CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2013-6018

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in login.jsp in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to hijack the authentication of arbitrary users for requests that change a password.

    Published: 28 Oct 2013
    4.3
    Medium

    CVE-2013-6019

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to inject arbitrary web script or HTML via the accountNum parameter to an unspecified component.

    Published: 28 Oct 2013
    5
    Medium

    CVE-2013-6285

    Last Modified: 11 Apr 2025

    The search component in the Treasurer application in Tyler Technologies TaxWeb 3.13.3.1 allows remote attackers to obtain sensitive query-structure information via an invalid search request, a different vulnerability than CVE-2013-6020.

    Published: 28 Oct 2013
    4.3
    Medium

    CVE-2013-6348

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 2.3.15.3 allow remote attackers to inject arbitrary web script or HTML via the namespace parameter to (1) actionNames.action and (2) showConfig.action in config-browser/.

    Published: 28 Oct 2013
    4.3
    Medium

    CVE-2013-7436

    Last Modified: 12 Apr 2025

    noVNC before 0.5 does not set the secure flag for a cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.

    Published: 28 Oct 2013
    7.5
    High

    CVE-2013-0337

    Last Modified: 11 Apr 2025

    The default configuration of nginx, possibly 1.3.13 and earlier, uses world-readable permissions for the (1) access.log and (2) error.log files, which allows local users to obtain sensitive information by reading the files.

    Published: 27 Oct 2013
    5
    Medium

    CVE-2013-4302

    Last Modified: 11 Apr 2025

    (1) ApiBlock.php, (2) ApiCreateAccount.php, (3) ApiLogin.php, (4) ApiMain.php, (5) ApiQueryDeletedrevs.php, (6) ApiTokens.php, and (7) ApiUnblock.php in includes/api/ in MediaWiki 1.19.x before 1.19.8, 1.20.x before 1.20.7, and 1.21.x before 1.21.2 allow remote attackers to obtain CSRF tokens and bypass the cross-site request forgery (CSRF) protection mechanism via a JSONP request to wiki/api.php.

    Published: 27 Oct 2013
    5
    Medium

    CVE-2013-4301

    Last Modified: 11 Apr 2025

    includes/resourceloader/ResourceLoaderContext.php in MediaWiki 1.19.x before 1.19.8, 1.20.x before 1.20.7, and 1.21.x before 1.21.2 allows remote attackers to obtain sensitive information via a "<" (open angle bracket) character in the lang parameter to w/load.php, which reveals the installation path in an error message.

    Published: 27 Oct 2013
    7.8
    High

    CVE-2013-6016

    Last Modified: 11 Apr 2025

    The Traffic Management Microkernel (TMM) in F5 BIG-IP LTM, APM, ASM, Edge Gateway, GTM, Link Controller, and WOM 10.0.0 through 10.2.2 and 11.0.0; Analytics 11.0.0; PSM 9.4.0 through 9.4.8, 10.0.0 through 10.2.4, and 11.0.0 through 11.4.1; and WebAccelerator 9.4.0 through 9.4.8, 10.0.0 through 10.2.4, and 11.0.0 through 11.3.0 might change a TCP connection to the ESTABLISHED state before receiving the ACK packet, which allows remote attackers to cause a denial of service (SIGFPE or assertion failure and TMM restart) via unspecified vectors.

    Published: 26 Oct 2013
    6.8
    Medium

    CVE-2013-5914

    Last Modified: 11 Apr 2025

    Buffer overflow in the ssl_read_record function in ssl_tls.c in PolarSSL before 1.1.8, when using TLS 1.1, might allow remote attackers to execute arbitrary code via a long packet.

    Published: 26 Oct 2013
    7.5
    High

    CVE-2013-6284

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Statutory Reporting for Insurance (FS_SR) component in the Financial Services module for SAP ERP Central Component (ECC) allows attackers to execute arbitrary code via unspecified vectors, related to a "code injection vulnerability."

    Published: 26 Oct 2013
    6.8
    Medium

    CVE-2011-4106

    Last Modified: 11 Apr 2025

    TimThumb (timthumb.php) before 2.0 does not validate the entire source with the domain white list, which allows remote attackers to upload and execute arbitrary code via a URL containing a white-listed domain in the src parameter, then accessing it via a direct request to the file in the cache directory, as exploited in the wild in August 2011.

