP auth... | | |
CVE-2013-6766 | OpenVAS Administrator 1.2 before 1.2.2 and 1.3 before 1.3.2 allows remote attackers to bypass the OA... | | |
CVE-2013-6767 | Stack-based buffer overflow in pepoly.dll in Quick Heal AntiVirus Pro 7.0.0.1 allows local users to ... | E | |
CVE-2013-6768 | Untrusted search path vulnerability in the CyanogenMod/ClockWorkMod/Koush Superuser package 1.0.2.1 ... | E | |
CVE-2013-6769 | The CyanogenMod/ClockWorkMod/Koush Superuser package 1.0.2.1 for Android allows attackers to gain pr... | E | |
CVE-2013-6770 | The CyanogenMod/ClockWorkMod/Koush Superuser package 1.0.2.1 for Android 4.3 and 4.4 does not proper... | E | |
CVE-2013-6771 | Directory traversal vulnerability in the collect script in Splunk before 5.0.5 allows remote attacke... | | |
CVE-2013-6772 | Splunk before 5.0.4 lacks X-Frame-Options which can allow Clickjacking... | | |
CVE-2013-6773 | Splunk 5.0.3 has an Unquoted Service Path in Windows for Universal Forwarder which can allow an atta... | | |
CVE-2013-6774 | Untrusted search path vulnerability in the ChainsDD Superuser package 3.1.3 for Android 4.2.x and ea... | E | |
CVE-2013-6775 | The Chainfire SuperSU package before 1.69 for Android allows attackers to gain privileges via the (1... | E | |
CVE-2013-6780 | Cross-site scripting (XSS) vulnerability in uploader.swf in the Uploader component in Yahoo! YUI 2.5... | E | |
CVE-2013-6785 | Directory traversal vulnerability in url_redirect.cgi in Supermicro IPMI before SMT_X9_315 allows au... | | |
CVE-2013-6786 | Cross-site scripting (XSS) vulnerability in Allegro RomPager before 4.51, as used on the ZyXEL P660H... | E | |
CVE-2013-6787 | SQL injection vulnerability in the check_user_password function in main/auth/profile.php in Chamilo ... | E S | |
CVE-2013-6788 | The Bitrix e-Store module before 14.0.1 for Bitrix Site Manager uses sequential values for the BITRI... | | |
CVE-2013-6789 | security/MemberLoginForm.php in SilverStripe 3.0.3 supports credentials in a GET request, which allo... | E S | |
CVE-2013-6791 | Microsoft Enhanced Mitigation Experience Toolkit (EMET) before 4.0 uses predictable addresses for ho... | S | |
CVE-2013-6792 | Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability... | | |
CVE-2013-6793 | Multiple cross-site scripting (XSS) vulnerabilities in the Calendar module in Olat 7.8.0.1 (b2013082... | E | |
CVE-2013-6794 | Cross-site scripting (XSS) vulnerability in the Calendar module in Olat 7.8.0.1 (b20130821 N1) allow... | | |
CVE-2013-6795 | The Updater in Rackspace Openstack Windows Guest Agent for XenServer before 1.2.6.0 allows remote at... | E S | |
CVE-2013-6796 | The SMTP server in DeepOfix 3.3 and earlier allows remote attackers to bypass authentication via an ... | E | |
CVE-2013-6797 | Cross-site request forgery (CSRF) vulnerability in bluewrench-video-widget.php in the Blue Wrench Vi... | E S | |
CVE-2013-6798 | BlackBerry Link before 1.2.1.31 on Windows and before 1.1.1 build 39 on Mac OS X does not properly d... | | |
CVE-2013-6799 | Apple Mac OS X 10.9 allows local users to cause a denial of service (memory corruption or panic) by ... | E | |
CVE-2013-6800 | An unspecified third-party database module for the Key Distribution Center (KDC) in MIT Kerberos 5 (... | S | |
CVE-2013-6801 | Microsoft Word 2003 SP2 and SP3 on Windows XP SP3 allows remote attackers to cause a denial of servi... | E | |
