Latest CVE Feed
-
9.8
CRITICALCVE-2013-7098
OpenConnect VPN client with GnuTLS before 5.02 contains a heap overflow if MTU is increased on reconnection.... Read more
Affected Products : openconnect- Published: Feb. 13, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGH- Published: Nov. 15, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICAL- Published: Nov. 15, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICAL- Published: Nov. 15, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-7071
Cross-site scripting (XSS) vulnerability in the handle_request function in lib/HTTPServer.pm in Monitorix before 3.4.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.... Read more
Affected Products : monitorix- Published: Dec. 31, 2019
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2013-7070
The handle_request function in lib/HTTPServer.pm in Monitorix before 3.3.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the URI.... Read more
Affected Products : monitorix- Published: Dec. 31, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-7062
Multiple cross-site scripting (XSS) vulnerabilities in Zope, as used in Plone 3.3.x through 3.3.6, 4.0.x through 4.0.9, 4.1.x through 4.1.6, 4.2.x through 4.2.7, and 4.3 through 4.3.2, allow remote attackers to inject arbitrary web script or HTML via unsp... Read more
Affected Products : plone- Published: Jan. 02, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICAL- Published: Feb. 04, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUM- Published: Feb. 04, 2020
- Modified: Nov. 21, 2024
-
8.8
HIGH- Published: Feb. 04, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2013-7052
D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script... Read more
- Published: Feb. 04, 2020
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2013-7051
D-Link DIR-100 4.03B07: cli.cgi security bypass due to failure to check authentication parameters... Read more
- Published: Feb. 04, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2013-6927
Internet TRiLOGI Server (unknown versions) could allow a local user to bypass security and create a local user account.... Read more
Affected Products : trilogi_server- Published: Feb. 13, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-6880
Open redirect in proxy.php in FlashCanvas before 1.6 allows remote attackers to redirect users to arbitrary web sites and conduct cross-site scripting (XSS) attacks via the HTTP Referer header.... Read more
Affected Products : flashcanvas- Published: Nov. 22, 2019
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2013-6879
The Mijosoft MijoSearch component 2.0.1 and earlier for Joomla! allows remote attackers to obtain sensitive information via a request to component/mijosearch/search, which reveals the installation path in an error message.... Read more
Affected Products : mijosearch- Published: Nov. 22, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-6878
Cross-site scripting (XSS) vulnerability in the Mijosoft MijoSearch component 2.0.4 and earlier for Joomla! allows remote attackers to inject arbitrary web script or HTML via the query parameter to component/mijosearch/search.... Read more
Affected Products : mijosearch- Published: Nov. 22, 2019
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2013-6876
The (1) pty_init_terminal and (2) pipe_init_terminal functions in main.c in s3dvt 0.2.2 and earlier allows local users to gain privileges by leveraging setuid permissions and usage of bash 4.3 and earlier. NOTE: this vulnerability was fixed with commit a... Read more
Affected Products : s3dvt- Published: Apr. 06, 2018
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2013-6811
Multiple cross-site request forgery (CSRF) vulnerabilities in the D-Link DSL-6740U gateway (Rev. H1) allow remote attackers to hijack the authentication of administrators for requests that change administrator credentials or enable remote management servi... Read more
- Published: Nov. 22, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2013-6792
Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability... Read more
Affected Products : android- Published: Jan. 23, 2020
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2013-6785
Directory traversal vulnerability in url_redirect.cgi in Supermicro IPMI before SMT_X9_315 allows authenticated attackers to read arbitrary files via the url_name parameter.... Read more
Affected Products : intelligent_platform_management_interface- Published: Jan. 23, 2020
- Modified: Nov. 21, 2024