Latest CVE Feed
-
9.8
CRITICALCVE-2013-2681
Cisco Linksys E4200 1.0.05 Build 7 devices contain a Security Bypass Vulnerability which could allow remote attackers to gain unauthorized access.... Read more
- Published: Feb. 05, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2013-2680
Cisco Linksys E4200 1.0.05 Build 7 devices store passwords in cleartext allowing remote attackers to obtain sensitive information.... Read more
- Published: Feb. 05, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-2679
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Linksys E4200 router with firmware 1.0.05 build 7 allow remote attackers to inject arbitrary web script or HTML via the (1) log_type, (2) ping_ip, (3) ping_size, (4) submit_type, or (5) tracerou... Read more
- Published: Feb. 18, 2020
- Modified: Nov. 21, 2024
-
8.1
HIGHCVE-2013-2678
Cisco Linksys E4200 1.0.05 Build 7 routers contain a Local File Include Vulnerability which could allow remote attackers to obtain sensitive information or execute arbitrary code by sending a crafted URL request to the apply.cgi script using the submit_ty... Read more
- Published: Feb. 04, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2013-2676
Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view private IP addresses and other sensitive information.... Read more
- Published: Feb. 04, 2020
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2013-2675
Brother MFC-9970CDW 1.10 devices with Firmware L contain a Frameable response (Clickjacking) vulnerability which could allow remote attackers to obtain sensitive information.... Read more
- Published: Feb. 05, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2013-2674
Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive information from referrer logs due to inadequate handling of HTTP referrer headers.... Read more
- Published: Feb. 03, 2020
- Modified: Nov. 21, 2024
-
6.8
MEDIUMCVE-2013-2673
Brother MFC-9970CDW 1.10 firmware L devices contain a security bypass vulnerability which allows physically proximate attackers to gain unauthorized access.... Read more
- Published: Feb. 03, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2013-2672
Brother MFC-9970CDW devices with firmware 0D allow cleartext submission of passwords.... Read more
- Published: Feb. 03, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2013-2646
TP-LINK TL-WR1043ND V1_120405 devices contain an unspecified denial of service vulnerability.... Read more
- Published: Feb. 03, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-2637
A Cross-Site Scripting (XSS) Vulnerability exists in OTRS ITSM prior to 3.2.4, 3.1.8, and 3.0.7 and FAQ prior to 2.1.4 and 2.0.8 via changes, workorder items, and FAQ articles, which could let a remote malicious user execute arbitrary code.... Read more
- Published: Feb. 12, 2020
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2013-2631
TinyWebGallery (TWG) 1.8.9 and earlier contains a full path disclosure vulnerability which allows remote attackers to obtain sensitive information through the parameters "twg_browserx" and "twg_browsery" in the page image.php.... Read more
Affected Products : tinywebgallery- Published: Feb. 03, 2020
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2013-2625
An Access Bypass issue exists in OTRS Help Desk before 3.2.4, 3.1.14, and 3.0.19, OTRS ITSM before 3.2.3, 3.1.8, and 3.0.7, and FAQ before 2.2.3, 2.1.4, and 2.0.8. Access rights by the object linking mechanism is not verified... Read more
- Published: Nov. 27, 2019
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2013-2624
Telean before 1.3.1 contains a full path disclosure vulnerability which could allow remote attackers to obtain sensitive information through a specially crafted URL request.... Read more
Affected Products : telaen- Published: Feb. 03, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-2623
Cross-site Scripting (XSS) in Telaen before 1.3.1 allows remote attackers to inject arbitrary web script or HTML via the "f_email" parameter in index.php.... Read more
Affected Products : telaen- Published: Feb. 03, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-2622
Cross-site Scripting (XSS) in UebiMiau 2.7.11 and earlier allows remote attackers to inject arbitrary web script or HTML via the "selected_theme" parameter in error.php.... Read more
Affected Products : uebimiau- Published: Feb. 03, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2013-2621
Open Redirection Vulnerability in the redir.php script in Telaen before 1.3.1 allows remote attackers to redirect victims to arbitrary websites via a crafted URL.... Read more
Affected Products : telaen- Published: Feb. 03, 2020
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2013-2612
Command-injection vulnerability in Huawei E587 3G Mobile Hotspot 11.203.27 allows remote attackers to execute arbitrary shell commands with root privileges due to an error in the Web UI.... Read more
- Published: Jan. 27, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGH- Published: Nov. 01, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2013-2574
An Access vulnerability exists in FOSCAM IP Camera FI8620 due to insufficient access restrictions in the /tmpfs/ and /log/ directories, which could let a malicious user obtain sensitive information.... Read more
- Published: Jan. 29, 2020
- Modified: Nov. 21, 2024