CVE-2013-6802 | Google Chrome before 31.0.1650.57 allows remote attackers to bypass intended sandbox restrictions by... | S | |
CVE-2013-6804 | Cross-site scripting (XSS) vulnerability in the Search module before 1.1.1 for Jamroom allows remote... | E | |
CVE-2013-6805 | OpenText Exceed OnDemand (EoD) 8 uses weak encryption for passwords, which makes it easier for (1) r... | | |
CVE-2013-6806 | OpenText Exceed OnDemand (EoD) 8 allows man-in-the-middle attackers to disable bidirectional authent... | | |
CVE-2013-6807 | The client in OpenText Exceed OnDemand (EoD) 8 supports anonymous ciphers by default, which allows m... | | |
CVE-2013-6808 | Cross-site scripting (XSS) vulnerability in lib/NSSDropoff.php in ZendTo before 4.11-13 allows remot... | E | |
CVE-2013-6809 | Format string vulnerability in the client in Tftpd32 before 4.50 allows remote servers to cause a de... | E S | |
CVE-2013-6810 | The server in Brocade Network Advisor before 12.1.0, as used in EMC Connectrix Manager Converged Net... | E | |
CVE-2013-6811 | Multiple cross-site request forgery (CSRF) vulnerabilities in the D-Link DSL-6740U gateway (Rev. H1)... | | |
CVE-2013-6812 | The ONEDC app before 1.7 for iOS does not properly verify X.509 certificates from SSL servers, which... | | |
CVE-2013-6814 | The J2EE Engine in SAP NetWeaver 6.40, 7.02, and earlier allows remote attackers to redirect users t... | | |
CVE-2013-6815 | The SHSTI_UPLOAD_XML function in the Application Server for ABAP (AS ABAP) in SAP NetWeaver 7.31 and... | | |
CVE-2013-6816 | Multiple cross-site scripting (XSS) vulnerabilities in the (1) JavaDumpService and (2) DataCollector... | | |
CVE-2013-6817 | Heap-based buffer overflow in SAP Network Interface Router (SAProuter) 7.30 allows remote attackers ... | | |
CVE-2013-6818 | SAP NetWeaver Logviewer 6.30, when running on Windows, allows remote attackers to bypass intended ac... | | |
CVE-2013-6819 | Cross-site scripting (XSS) vulnerability in Performance Provider in SAP NetWeaver allows remote atta... | | |
CVE-2013-6820 | Unrestricted file upload vulnerability in the SAP NetWeaver Development Infrastructure (NWDI) allows... | | |
CVE-2013-6821 | Directory traversal vulnerability in the Exportability Check Service in SAP NetWeaver allows remote ... | | |
CVE-2013-6822 | GRMGApp in SAP NetWeaver allows remote attackers to have unspecified impact and attack vectors, rela... | | |
CVE-2013-6823 | GRMGApp in SAP NetWeaver allows remote attackers to bypass intended access restrictions via unspecif... | | |
CVE-2013-6824 | Zabbix before 1.8.19rc1, 2.0 before 2.0.10rc1, and 2.2 before 2.2.1rc1 allows remote Zabbix servers ... | E S | |
CVE-2013-6825 | (1) movescu.cc and (2) storescp.cc in dcmnet/apps/, (3) dcmnet/libsrc/scp.cc, (4) dcmwlm/libsrc/wlma... | E | |
CVE-2013-6826 | cgi-bin/module//sysmanager/admin/SYSAdminUserDialog in Fortinet FortiAnalyzer before 5.0.5 does not ... | E | |
CVE-2013-6827 | Absolute path traversal vulnerability in admin/viewmsg.php in PineApp Mail-SeCure allows remote atta... | | |
CVE-2013-6828 | admin/management.html in PineApp Mail-SeCure allows remote attackers to bypass authentication and pe... | | |
CVE-2013-6829 | admin/confnetworking.html in PineApp Mail-SeCure allows remote attackers to execute arbitrary comman... | | |