    Published: 26 Oct 2013
    3.3
    Low

    CVE-2013-4472

    Last Modified: 12 Apr 2025

    The openTempFile function in goo/gfile.cc in Xpdf and Poppler 0.24.3 and earlier, when running on a system other than Unix, allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names.

    Published: 26 Oct 2013
    7.5
    High

    CVE-2013-4473

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a source filename.

    Published: 26 Oct 2013
    5
    Medium

    CVE-2013-4474

    Last Modified: 11 Apr 2025

    Format string vulnerability in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.3 allows remote attackers to cause a denial of service (crash) via format string specifiers in a destination filename.

    Published: 26 Oct 2013
    4.9
    Medium

    CVE-2013-1067

    Last Modified: 11 Apr 2025

    Apport 2.12.5 and earlier uses weak permissions for core dump files created by setuid binaries, which allows local users to obtain sensitive information by reading the file.

    Published: 25 Oct 2013
    5
    Medium

    CVE-2013-4421

    Last Modified: 11 Apr 2025

    The buf_decompress function in packet.c in Dropbear SSH Server before 2013.59 allows remote attackers to cause a denial of service (memory consumption) via a compressed packet that has a large size when it is decompressed.

    Published: 25 Oct 2013
    5
    Medium

    CVE-2013-4434

    Last Modified: 11 Apr 2025

    Dropbear SSH Server before 2013.59 generates error messages for a failed logon attempt with different time delays depending on whether the user account exists, which allows remote attackers to discover valid usernames.

    Published: 25 Oct 2013
    4.6
    Medium

    CVE-2013-4465

    Last Modified: 11 Apr 2025

    Unrestricted file upload vulnerability in the avatar upload functionality in Simple Machines Forum before 2.0.6 and 2.1 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.

    Published: 25 Oct 2013
    5
    Medium

    CVE-2013-4965

    Last Modified: 11 Apr 2025

    Puppet Enterprise before 3.1.0 does not properly restrict the number of authentication attempts by a console account, which makes it easier for remote attackers to bypass intended access restrictions via a brute-force attack.

    Published: 25 Oct 2013
    6.8
    Medium

    CVE-2013-4957

    Last Modified: 11 Apr 2025

    The dashboard report in Puppet Enterprise before 3.0.1 allows attackers to execute arbitrary YAML code via a crafted report-specific type.

    Published: 25 Oct 2013
    7.5
    High

    CVE-2013-6283

    Last Modified: 11 Apr 2025

    VideoLAN VLC Media Player 2.0.8 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a URL in a m3u file.

    Published: 25 Oct 2013
    3.5
    Low

    CVE-2013-3989

    Last Modified: 11 Apr 2025

    IBM Security AppScan Enterprise 8.x before 8.8 sends a cleartext AppScan Source database password in a response, which allows remote authenticated users to obtain sensitive information, and subsequently conduct man-in-the-middle attacks, by examining the response content.

    Published: 25 Oct 2013
    5.8
    Medium

    CVE-2013-6127

    Last Modified: 11 Apr 2025

    The SUPERGRIDLib.SuperGrid ActiveX control in SuperGrid.ocx before 65.30.30000.10002 in WellinTech KingView before 6.53 does not properly restrict ReplaceDBFile method calls, which allows remote attackers to create or overwrite arbitrary files, and subsequently execute arbitrary programs, via the two pathname arguments, as demonstrated by a directory traversal attack.

    Published: 25 Oct 2013
    6.8
    Medium

    CVE-2013-5424

    Last Modified: 11 Apr 2025

    IBM Flex System Manager (FSM) 1.3.0 allows remote attackers to bypass intended access restrictions, and create new user accounts or execute tasks, by leveraging an expired password for the system-level account.

    Published: 25 Oct 2013
    5.8
    Medium

    CVE-2013-6128

    Last Modified: 11 Apr 2025

    The KCHARTXYLib.KChartXY ActiveX control in KChartXY.ocx before 65.30.30000.10002 in WellinTech KingView before 6.53 does not properly restrict SaveToFile method calls, which allows remote attackers to create or overwrite arbitrary files, and subsequently execute arbitrary programs, via the single pathname argument, as demonstrated by a directory traversal attack.

