CVE Feed

    Dashboard / CVE

    4.9
    Medium

    CVE-2013-3223

    Last Modified: 11 Apr 2025

    The ax25_recvmsg function in net/ax25/af_ax25.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3226

    Last Modified: 11 Apr 2025

    The sco_sock_recvmsg function in net/bluetooth/sco.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3227

    Last Modified: 11 Apr 2025

    The caif_seqpkt_recvmsg function in net/caif/caif_socket.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3228

    Last Modified: 11 Apr 2025

    The irda_recvmsg_dgram function in net/irda/af_irda.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3229

    Last Modified: 11 Apr 2025

    The iucv_sock_recvmsg function in net/iucv/af_iucv.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3230

    Last Modified: 11 Apr 2025

    The l2tp_ip6_recvmsg function in net/l2tp/l2tp_ip6.c in the Linux kernel before 3.9-rc7 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3234

    Last Modified: 11 Apr 2025

    The rose_recvmsg function in net/rose/af_rose.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3235

    Last Modified: 11 Apr 2025

    net/tipc/socket.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure and a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3237

    Last Modified: 11 Apr 2025

    The vsock_stream_sendmsg function in net/vmw_vsock/af_vsock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3224

    Last Modified: 11 Apr 2025

    The bt_sock_recvmsg function in net/bluetooth/af_bluetooth.c in the Linux kernel before 3.9-rc7 does not properly initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3225

    Last Modified: 11 Apr 2025

    The rfcomm_sock_recvmsg function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3232

    Last Modified: 11 Apr 2025

    The nr_recvmsg function in net/netrom/af_netrom.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3233

    Last Modified: 11 Apr 2025

    The llcp_sock_recvmsg function in net/nfc/llcp/sock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable and a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    4.9
    Medium

    CVE-2013-3236

    Last Modified: 11 Apr 2025

    The vmci_transport_dgram_dequeue function in net/vmw_vsock/vmci_transport.c in the Linux kernel before 3.9-rc7 does not properly initialize a certain length variable, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvmsg or recvfrom system call.

    Published: 7 Apr 2013
    10
    Critical

    CVE-2013-0485

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in IBM Java SDK 7 before SR4-FP1, 6 before SR13-FP1, 5.0 before SR16-FP1, and 1.4.2 before SR13-FP16 has unknown impact and attack vectors related to Class Libraries.

    Published: 6 Apr 2013
    7.5
    High

    CVE-2013-0682

    Last Modified: 11 Apr 2025

    Cogent Real-Time Systems Cogent DataHub before 7.3.0, OPC DataHub before 6.4.22, Cascade DataHub before 6.4.22 on Windows, and DataHub QuickTrend before 7.3.0 do not properly handle exceptions, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via malformed data in a formatted text command, leading to out-of-bounds access to (1) heap or (2) stack memory.

    Published: 5 Apr 2013
    7.5
    High

    CVE-2013-0680

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the web server in Cogent Real-Time Systems Cogent DataHub before 7.3.0, OPC DataHub before 6.4.22, Cascade DataHub before 6.4.22 on Windows, and DataHub QuickTrend before 7.3.0 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long HTTP header.

    Published: 5 Apr 2013
    5
    Medium

    CVE-2013-0681

    Last Modified: 11 Apr 2025

    Cogent Real-Time Systems Cogent DataHub before 7.3.0, OPC DataHub before 6.4.22, Cascade DataHub before 6.4.22 on Windows, and DataHub QuickTrend before 7.3.0 allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via malformed data in a formatted text command.

    Published: 5 Apr 2013
    7.1
    High

    CVE-2013-0683

    Last Modified: 11 Apr 2025

    The DataSim and DataPid demonstration clients in Cogent Real-Time Systems Cogent DataHub before 7.3.0, OPC DataHub before 6.4.22, Cascade DataHub before 6.4.22 on Windows, and DataHub QuickTrend before 7.3.0 allow remote servers to cause a denial of service (incorrect pointer access and client crash) via malformed data in a formatted text command.

    Published: 5 Apr 2013
    5
    Medium

    CVE-2013-1174

    Last Modified: 11 Apr 2025

    Cisco Tivoli Business Service Manager (TBSM) in Hosted Collaboration Mediation (HCM) in Cisco Hosted Collaboration Solution allows remote attackers to cause a denial of service (temporary service hang) by sending many TCP packets to certain ports, aka Bug ID CSCue03703.

    Published: 5 Apr 2013
    5
    Medium

    CVE-2013-0483

    Last Modified: 11 Apr 2025

    The login component in SOAP Gateway in IBM IMS Enterprise Suite 1.1, 2.1, and 2.2 uses cleartext credentials, which allows remote attackers to obtain sensitive information by sniffing the network.