CVE-2013-6830 | admin/confnetworking.html in PineApp Mail-SeCure 3.70 and earlier on 5099SK and earlier platforms al... | E | |
CVE-2013-6831 | PineApp Mail-SeCure 3.70 and earlier on 5099SK and earlier platforms has a sudoers file that does no... | E | |
CVE-2013-6832 | The nand_ioctl function in sys/dev/nand/nand_geom.c in the nand driver in the kernel in FreeBSD 10 a... | E S | |
CVE-2013-6833 | The qls_eioctl function in sys/dev/qlxge/qls_ioctl.c in the kernel in FreeBSD 10 and earlier does no... | E S | |
CVE-2013-6834 | The ql_eioctl function in sys/dev/qlxgbe/ql_ioctl.c in the kernel in FreeBSD 10 and earlier does not... | E S | |
CVE-2013-6835 | TelephonyUI Framework in Apple iOS 7 before 7.1, when Safari is used, does not require user confirma... | | |
CVE-2013-6836 | Heap-based buffer overflow in the ms_escher_get_data function in plugins/excel/ms-escher.c in GNOME ... | E S | |
CVE-2013-6837 | Cross-site scripting (XSS) vulnerability in the setTimeout function in js/jquery.prettyPhoto.js in p... | E S | |
CVE-2013-6838 | An unspecified Enghouse Interactive Professional Services "addon product" in Enghouse Interactive IV... | | |
CVE-2013-6839 | SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to ... | E S | |
CVE-2013-6840 | Siemens COMOS before 9.2.0.8.1, 10.0 before 10.0.3.1.40, and 10.1 before 10.1.0.0.2 allows local use... | | |
CVE-2013-6852 | Cross-site request forgery (CSRF) vulnerability in html/json.html on HP 2620 switches allows remote ... | E | |
CVE-2013-6853 | Cross-site scripting (XSS) vulnerability in clickstream.js in Y! Toolbar plugin for FireFox 3.1.0.20... | | |
CVE-2013-6858 | Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2013.2 and earl... | S | |
CVE-2013-6859 | SAP Sybase Adaptive Server Enterprise (ASE) before 15.0.3 ESD#4.3. 15.5 before 15.5 ESD#5.3, and 15.... | | |
CVE-2013-6860 | Unspecified vulnerability in SAP Sybase Adaptive Server Enterprise (ASE) before 15.0.3 ESD#4.3, 15.5... | | |
CVE-2013-6861 | Unspecified vulnerability in SAP Sybase Adaptive Server Enterprise (ASE) 15.0.3 before 15.0.3 ESD#4.... | | |
CVE-2013-6862 | Unspecified vulnerability in SAP Sybase Adaptive Server Enterprise (ASE) before 15.0.3 ESD#4.3, 15.5... | | |
CVE-2013-6863 | SAP Sybase Adaptive Server Enterprise (ASE) 15.0.3 before 15.0.3 ESD#4.3, 15.5 before 15.5 ESD#5.3, ... | | |
CVE-2013-6864 | Directory traversal vulnerability in SAP Sybase Adaptive Server Enterprise (ASE) 15.0.3 before 15.0.... | | |
CVE-2013-6865 | SAP Sybase Adaptive Server Enterprise (ASE) 15.0.3 before 15.0.3 ESD#4.3, 15.5 before 15.5 ESD#5.3, ... | | |
CVE-2013-6866 | SAP Sybase Adaptive Server Enterprise (ASE) before 15.0.3 ESD#4.3, 15.5 before 15.5 ESD#5.3, and 15.... | | |
CVE-2013-6867 | Unspecified vulnerability in SAP Sybase Adaptive Server Enterprise (ASE) 15.7 before 15.7 SP50 or 15... | | |
CVE-2013-6868 | SAP Sybase Adaptive Server Enterprise (ASE) 15.0.3 before 15.0.3 ESD#4.3, 15.5 before 15.5 ESD#5.3, ... | | |
CVE-2013-6869 | SQL injection vulnerability in the SRTT_GET_COUNT_BEFORE_KEY_RFC function in SAP NetWeaver 7.30 allo... | | |
CVE-2013-6870 | Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk before 5.0.6 allows remote attacker... | | |
CVE-2013-6872 | SQL injection vulnerability in managetimetracker.php in Collabtive before 1.2 allows remote authenti... | E S | |
CVE-2013-6873 | SQL injection vulnerability in Testa Online Test Management System (OTMS) 2.0.0.2 allows remote atta... | E | |