    Published: 25 Oct 2013
    4.3
    Medium

    CVE-2013-6280

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Social Sharing Toolkit plugin before 2.1.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 25 Oct 2013
    4.3
    Medium

    CVE-2013-6281

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in codebase/spreadsheet.php in the Spreadsheet (dhtmlxSpreadsheet) plugin 2.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via the "page" parameter.

    Published: 25 Oct 2013
    9
    Critical

    CVE-2013-5530

    Last Modified: 11 Apr 2025

    The web framework in Cisco Identity Services Engine (ISE) 1.0 and 1.1.0 before 1.1.0.665-5, 1.1.1 before 1.1.1.268-7, 1.1.2 before 1.1.2.145-10, 1.1.3 before 1.1.3.124-7, 1.1.4 before 1.1.4.218-7, and 1.2 before 1.2.0.899-2 allows remote authenticated users to execute arbitrary commands via a crafted session on TCP port 443, aka Bug ID CSCuh81511.

    Published: 25 Oct 2013
    5
    Medium

    CVE-2013-5531

    Last Modified: 11 Apr 2025

    Cisco Identity Services Engine (ISE) 1.x before 1.1.1 allows remote attackers to bypass authentication, and read support-bundle configuration and credentials data, via a crafted session on TCP port 443, aka Bug ID CSCty20405.

    Published: 25 Oct 2013
    7.1
    High

    CVE-2013-5549

    Last Modified: 11 Apr 2025

    Cisco IOS XR 3.8.1 through 4.2.0 does not properly process fragmented packets within the RP-A, RP-B, PRP, and DRP-B route-processor components, which allows remote attackers to cause a denial of service (transmission outage) via (1) IPv4 or (2) IPv6 traffic, aka Bug ID CSCuh30380.

    Published: 25 Oct 2013
    7.5
    High

    CVE-2013-3280

    Last Modified: 11 Apr 2025

    EMC RSA Authentication Agent 7.1.x before 7.1.2 for Web for Internet Information Services has a fail-open design, which allows remote attackers to bypass intended access restrictions via vectors that trigger an agent crash.

    Published: 25 Oct 2013
    5
    Medium

    CVE-2013-5521

    Last Modified: 11 Apr 2025

    Cisco Identity Services Engine does not properly restrict the creation of guest accounts, which allows remote attackers to cause a denial of service (exhaustion of the account supply) via a series of requests within one session, aka Bug ID CSCue94287.

    Published: 25 Oct 2013
    6.8
    Medium

    CVE-2013-5522

    Last Modified: 11 Apr 2025

    Cisco IOS on Catalyst 3750X switches has default Service Module credentials, which makes it easier for local users to gain privileges via a Service Module login, aka Bug ID CSCue92286.

    Published: 25 Oct 2013
    1.9
    Low

    CVE-2013-4509

    Last Modified: 11 Apr 2025

    The default configuration of IBUS 1.5.4, and possibly 1.5.2 and earlier, when IBus.InputPurpose.PASSWORD is not set and used with GNOME 3, does not obscure the entered password characters, which allows physically proximate attackers to obtain a user password by reading the lockscreen.

    Published: 25 Oct 2013
    4
    Medium

    CVE-2013-4475

    Last Modified: 11 Apr 2025

    Samba 3.2.x through 3.6.x before 3.6.20, 4.0.x before 4.0.11, and 4.1.x before 4.1.1, when vfs_streams_depot or vfs_streams_xattr is enabled, allows remote attackers to bypass intended file restrictions by leveraging ACL differences between a file and an associated alternate data stream (ADS).

    Published: 25 Oct 2013
    6.8
    Medium

    CVE-2013-1734

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in attachment.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.3.x and 4.4.x before 4.4.1 allows remote attackers to hijack the authentication of arbitrary users for requests that commit an attachment change via an update action.

