CVE Feed

    Dashboard / CVE

    8.4
    High

    CVE-2013-3888

    Last Modified: 11 Apr 2025

    dxgkrnl.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows local users to gain privileges via a crafted application, aka "DirectX Graphics Kernel Subsystem Double Fetch Vulnerability."

    Published: 9 Oct 2013
    9.3
    Critical

    CVE-2013-3889

    Last Modified: 11 Apr 2025

    Microsoft Excel 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Office 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Office for Mac 2011; Excel Viewer; Office Compatibility Pack SP3; and Excel Services and Word Automation Services in SharePoint Server 2013 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Excel Memory Corruption Vulnerability."

    Published: 9 Oct 2013
    6.8
    Medium

    CVE-2013-4397

    Last Modified: 11 Apr 2025

    Multiple integer overflows in the th_read function in lib/block.c in libtar before 1.2.20 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) name or (2) link in an archive, which triggers a heap-based buffer overflow.

    Published: 9 Oct 2013
    2.1
    Low

    CVE-2013-6402

    Last Modified: 11 Apr 2025

    base/pkit.py in HP Linux Imaging and Printing (HPLIP) through 3.13.11 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/hp-pkservice.log temporary file.

    Published: 9 Oct 2013
    2.1
    Low

    CVE-2014-8991

    Last Modified: 12 Apr 2025

    pip 1.3 through 1.5.6 allows local users to cause a denial of service (prevention of package installation) by creating a /tmp/pip-build-* file for another user.

    Published: 9 Oct 2013
    9.8
    Critical

    CVE-2017-1000487

    Last Modified: 21 Nov 2024

    Plexus-utils before 3.0.16 is vulnerable to command injection because it does not correctly process the contents of double quoted strings.

    Published: 9 Oct 2013
    5.5
    Medium

    CVE-2013-4471

    Last Modified: 12 Apr 2025

    The Identity v3 API in OpenStack Dashboard (Horizon) before 2013.2 does not require the current password when changing passwords for user accounts, which makes it easier for remote attackers to change a user password by leveraging the authentication token for that user.

    Published: 8 Oct 2013
    7.5
    High

    CVE-2013-7488

    Last Modified: 21 Nov 2024

    perl-Convert-ASN1 (aka the Convert::ASN1 module for Perl) through 0.27 allows remote attackers to cause an infinite loop via unexpected input.

    Published: 8 Oct 2013
    6.5
    Medium

    CVE-2013-4396

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in the doImageText function in dix/dixfonts.c in the xorg-server module before 1.14.4 in X.Org X11 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted ImageText request that triggers memory-allocation failure.

    Published: 8 Oct 2013
    7.5
    High

    CVE-2013-4386

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in app/models/concerns/host_common.rb in Foreman before 1.2.3 allow remote attackers to execute arbitrary SQL commands via the (1) fqdn or (2) hostgroup parameter.

    Published: 7 Oct 2013
    3.6
    Low

    CVE-2013-4270

    Last Modified: 11 Apr 2025

    The net_ctl_permissions function in net/sysctl_net.c in the Linux kernel before 3.11.5 does not properly determine uid and gid values, which allows local users to bypass intended /proc/sys/net restrictions via a crafted application.

    Published: 6 Oct 2013
    7.2
    High

    CVE-2012-4075

    Last Modified: 11 Apr 2025

    Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via shell metacharacters in unspecified command parameters, aka Bug IDs CSCtf19827 and CSCtf27788.

    Published: 5 Oct 2013
    6.8
    Medium

    CVE-2012-4084

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in the web-management interface in the fabric interconnect (FI) component in Cisco Unified Computing System (UCS) allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCtg20755.

    Published: 5 Oct 2013
    4
    Medium

    CVE-2012-4090

    Last Modified: 11 Apr 2025

    The management interface in Cisco NX-OS on Nexus 7000 devices allows remote authenticated users to obtain sensitive configuration-file information by leveraging the network-operator role, aka Bug ID CSCti09089.