CVE-2013-6874 | Stack-based buffer overflow in Vortex Light Alloy before 4.7.4 allows remote attackers to execute ar... | E | |
CVE-2013-6875 | SQL injection vulnerability in functions/prepend_adm.php in Nagios Core Config Manager in Nagios XI ... | E | |
CVE-2013-6876 | The (1) pty_init_terminal and (2) pipe_init_terminal functions in main.c in s3dvt 0.2.2 and earlier ... | | |
CVE-2013-6877 | Heap-based buffer overflow in RealNetworks RealPlayer before 17.0.4.61 on Windows, and Mac RealPlaye... | E | |
CVE-2013-6878 | Cross-site scripting (XSS) vulnerability in the Mijosoft MijoSearch component 2.0.4 and earlier for ... | E | |
CVE-2013-6879 | The Mijosoft MijoSearch component 2.0.1 and earlier for Joomla! allows remote attackers to obtain se... | E | |
CVE-2013-6880 | Open redirect in proxy.php in FlashCanvas before 1.6 allows remote attackers to redirect users to ar... | E | |
CVE-2013-6881 | CRU Ditto Forensic FieldStation with firmware before 2013Oct15a allows remote attackers to execute a... | E | |
CVE-2013-6882 | Multiple cross-site scripting (XSS) vulnerabilities in CRU Ditto Forensic FieldStation with firmware... | E | |
CVE-2013-6883 | Cross-site request forgery (CSRF) vulnerability in CRU Ditto Forensic FieldStation with firmware bef... | E | |
CVE-2013-6884 | The write-blocker in CRU Ditto Forensic FieldStation with firmware before 2013Oct15a has a default "... | E | |
CVE-2013-6885 | The microcode on AMD 16h 00h through 0Fh processors does not properly handle the interaction between... | | |
CVE-2013-6886 | RealVNC VNC 5.0.6 on Mac OS X, Linux, and UNIX allows local users to gain privileges via a crafted a... | | |
CVE-2013-6887 | OpenJPEG 1.5.1 allows remote attackers to cause a denial of service via unspecified vectors that tri... | | |
CVE-2013-6888 | Uscan in devscripts before 2.13.9 allows remote attackers to execute arbitrary code via a crafted ta... | | |
CVE-2013-6889 | GNU Rush 1.7 does not properly drop privileges, which allows local users to read arbitrary files via... | E | |
CVE-2013-6890 | denyhosts 2.6 uses an incorrect regular expression when analyzing authentication logs, which allows ... | | |
CVE-2013-6891 | lppasswd in CUPS before 1.7.1, when running with setuid privileges, allows local users to read porti... | E S | |
CVE-2013-6892 | WebSVN 2.3.3 allows remote authenticated users to read arbitrary files via a symlink attack in a com... | | |
CVE-2013-6900 | Cross-site scripting (XSS) vulnerability in the system-administration component in Cybozu Garoon bef... | | |
CVE-2013-6901 | Cross-site scripting (XSS) vulnerability in the Space function in Cybozu Garoon before 3.7.0, when F... | | |
CVE-2013-6902 | Cross-site scripting (XSS) vulnerability in the Space function in Cybozu Garoon before 3.7.0 allows ... | | |
CVE-2013-6903 | Cross-site scripting (XSS) vulnerability in a schedule component in Cybozu Garoon before 3.7.0, when... | | |
CVE-2013-6904 | Cross-site scripting (XSS) vulnerability in a note component in Cybozu Garoon before 3.7.0, when Int... | | |
CVE-2013-6905 | Cross-site scripting (XSS) vulnerability in a phone component in Cybozu Garoon before 3.7.0, when In... | | |
CVE-2013-6906 | Cross-site scripting (XSS) vulnerability in a mail component in Cybozu Garoon before 3.7.0, when Int... | | |