    Published: 24 Oct 2013
    Unknown

    CVE-2013-4443

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 24 Oct 2013
    6.8
    Medium

    CVE-2013-5143

    Last Modified: 11 Apr 2025

    The RADIUS service in Server App in Apple OS X Server before 3.0 selects a fallback X.509 certificate in unspecified circumstances, which might allow man-in-the-middle attackers to hijack RADIUS sessions by leveraging knowledge of the private key that matches this fallback certificate.

    Published: 24 Oct 2013
    5
    Medium

    CVE-2013-5536

    Last Modified: 11 Apr 2025

    Cisco Secure Access Control System (ACS) does not properly implement an incoming-packet firewall rule, which allows remote attackers to cause a denial of service (process crash) via a flood of crafted packets, aka Bug ID CSCui51521.

    Published: 24 Oct 2013
    6.8
    Medium

    CVE-2013-1733

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in process_bug.cgi in Bugzilla 4.4.x before 4.4.1 allows remote attackers to hijack the authentication of arbitrary users for requests that modify bugs via vectors involving a midair-collision token.

    Published: 24 Oct 2013
    4.3
    Medium

    CVE-2013-1742

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in editflagtypes.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.3.x and 4.4.x before 4.4.1 allow remote attackers to inject arbitrary web script or HTML via the (1) id or (2) sortkey parameter.

    Published: 24 Oct 2013
    5
    Medium

    CVE-2013-5130

    Last Modified: 11 Apr 2025

    WebKit in Apple Safari before 6.1 disables the Private Browsing feature upon a launch of the Web Inspector, which makes it easier for context-dependent attackers to obtain browsing information by leveraging LocalStorage/ files.

    Published: 24 Oct 2013
    7.2
    High

    CVE-2013-5148

    Last Modified: 11 Apr 2025

    Apple Keynote before 6.0 does not properly handle the interaction between Keynote presentation mode and the Screen Lock implementation, which allows physically proximate attackers to obtain access by visiting an unattended workstation on which this mode was enabled during a sleep operation.

    Published: 24 Oct 2013
    4.3
    Medium

    CVE-2013-1743

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in report.cgi in Bugzilla 4.1.x and 4.2.x before 4.2.7 and 4.3.x and 4.4.x before 4.4.1 allow remote attackers to inject arbitrary web script or HTML via a field value that is not properly handled during construction of a tabular report, as demonstrated by the (1) summary or (2) real name field. NOTE: this issue exists because of an incomplete fix for CVE-2012-4189.

    Published: 24 Oct 2013
    7.8
    High

    CVE-2013-5537

    Last Modified: 11 Apr 2025

    The web framework on Cisco Web Security Appliance (WSA), Email Security Appliance (ESA), and Content Security Management Appliance (SMA) devices does not properly manage the state of HTTP and HTTPS sessions, which allows remote attackers to cause a denial of service (management GUI outage) via multiple TCP connections, aka Bug IDs CSCuj59411, CSCuf89818, and CSCuh05635.

    Published: 24 Oct 2013
    5
    Medium

    CVE-2013-4295

    Last Modified: 11 Apr 2025

    The gadget renderer in Apache Shindig 2.5.0 for PHP allows remote attackers to obtain sensitive information via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

    Published: 24 Oct 2013
    5.8
    Medium

    CVE-2013-4390

    Last Modified: 11 Apr 2025

    Open redirect vulnerability in the AbstractAuthenticationFormServlet in the Auth Core (org.apache.sling.auth.core) bundle before 1.1.4 in Apache Sling allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the resource parameter, related to "a custom login form and XSS."

    Published: 24 Oct 2013
    7.5
    High

    CVE-2013-5135

    Last Modified: 11 Apr 2025

    Format string vulnerability in Screen Sharing Server in Apple Mac OS X before 10.9 and Apple Remote Desktop before 3.5.4 allows remote attackers to execute arbitrary code via format string specifiers in a VNC username.

    Published: 24 Oct 2013
    2.1
    Low

    CVE-2013-5162

    Last Modified: 11 Apr 2025

    Passcode Lock in Apple iOS before 7.0.3 on iPhone devices allows physically proximate attackers to bypass the passcode-failure disabled state by leveraging certain incorrect visibility of the passcode-entry view after use of the Phone app.

    Published: 24 Oct 2013