    Published: 5 Oct 2013
    5
    Medium

    CVE-2012-4091

    Last Modified: 11 Apr 2025

    The RIP service engine in Cisco NX-OS allows remote attackers to cause a denial of service (engine restart) via a malformed (1) RIPv4 or (2) RIPv6 message, aka Bug ID CSCtj73415.

    Published: 5 Oct 2013
    5
    Medium

    CVE-2012-4098

    Last Modified: 11 Apr 2025

    The BGP implementation in Cisco NX-OS does not properly filter AS paths, which allows remote attackers to cause a denial of service (BGP service reset and resync) via a malformed UPDATE message, aka Bug ID CSCtn13055.

    Published: 5 Oct 2013
    6.2
    Medium

    CVE-2012-4122

    Last Modified: 11 Apr 2025

    The CLI parser in Cisco NX-OS allows local users to bypass intended access restrictions, and overwrite or create arbitrary files, via shell output redirection, aka Bug IDs CSCts56672 and CSCts56669.

    Published: 5 Oct 2013
    9.3
    Critical

    CVE-2013-2808

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in Xper in Philips Xper Information Management Physiomonitoring 5 components, Xper Information Management Vascular Monitoring 5 components, and Xper Information Management servers and workstations for Flex Cardio products before XperConnect 1.5.4.053 SP2 allows remote attackers to execute arbitrary code via a crafted HTTP request to the Connect broker on TCP port 6000.

    Published: 5 Oct 2013
    6.1
    Medium

    CVE-2013-3610

    Last Modified: 11 Apr 2025

    qis/QIS_finish.htm on the ASUS RT-N10E router with firmware before 2.0.0.25 does not require authentication, which allows remote attackers to discover the administrator password via a direct request.

    Published: 5 Oct 2013
    5
    Medium

    CVE-2013-3627

    Last Modified: 11 Apr 2025

    FrameworkService.exe in McAfee Framework Service in McAfee Managed Agent (MA) before 4.5.0.1927 and 4.6 before 4.6.0.3258 allows remote attackers to cause a denial of service (service crash) via a malformed HTTP request.

    Published: 5 Oct 2013
    6.2
    Medium

    CVE-2012-4141

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in the CLI parser in Cisco NX-OS allows local users to create arbitrary script files via a relative pathname in the "file name" parameter, aka Bug IDs CSCua71557 and CSCua71551.

    Published: 5 Oct 2013
    5
    Medium

    CVE-2013-4402

    Last Modified: 11 Apr 2025

    The compressed packet parser in GnuPG 1.4.x before 1.4.15 and 2.0.x before 2.0.22 allows remote attackers to cause a denial of service (infinite recursion) via a crafted OpenPGP message.

    Published: 5 Oct 2013
    Unknown

    CVE-2013-0188

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-0189, CVE-2013-0191. Reason: this identifier was intended for one issue, but it was inadvertently associated with multiple issues. Notes: All CVE users should consult CVE-2013-0189 and CVE-2013-0191 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 4 Oct 2013
    6.8
    Medium

    CVE-2013-3540

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in cgi-bin/admin/usrgrp.cgi in AirLive POE2600HD, POE250HD, POE200HD, OD-325HD, OD-2025HD, OD-2060HD, POE100HD, and possibly other camera models allows remote attackers to hijack the authentication of administrators for requests that add users.

    Published: 4 Oct 2013
    8.8
    High

    CVE-2013-3543

    Last Modified: 11 Apr 2025

    The AXIS Media Control (AMC) ActiveX control (AxisMediaControlEmb.dll) 6.2.10.11 for AXIS network cameras allows remote attackers to create or overwrite arbitrary files via a file path to the (1) StartRecord, (2) SaveCurrentImage, or (3) StartRecordMedia methods.

    Published: 4 Oct 2013
    7.8
    High

    CVE-2013-3689

    Last Modified: 11 Apr 2025

    Brickcom FB-100Ap, WCB-100Ap, MD-100Ap, WFB-100Ap, OB-100Ae, OSD-040E, and possibly other camera models with firmware 3.0.6.16C1 and earlier, do not properly restrict access to configfile.dump, which allow remote attackers to obtain sensitive information (user names, passwords, and configurations) via a get action.

