Latest CVE Feed
-
10.0
HIGHCVE-2013-3091
An Authentication Bypass vulnerability in Belkin N300 (F7D7301v1) router allows remote attackers to bypass authentication using "Javascript debugging."... Read more
- EPSS Score: %5.03
- Published: Feb. 07, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2013-3088
Belkin N900 router (F9K1104v1) contains an Authentication Bypass using "Javascript debugging".... Read more
- EPSS Score: %0.18
- Published: Dec. 26, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2013-3085
An authentication bypass exists in the web management interface in Belkin F5D8236-4 v2.... Read more
- EPSS Score: %0.14
- Published: Dec. 26, 2019
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2013-3074
NetGear WNDR4700 Media Server devices with firmware 1.0.0.34 allow remote attackers to cause a denial of service (device crash).... Read more
- EPSS Score: %0.52
- Published: Jan. 28, 2020
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2013-3073
A Symlink Traversal vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34.... Read more
- EPSS Score: %6.69
- Published: Nov. 14, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2013-3072
An Authentication Bypass vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34 in http://<router_ip>/apply.cgi?/hdd_usr_setup.htm that when visited by any user, authenticated or not, causes the router to no longer require a password to access... Read more
- EPSS Score: %1.58
- Published: Nov. 14, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2013-3071
NETGEAR Centria WNDR4700 devices with firmware 1.0.0.34 allow authentication bypass.... Read more
- EPSS Score: %1.24
- Published: Jan. 28, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2013-3070
An Information Disclosure vulnerability exists in Netgear WNDR4700 running firmware 1.0.0.34 in the management web interface, which discloses the PSK of the wireless LAN.... Read more
- EPSS Score: %2.03
- Published: Nov. 14, 2019
- Modified: Nov. 21, 2024
-
5.4
MEDIUM- EPSS Score: %0.26
- Published: Feb. 07, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2013-3024
IBM WebSphere Application Server (WAS) 8.5 through 8.5.0.2 on UNIX allows local users to gain privileges by leveraging improper process initialization. IBM X-Force ID: 84362.... Read more
Affected Products : websphere_application_server- EPSS Score: %0.04
- Published: May. 24, 2018
- Modified: Nov. 21, 2024
-
8.1
HIGHCVE-2013-3023
IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.1.2 and 7.2.0 through 7.2.1.4 might allow remote attackers to obtain sensitive information about Tomcat credentials by sniffing the network for a session in which HTTP is used. IBM X-Force ID: ... Read more
Affected Products : tivoli_application_dependency_discovery_manager- EPSS Score: %0.29
- Published: May. 24, 2018
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2013-3018
The AXIS webapp in deploy-tomcat/axis in IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.1.2 and 7.2.0 through 7.2.1.4 allows remote attackers to obtain sensitive configuration information via a direct request, as demonstrated by happyaxis.j... Read more
Affected Products : tivoli_application_dependency_discovery_manager- EPSS Score: %0.14
- Published: May. 24, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2013-3017
IBM Tivoli Application Dependency Discovery Manager (TADDM) before 7.2.1.5 and 7.2.x before 7.2.2 make it easier for remote attackers to defeat cryptographic protection mechanisms by leveraging support for weak SSL ciphers. IBM X-Force ID: 84353.... Read more
Affected Products : tivoli_application_dependency_discovery_manager- EPSS Score: %0.25
- Published: Jul. 09, 2018
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2013-3001
Directory traversal vulnerability in IBM InfoSphere Data Replication Dashboard 9.7 and 10.1 allows remote attackers to read arbitrary files via unspecified vectors. IBM X-Force ID: 84127.... Read more
Affected Products : infosphere_data_replication_dashboard- EPSS Score: %0.16
- Published: Jul. 09, 2018
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2013-3000
SQL injection vulnerability in IBM InfoSphere Data Replication Dashboard 9.7 and 10.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. IBM X-Force ID: 84116.... Read more
Affected Products : infosphere_data_replication_dashboard- EPSS Score: %0.58
- Published: Jul. 09, 2018
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-2999
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Data Replication Dashboard 9.7 and 10.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. IBM X-Force ID: 84115.... Read more
Affected Products : infosphere_data_replication_dashboard- EPSS Score: %0.21
- Published: Jul. 09, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2013-2972
IBM WebSphere Cast Iron 6.3 allows remote attackers to bypass intended access restrictions via unspecified vectors. IBM X-Force ID: 83868.... Read more
Affected Products : websphere_cast_iron_cloud_integration- EPSS Score: %0.43
- Published: Jul. 11, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2013-2951
IBM WebSphere Portal 7.0.0.x and 8.0.0.x write passwords to a trace file when tracing is enabled for the Selfcare Portlet (Profile Management), which allows local users to obtain sensitive information by reading the file. IBM X-Force ID: 83621.... Read more
Affected Products : websphere_portal- EPSS Score: %0.05
- Published: Jul. 11, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2013-2830
Use-after-free vulnerability in SumatraPDF Reader 2.x before 2.2.1 allows remote attackers to execute arbitrary code via a crafted PDF file.... Read more
Affected Products : sumatrapdf- EPSS Score: %1.00
- Published: Feb. 08, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2013-2807
Rockwell Automation RSLinx Enterprise Software (LogReceiver.exe) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 does not handle input correctly and results in a logic error if it calculates an incorrect value for the “Tot... Read more
Affected Products : rslinx_enterprise- EPSS Score: %0.03
- Published: Mar. 26, 2019
- Modified: Nov. 21, 2024