    Published: 5 Apr 2013
    4
    Medium

    CVE-2013-0470

    Last Modified: 11 Apr 2025

    HTTPD in IBM Netezza Performance Portal 1.0.2 allows remote authenticated users to list application directories containing asset files via a direct request to a directory URI, as demonstrated by listing image files.

    Published: 5 Apr 2013
    4.3
    Medium

    CVE-2013-0125

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in fileview.asp in C2 WebResource allows remote attackers to inject arbitrary web script or HTML via the File parameter.

    Published: 4 Apr 2013
    5
    Medium

    CVE-2013-0128

    Last Modified: 11 Apr 2025

    The Contact Customer Support feature in the TigerText Free Private Texting app before 3.1.402 for iOS sends a log-file e-mail message with unencrypted credentials, which allows remote attackers to obtain sensitive information by sniffing the network or leveraging access to an e-mail endpoint.

    Published: 4 Apr 2013
    1.9
    Low

    CVE-2013-2302

    Last Modified: 11 Apr 2025

    TransWARE Active! mail 6, when an external public interface is used, allows local users to obtain sensitive information belonging to arbitrary users by leveraging shell access, as demonstrated by a TELNET or SSH session to the server.

    Published: 4 Apr 2013
    10
    Critical

    CVE-2013-1902

    Last Modified: 11 Apr 2025

    PostgreSQL, 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 generates insecure temporary files with predictable filenames, which has unspecified impact and attack vectors related to "graphical installers for Linux and Mac OS X."

    Published: 4 Apr 2013
    10
    Critical

    CVE-2013-1903

    Last Modified: 11 Apr 2025

    PostgreSQL, possibly 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 incorrectly provides the superuser password to scripts related to "graphical installers for Linux and Mac OS X," which has unspecified impact and attack vectors.

    Published: 4 Apr 2013
    9.3
    Critical

    CVE-2012-4710

    Last Modified: 11 Apr 2025

    Invensys Wonderware Win-XML Exporter 1522.148.0.0 allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via an XML external entity declaration in conjunction with an entity reference.

    Published: 4 Apr 2013
    8.5
    High

    CVE-2013-0664

    Last Modified: 11 Apr 2025

    The FactoryCast service on the Schneider Electric Quantum 140NOE77111 and 140NWM10000, M340 BMXNOE0110x, and Premium TSXETY5103 PLC modules allows remote authenticated users to send Modbus messages, and consequently execute arbitrary code, by embedding these messages in SOAP HTTP POST requests.

    Published: 4 Apr 2013
    4
    Medium

    CVE-2013-2761

    Last Modified: 11 Apr 2025

    The Schneider Electric M340 BMXNOE01xx and BMXP3420xx PLC modules allow remote authenticated users to cause a denial of service (module crash) via crafted FTP traffic, as demonstrated by the FileZilla FTP client.

    Published: 4 Apr 2013
    10
    Critical

    CVE-2013-2762

    Last Modified: 11 Apr 2025

    The Schneider Electric Magelis XBT HMI controller has a default password for authentication of configuration uploads, which makes it easier for remote attackers to bypass intended access restrictions via crafted configuration data.

    Published: 4 Apr 2013
    6.8
    Medium

    CVE-2013-0663

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability on the Schneider Electric Quantum 140NOE77111, 140NOE77101, and 140NWM10000; M340 BMXNOC0401, BMXNOE0100x, and BMXNOE011xx; and Premium TSXETY4103, TSXETY5103, and TSXWMY100 PLC modules allows remote attackers to hijack the authentication of arbitrary users for requests that execute commands, as demonstrated by modifying HTTP credentials.

    Published: 4 Apr 2013
    5
    Medium

    CVE-2013-2763

    Last Modified: 11 Apr 2025

    The Schneider Electric M340 PLC modules allow remote attackers to cause a denial of service (resource consumption) via unspecified vectors. NOTE: the vendor reportedly disputes this issue because it "could not be duplicated" and "an attacker could not remotely exploit this observed behavior to deny PLC control functions.

    Published: 4 Apr 2013
    5
    Medium

    CVE-2013-1884

    Last Modified: 11 Apr 2025

    The mod_dav_svn Apache HTTPD server module in Subversion 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (segmentation fault and crash) via a log REPORT request with an invalid limit, which triggers an access of an uninitialized variable.

    Published: 4 Apr 2013
    4
    Medium

    CVE-2013-1901

    Last Modified: 11 Apr 2025

    PostgreSQL 9.2.x before 9.2.4 and 9.1.x before 9.1.9 does not properly check REPLICATION privileges, which allows remote authenticated users to bypass intended backup restrictions by calling the (1) pg_start_backup or (2) pg_stop_backup functions.

