Latest CVE Feed
-
6.1
MEDIUMCVE-2013-0195
Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This is a different vulnerability than CVE-2013-0193 and CVE-2013-0194.... Read more
Affected Products : matomo- EPSS Score: %0.47
- Published: Nov. 20, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-0194
Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This is a different vulnerability than CVE-2013-0193 and CVE-2013-0195.... Read more
Affected Products : matomo- EPSS Score: %0.47
- Published: Nov. 20, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-0193
Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This is a different vulnerability than CVE-2013-0194 and CVE-2013-0195.... Read more
Affected Products : matomo- EPSS Score: %0.47
- Published: Nov. 20, 2019
- Modified: Nov. 21, 2024
-
4.9
MEDIUMCVE-2013-0192
File Disclosure in SMF (SimpleMachines Forum) <= 2.0.3: Forum admin can read files such as the database config.... Read more
Affected Products : simple_machines_forum- EPSS Score: %5.92
- Published: Feb. 07, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-0186
Multiple cross-site scripting (XSS) vulnerabilities in ManageIQ EVM allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.... Read more
- EPSS Score: %0.40
- Published: Nov. 01, 2019
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2013-0185
Cross-site request forgery (CSRF) vulnerability in ManageIQ Enterprise Virtualization Manager (EVM) allows remote attackers to hijack the authentication of users for requests that have unspecified impact via unknown vectors.... Read more
Affected Products : manageiq_enterprise_virtualization_manager- EPSS Score: %0.20
- Published: May. 01, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2013-0180
Insecure temporary file vulnerability in Redis 2.6 related to /tmp/redis.ds.... Read more
Affected Products : redis- EPSS Score: %0.04
- Published: Nov. 01, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2013-0178
Insecure temporary file vulnerability in Redis before 2.6 related to /tmp/redis-%p.vm.... Read more
Affected Products : redis- EPSS Score: %0.14
- Published: Nov. 01, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2013-0165
cartridges/openshift-origin-cartridge-mongodb-2.2/info/bin/dump.sh in OpenShift does not properly create files in /tmp.... Read more
Affected Products : openshift- EPSS Score: %0.34
- Published: Nov. 01, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2013-0163
OpenShift haproxy cartridge: predictable /tmp in set-proxy connection hook which could facilitate DoS... Read more
- EPSS Score: %0.12
- Published: Dec. 05, 2019
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2013-0161
Havalite CMS 1.1.7 has a stored XSS vulnerability... Read more
Affected Products : havalite- EPSS Score: %0.30
- Published: Jan. 29, 2020
- Modified: Nov. 21, 2024
-
7.1
HIGHCVE-2013-0159
The fedora-business-cards package before 1-0.1.beta1.fc17 on Fedora 17 and before 1-0.1.beta1.fc18 on Fedora 18 allows local users to cause a denial of service or write to arbitrary files via a symlink attack on /tmp/fedora-business-cards-buffer.svg.... Read more
Affected Products : fedora- EPSS Score: %0.04
- Published: May. 01, 2018
- Modified: Nov. 21, 2024
-
6.8
MEDIUMCVE-2012-6721
Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) Forum, (2) Event, and (3) Classifieds plugins in SocialEngine before 4.2.4.... Read more
Affected Products : socialengine- EPSS Score: %0.11
- Published: Feb. 11, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-6720
Multiple cross-site scripting (XSS) vulnerabilities in SocialEngine before 4.2.4 allow remote attackers to inject arbitrary web script or HTML via the (1) title parameter to music/create, (2) location parameter to events/create, or (3) search parameter to... Read more
Affected Products : socialengine- EPSS Score: %0.22
- Published: Feb. 11, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2012-6719
The sharebar plugin before 1.2.2 for WordPress has SQL injection.... Read more
Affected Products : sharebar- EPSS Score: %0.55
- Published: Aug. 28, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-6718
The sharebar plugin before 1.2.2 for WordPress has XSS, a different issue than CVE-2013-3491.... Read more
Affected Products : sharebar- EPSS Score: %0.19
- Published: Aug. 28, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-6717
The redirection plugin before 2.2.12 for WordPress has XSS, a different issue than CVE-2011-4562.... Read more
Affected Products : redirection- EPSS Score: %0.19
- Published: Aug. 28, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-6716
The events-manager plugin before 5.1.7 for WordPress has XSS via JSON call links.... Read more
- EPSS Score: %0.19
- Published: Aug. 22, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-6715
The formbuilder plugin before 0.9.1 for WordPress has XSS via a Referer header.... Read more
Affected Products : formbuilder- EPSS Score: %0.19
- Published: Aug. 21, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-6714
The count-per-day plugin before 3.2.3 for WordPress has XSS via search words.... Read more
Affected Products : count_per_day- EPSS Score: %0.19
- Published: Aug. 21, 2019
- Modified: Nov. 21, 2024