CVE-2013-6907 | Cross-site scripting (XSS) vulnerability in a mail component in Cybozu Garoon 2.x and 3.x before 3.7... | | |
CVE-2013-6908 | Cross-site scripting (XSS) vulnerability in a mail component in Cybozu Garoon 3.x before 3.7.0 allow... | | |
CVE-2013-6909 | Cross-site scripting (XSS) vulnerability in a report component in Cybozu Garoon before 3.7.0 allows ... | | |
CVE-2013-6910 | Cross-site scripting (XSS) vulnerability in Ajax components in Cybozu Garoon before 3.7.0 allows rem... | | |
CVE-2013-6911 | Cross-site scripting (XSS) vulnerability in the bulletin-board component in Cybozu Garoon before 3.7... | S | |
CVE-2013-6912 | Cross-site scripting (XSS) vulnerability in a calendar component in Cybozu Garoon before 3.7.2, when... | | |
CVE-2013-6913 | Cross-site scripting (XSS) vulnerability in a search component in Cybozu Garoon before 3.7.2, when I... | | |
CVE-2013-6914 | Cross-site scripting (XSS) vulnerability in a calendar component in Cybozu Garoon before 3.7.2 allow... | | |
CVE-2013-6915 | Cross-site scripting (XSS) vulnerability in the system-administration component in Cybozu Garoon bef... | | |
CVE-2013-6916 | Cross-site scripting (XSS) vulnerability in the Yahoo! User Interface Library in Cybozu Garoon befor... | | |
CVE-2013-6918 | The web interface on the Satechi travel router 1.5, when Wi-Fi is used for WAN access, exposes the c... | | |
CVE-2013-6919 | The default configuration of phpThumb before 1.7.12 has a false value for the disable_debug option, ... | E | |
CVE-2013-6920 | Siemens SINAMICS S/G controllers with firmware before 4.6.11 do not require authentication for FTP a... | | |
CVE-2013-6922 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Seagate BlackArmor NAS 220 devices... | E | |
CVE-2013-6923 | Multiple cross-site scripting (XSS) vulnerabilities in Seagate BlackArmor NAS 220 devices with firmw... | E | |
CVE-2013-6924 | Seagate BlackArmor NAS devices with firmware sg2000-2000.1331 allow remote attackers to execute arbi... | E | |
CVE-2013-6925 | The integrated HTTPS server in Siemens RuggedCom ROS before 3.12.2 allows remote attackers to hijack... | | |
CVE-2013-6926 | The integrated HTTPS server in Siemens RuggedCom ROS before 3.12.2 allows remote authenticated users... | | |
CVE-2013-6927 | Internet TRiLOGI Server (unknown versions) could allow a local user to bypass security and create a ... | | |
CVE-2013-6929 | SQL injection vulnerability in Cybozu Garoon 3.7 SP2 and earlier allows remote authenticated users t... | | |
CVE-2013-6930 | SQL injection vulnerability in the page-navigation implementation in Cybozu Garoon 2.0.0 through 2.0... | | |
CVE-2013-6931 | SQL injection vulnerability in the API in Cybozu Garoon 3.7.x before 3.7.3 allows remote authenticat... | | |
CVE-2013-6932 | Buffer overflow in IrfanView before 4.37, when a multibyte-character directory name is used, allows ... | | |
CVE-2013-6933 | The parseRTSPRequestString function in Live Networks Live555 Streaming Media 2011.08.13 through 2013... | | |
CVE-2013-6934 | The parseRTSPRequestString function in Live Networks Live555 Streaming Media 2013.11.26, as used in ... | E | |
CVE-2013-6935 | Buffer overflow in VideoCharge Software Watermark Master 2.2.23 allows remote attackers to execute a... | E | |
CVE-2013-6936 | Multiple SQL injection vulnerabilities in ajaxfs.php in the Ajax forum stat (Ajaxfs) Plugin 2.0 for ... | E | |