    Published: 4 Oct 2013
    7.8
    High

    CVE-2013-3541

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in cgi-bin/admin/fileread in AirLive WL2600CAM and possibly other camera models allows remote attackers to read arbitrary files via a .. (dot dot) in the READ.filePath parameter.

    Published: 4 Oct 2013
    6.5
    Medium

    CVE-2013-5091

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in CalendarCommon.php in vTiger CRM 5.4.0 and possibly earlier allows remote authenticated users to execute arbitrary SQL commands via the onlyforuser parameter in an index action to index.php. NOTE: this issue might be a duplicate of CVE-2011-4559.

    Published: 4 Oct 2013
    6.8
    Medium

    CVE-2013-4986

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in PDFAX0722_IconCool.dll 7.22.1125.2121 in IconCool PDFCool Studio 3.32 Build 130330 and earlier allows remote attackers to execute arbitrary code via a crafted PDF file.

    Published: 4 Oct 2013
    4.3
    Medium

    CVE-2013-4249

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the AdminURLFieldWidget widget in contrib/admin/widgets.py in Django 1.5.x before 1.5.2 and 1.6.x before 1.6 beta 2 allows remote attackers to inject arbitrary web script or HTML via a URLField.

    Published: 4 Oct 2013
    7.5
    High

    CVE-2013-2221

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in the ZRtp::storeMsgTemp function in GNU ZRTPCPP before 3.2.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large packet.

    Published: 4 Oct 2013
    6.8
    Medium

    CVE-2013-2222

    Last Modified: 11 Apr 2025

    Multiple stack-based buffer overflows in GNU ZRTPCPP before 3.2.0 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted ZRTP Hello packet to the (1) ZRtp::findBestSASType, (2) ZRtp::findBestAuthLen, (3) ZRtp::findBestCipher, (4) ZRtp::findBestHash, or (5) ZRtp::findBestPubKey functions.

    Published: 4 Oct 2013
    5.8
    Medium

    CVE-2013-2223

    Last Modified: 11 Apr 2025

    GNU ZRTPCPP before 3.2.0 allows remote attackers to obtain sensitive information (uninitialized heap memory) or cause a denial of service (out-of-bounds read) via a crafted packet, as demonstrated by a truncated Ping packet that is not properly handled by the getEpHash function.

    Published: 4 Oct 2013
    4.3
    Medium

    CVE-2013-5915

    Last Modified: 11 Apr 2025

    The RSA-CRT implementation in PolarSSL before 1.2.9 does not properly perform Montgomery multiplication, which might allow remote attackers to conduct a timing side-channel attack and retrieve RSA private keys.

    Published: 4 Oct 2013
    7.8
    High

    CVE-2013-6011

    Last Modified: 11 Apr 2025

    Citrix NetScaler Application Delivery Controller (ADC) 10.0 before 10.0-76.7 allows remote attackers to cause a denial of service (nsconfigd crash and appliance reboot) via a crafted request.

    Published: 4 Oct 2013
    7.2
    High

    CVE-2013-2964

    Last Modified: 11 Apr 2025

    Buffer overflow in dsmtca in IBM Tivoli Storage Manager (TSM) through 5.5.4.0, 6.1.0 through 6.1.5.4, 6.2.0 through 6.2.4.7, and 6.3.0 through 6.3.0.17 on UNIX and Linux allows local users to gain privileges via unspecified vectors.

    Published: 4 Oct 2013
    4.3
    Medium

    CVE-2013-4711

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Accela BizSearch 3.2 on Linux and Solaris allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 4 Oct 2013
    6.6
    Medium

    CVE-2013-5163

    Last Modified: 11 Apr 2025

    Directory Services in Apple Mac OS X before 10.8.5 Supplemental Update allows local users to bypass password-based authentication and modify arbitrary Directory Services records via unspecified vectors.