    Published: 4 Apr 2013
    4
    Medium

    CVE-2013-1846

    Last Modified: 11 Apr 2025

    The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) via a LOCK on an activity URL.

    Published: 4 Apr 2013
    5
    Medium

    CVE-2013-1847

    Last Modified: 11 Apr 2025

    The mod_dav_svn Apache HTTPD server module in Subversion 1.6.0 through 1.6.20 and 1.7.0 through 1.7.8 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an anonymous LOCK for a URL that does not exist.

    Published: 4 Apr 2013
    4.4
    Medium

    CVE-2013-1920

    Last Modified: 11 Apr 2025

    Xen 4.2.x, 4.1.x, and earlier, when the hypervisor is running "under memory pressure" and the Xen Security Module (XSM) is enabled, uses the wrong ordering of operations when extending the per-domain event channel tracking table, which causes a use-after-free and allows local guest kernels to inject arbitrary events and gain privileges via unspecified vectors.

    Published: 4 Apr 2013
    2.1
    Low

    CVE-2013-1845

    Last Modified: 11 Apr 2025

    The mod_dav_svn Apache HTTPD server module in Subversion 1.6.x before 1.6.21 and 1.7.0 through 1.7.8 allows remote authenticated users to cause a denial of service (memory consumption) by (1) setting or (2) deleting a large number of properties for a file or directory.

    Published: 4 Apr 2013
    6.5
    Medium

    CVE-2013-1899

    Last Modified: 11 Apr 2025

    Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.x before 9.0.13 allows remote attackers to cause a denial of service (file corruption), and allows remote authenticated users to modify configuration settings and execute arbitrary code, via a connection request using a database name that begins with a "-" (hyphen).

    Published: 4 Apr 2013
    8.5
    High

    CVE-2013-1900

    Last Modified: 11 Apr 2025

    PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, and 8.4.x before 8.4.17, when using OpenSSL, generates insufficiently random numbers, which might allow remote authenticated users to have an unspecified impact via vectors related to the "contrib/pgcrypto functions."

    Published: 4 Apr 2013
    10
    Critical

    CVE-2013-0790

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the browser engine in Mozilla Firefox before 20.0 on Android allows remote attackers to cause a denial of service (stack memory corruption and application crash) or possibly execute arbitrary code via unknown vectors involving a plug-in.

    Published: 3 Apr 2013
    5.8
    Medium

    CVE-2013-0794

    Last Modified: 11 Apr 2025

    Mozilla Firefox before 20.0 and SeaMonkey before 2.17 do not prevent origin spoofing of tab-modal dialogs, which allows remote attackers to conduct phishing attacks via a crafted web site.

    Published: 3 Apr 2013
    4.3
    Medium

    CVE-2013-0798

    Last Modified: 11 Apr 2025

    Mozilla Firefox before 20.0 on Android uses world-writable and world-readable permissions for the app_tmp installation directory in the local filesystem, which allows attackers to modify add-ons before installation via an application that leverages the time window during which app_tmp is used.

    Published: 3 Apr 2013
    7.2
    High

    CVE-2013-0799

    Last Modified: 11 Apr 2025

    Buffer overflow in the Mozilla Maintenance Service in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, and Thunderbird ESR 17.x before 17.0.5 on Windows allows local users to gain privileges via crafted arguments.

    Published: 3 Apr 2013
    6.9
    Medium

    CVE-2013-0797

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in the Mozilla Updater in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, and SeaMonkey before 2.17 allows local users to gain privileges via a Trojan horse DLL file in an unspecified directory.

    Published: 3 Apr 2013
    4.6
    Medium

    CVE-2013-2027

    Last Modified: 12 Apr 2025

    Jython 2.2.1 uses the current umask to set the privileges of the class cache files, which allows local users to bypass intended access restrictions via unspecified vectors.

    Published: 3 Apr 2013
    6.8
    Medium

    CVE-2013-6167

    Last Modified: 11 Apr 2025

    Mozilla Firefox through 27 sends HTTP Cookie headers without first validating that they have the required character-set restrictions, which allows remote attackers to conduct the equivalent of a persistent Logout CSRF attack via a crafted parameter that forces a web application to set a malformed cookie within an HTTP response.

    Published: 3 Apr 2013
    Unknown

    CVE-2013-0278

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-1664, CVE-2013-1665. Reason: This candidate is a duplicate of CVE-2013-1664 and/or CVE-2013-1665. Notes: All CVE users should reference CVE-2013-1664 and/or CVE-2013-1665 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 3 Apr 2013
    Unknown

    CVE-2013-0279

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-1664, CVE-2013-1665. Reason: This candidate is a duplicate of CVE-2013-1664 and/or CVE-2013-1665. Notes: All CVE users should reference CVE-2013-1664 and/or CVE-2013-1665 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 3 Apr 2013