CVE-2013-6937 | Buffer overflow in VideoCharge Software Watermark Master 2.2.23 allows remote attackers to execute a... | E | |
CVE-2013-6938 | Unspecified vulnerability in the Service VM in Citrix NetScaler SDX 9.3 before 9.3-64.4 and 10.0 bef... | | |
CVE-2013-6939 | Unspecified vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3... | | |
CVE-2013-6940 | Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5,... | | |
CVE-2013-6941 | Unspecified vulnerability in Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3... | | |
CVE-2013-6942 | Cross-site request forgery (CSRF) vulnerability in Citrix NetScaler Application Delivery Controller ... | | |
CVE-2013-6943 | Citrix NetScaler Application Delivery Controller (ADC) 9.3.x before 9.3-64.4, 10.0 before 10.0-77.5,... | | |
CVE-2013-6944 | Cross-site scripting (XSS) vulnerability in the user interface in the AAA TM vServer in Citrix NetSc... | | |
CVE-2013-6945 | The M2M Broker in OSEHRA VistA, as distributed before September 30, 2013, allows attackers to bypass... | S | |
CVE-2013-6948 | The peerAddresses API in the Belkin WeMo Home Automation firmware before 3949 allows remote attacker... | | |
CVE-2013-6949 | The Belkin WeMo Home Automation firmware before 3949 does not properly use the STUN and TURN protoco... | | |
CVE-2013-6950 | The Belkin WeMo Home Automation firmware before 3949 does not use SSL for the distribution feed, whi... | | |
CVE-2013-6951 | The Belkin WeMo Home Automation firmware before 3949 does not maintain a set of Certification Author... | | |
CVE-2013-6952 | The Belkin WeMo Home Automation firmware before 3949 has a hardcoded GPG key, which makes it easier ... | | |
CVE-2013-6953 | BlogEngine.NET 2.8.0.0 and earlier allows remote attackers to read usernames and password hashes via... | | |
CVE-2013-6954 | The png_do_expand_palette function in libpng before 1.6.8 allows remote attackers to cause a denial ... | E S | |
CVE-2013-6955 | webman/imageSelector.cgi in Synology DiskStation Manager (DSM) 4.0 before 4.0-2259, 4.2 before 4.2-3... | | |
CVE-2013-6956 | Cross-site scripting (XSS) vulnerability in the Secure Access Service Web rewriting feature in Junip... | | |
CVE-2013-6957 | Cross-site scripting (XSS) vulnerability in the web administrative component in Juniper IDP allows r... | | |
CVE-2013-6958 | Juniper NetScreen Firewall running ScreenOS 5.4, 6.2, or 6.3, when the Ping of Death screen is disab... | | |
CVE-2013-6959 | Open redirect vulnerability in Cisco WebEx Sales Center allows remote attackers to redirect users to... | | |
CVE-2013-6960 | Multiple cross-site scripting (XSS) vulnerabilities in Cisco WebEx Meeting Center allow remote attac... | | |
CVE-2013-6961 | Cross-site scripting (XSS) vulnerability in the Collaboration Partner Access Console (CPAC) in Cisco... | | |
CVE-2013-6962 | Cross-site scripting (XSS) vulnerability in the mobile-browser subsystem in Cisco WebEx Meeting Cent... | | |
CVE-2013-6963 | Cross-site scripting (XSS) vulnerability in the registration component in Cisco WebEx Training Cente... | | |
CVE-2013-6964 | Cisco WebEx Meeting Center allows remote authenticated users to bypass access control and inject con... | | |
CVE-2013-6965 | The registration component in Cisco WebEx Training Center provides the training-session URL before e... | | |