    Published: 4 Oct 2013
    6.9
    Medium

    CVE-2013-5419

    Last Modified: 11 Apr 2025

    Multiple buffer overflows in (1) mkque and (2) mkquedev in bos.rte.printers in IBM AIX 6.1 and 7.1 allow local users to gain privileges by leveraging printq group membership.

    Published: 4 Oct 2013
    4.3
    Medium

    CVE-2013-4828

    Last Modified: 11 Apr 2025

    HP LaserJet M4555, M525, and M725; LaserJet flow MFP M525c; LaserJet Enterprise color flow MFP M575c; Color LaserJet CM4540, M575, and M775; and ScanJet Enterprise 8500fn1 FutureSmart devices do not properly encrypt PDF documents, which allows remote attackers to obtain sensitive information via unspecified vectors.

    Published: 4 Oct 2013
    1.5
    Low

    CVE-2013-4829

    Last Modified: 11 Apr 2025

    HP LaserJet M4555, M525, and M725; LaserJet flow MFP M525c; LaserJet Enterprise color flow MFP M575c; Color LaserJet CM4540, M575, and M775; and ScanJet Enterprise 8500fn1 FutureSmart devices allow local users to read images of arbitrary scanned documents via unspecified vectors.

    Published: 4 Oct 2013
    3.5
    Low

    CVE-2013-4428

    Last Modified: 11 Apr 2025

    OpenStack Image Registry and Delivery Service (Glance) Folsom, Grizzly before 2013.1.4, and Havana before 2013.2, when the download_image policy is configured, does not properly restrict access to cached images, which allows remote authenticated users to read otherwise restricted images via an image UUID.

    Published: 4 Oct 2013
    9.3
    Critical

    CVE-2013-3248

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Corel PDF Fusion 1.11 allows local users to gain privileges via a Trojan horse wintab32.dll file in the current working directory, as demonstrated by a directory that contains a .pdf or .xps file.

    Published: 3 Oct 2013
    9.3
    Critical

    CVE-2013-0742

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in Corel PDF Fusion 1.11 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a long ZIP directory entry name in an XPS file.

    Published: 3 Oct 2013
    4.6
    Medium

    CVE-2013-1062

    Last Modified: 11 Apr 2025

    ubuntu-system-service 0.2.4 before 0.2.4.1. 0.2.3 before 0.2.3.1, and 0.2.2 before 0.2.2.1 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process, a related issue to CVE-2013-4288.

    Published: 3 Oct 2013
    4.6
    Medium

    CVE-2013-1063

    Last Modified: 11 Apr 2025

    usb-creator 0.2.47 before 0.2.47.1, 0.2.40 before 0.2.40ubuntu2, and 0.2.38 before 0.2.38.2 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process, a related issue to CVE-2013-4288.

    Published: 3 Oct 2013
    4.6
    Medium

    CVE-2013-1064

    Last Modified: 11 Apr 2025

    apt-xapian-index before 0.45ubuntu2.1, 0.44ubuntu7.1, and 0.44ubuntu5.1 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process, a related issue to CVE-2013-4288.

    Published: 3 Oct 2013
    4.6
    Medium

    CVE-2013-1065

    Last Modified: 11 Apr 2025

    backend.py in Jockey before 0.9.7-0ubuntu7.11 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process, a related issue to CVE-2013-4288.

    Published: 3 Oct 2013
    4.6
    Medium

    CVE-2013-1066

    Last Modified: 11 Apr 2025

    language-selector 0.110.x before 0.110.1, 0.90.x before 0.90.1, and 0.79.x before 0.79.4 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process, a related issue to CVE-2013-4288.

    Published: 3 Oct 2013
    4.6
    Medium

    CVE-2013-1061

    Last Modified: 11 Apr 2025

    dbus/SoftwarePropertiesDBus.py in Software Properties 0.92.17 before 0.92.17.3, 0.92.9 before 0.92.9.3, and 0.82.7 before 0.82.7.5 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process, a related issue to CVE-2013-4288.

    Published: 3 Oct 2013