CVE-2013-6966 | Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users... | | |
CVE-2013-6967 | Open redirect vulnerability in the mobile-browser subsystem in Cisco WebEx Sales Center allows remot... | | |
CVE-2013-6968 | Cisco WebEx Training Center provides different error messages for registration attempts depending on... | | |
CVE-2013-6969 | The training-registration page in Cisco WebEx Training Center allows remote attackers to modify unsp... | | |
CVE-2013-6970 | Cisco WebEx Meeting Center allows remote attackers to obtain sensitive information by reading verbos... | | |
CVE-2013-6971 | Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users... | | |
CVE-2013-6972 | Cisco WebEx Training Center allows remote attackers to discover session numbers, and bypass host app... | | |
CVE-2013-6973 | Cisco WebEx Training Center allows remote attackers to discover registration IDs via a crafted URL, ... | | |
CVE-2013-6974 | Cross-site scripting (XSS) vulnerability in the web interface in Cisco Secure Access Control System ... | | |
CVE-2013-6975 | Directory traversal vulnerability in the command-line interface in Cisco NX-OS 6.2(2a) and earlier a... | | |
CVE-2013-6976 | Cross-site request forgery (CSRF) vulnerability in goform/Quick_setup on Cisco EPC3925 devices allow... | E | |
CVE-2013-6978 | The disaster recovery system (DRS) component in Cisco Unified Communications Manager (UCM) 9.1(1) an... | | |
CVE-2013-6979 | The VTY authentication implementation in Cisco IOS XE 03.02.xxSE and 03.03.xxSE incorrectly relies o... | | |
CVE-2013-6981 | Cisco IOS XE 3.7S(.1) and earlier allows remote attackers to cause a denial of service (Packet Proce... | | |
CVE-2013-6982 | The BGP implementation in Cisco NX-OS 6.2(2a) and earlier does not properly handle the interaction o... | | |
CVE-2013-6983 | SQL injection vulnerability in the web interface in Cisco Unified Presence Server allows remote auth... | | |
CVE-2013-6985 | SQL injection vulnerability in m_worklog/log_searchday.jsp in Enorth Webpublisher CMS, possibly 5.0 ... | E | |
CVE-2013-6986 | The ZippyYum Subway CA Kiosk app 3.4 for iOS uses cleartext storage in SQLite cache databases, which... | | |
CVE-2013-6987 | Multiple directory traversal vulnerabilities in the FileBrowser components in Synology DiskStation M... | E | |
CVE-2013-6990 | FortiGuard FortiAuthenticator before 3.0 allows remote administrators to gain privileges via the com... | | |
CVE-2013-6991 | Cross-site scripting (XSS) vulnerability in the WP-Cron Dashboard plugin 1.1.5 and earlier for WordP... | E | |
CVE-2013-6992 | Cross-site request forgery (CSRF) vulnerability in askapache-firefox-adsense.php in the AskApache Fi... | E | |
CVE-2013-6993 | Cross-site scripting (XSS) vulnerability in the Ad-minister plugin 0.6 and earlier for WordPress all... | E | |
CVE-2013-6994 | OpenText Exceed OnDemand (EoD) 8 transmits the session ID in cleartext, which allows remote attacker... | | |
CVE-2013-6995 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was wi... | R | |
CVE-2013-6997 | Multiple cross-site scripting (XSS) vulnerabilities in Open-Xchange (OX) AppSuite 7.4.0 and earlier ... | | |
CVE-2013-6998 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-6870. Reason: This candida... | R | |
CVE-2013-6999 | The IsHandleEntrySecure function in win32k.sys in the kernel-mode drivers in Microsoft Windows Serve... | E |