Aggregator
CVE-2013-7273 | GNOME Display Manager 3.4.1 Login disable-user-list=true null pointer dereference (Bug 704284 / BID-64714)
2 days 12 hours ago
A vulnerability labeled as problematic has been found in GNOME Display Manager 3.4.1. Affected by this vulnerability is an unknown functionality of the component Login Handler. The manipulation of the argument disable-user-list=true results in null pointer dereference.
This vulnerability was named CVE-2013-7273. The attack needs to be approached locally. In addition, an exploit is available.
vuldb.com
CVE-2013-7066 | Entityreference 7.x-1.0/7.x-1.x access control
2 days 12 hours ago
A vulnerability marked as critical has been reported in Entityreference 7.x-1.0/7.x-1.x. Affected by this issue is some unknown functionality. The manipulation leads to improper access controls.
This vulnerability is documented as CVE-2013-7066. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2013-7068 | Organic Groups 5/6.x-1.0-rc8/6.x-2.1/7.x-1.1 access control
2 days 12 hours ago
A vulnerability described as critical has been identified in Organic Groups 5/6.x-1.0-rc8/6.x-2.1/7.x-1.1. This affects an unknown part. The manipulation results in improper access controls.
This vulnerability is reported as CVE-2013-7068. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is recommended.
vuldb.com
CVE-2013-7111 | BaseSpace Ruby SDK 0.1.7 put_call information disclosure
2 days 12 hours ago
A vulnerability classified as problematic has been found in BaseSpace Ruby SDK 0.1.7. This vulnerability affects the function put_call. This manipulation causes information disclosure.
This vulnerability appears as CVE-2013-7111. The attack may be initiated remotely. There is no available exploit.
vuldb.com
CVE-2013-7134 | Phusion Juvia Installation credentials management (Issue 55)
2 days 12 hours ago
A vulnerability classified as critical was found in Phusion Juvia. This issue affects some unknown processing of the component Installation. Such manipulation leads to credentials management.
This vulnerability is traded as CVE-2013-7134. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2013-7220 | GNOME gnome-shell 2.31.5 screen command injection
2 days 12 hours ago
A vulnerability, which was classified as problematic, has been found in GNOME gnome-shell 2.31.5. Impacted is an unknown function of the component screen. Performing a manipulation results in command injection.
This vulnerability is known as CVE-2013-7220. Attacking locally is a requirement. No exploit is available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2013-7221 | GNOME gnome-shell up to 3.9.1 Screen Lock access control
2 days 12 hours ago
A vulnerability, which was classified as problematic, was found in GNOME gnome-shell up to 3.9.1. The affected element is an unknown function of the component Screen Lock. Executing a manipulation can lead to improper access controls.
This vulnerability is handled as CVE-2013-7221. It is possible to launch the attack on the local host. There is not any exploit available.
It is best practice to apply a patch to resolve this issue.
vuldb.com
CVE-2013-7234 | Simplemachines Forum up to 1.1.4 X-Frame-Options input validation
2 days 12 hours ago
A vulnerability has been found in Simplemachines Forum up to 1.1.4 and classified as critical. The impacted element is an unknown function of the component X-Frame-Options. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2013-7234. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
vuldb.com
CVE-2013-7235 | Simplemachines Forum up to 1.1.4 input validation
2 days 12 hours ago
A vulnerability was found in Simplemachines Forum up to 1.1.4 and classified as critical. This affects an unknown function. The manipulation results in improper input validation.
This vulnerability was named CVE-2013-7235. The attack may be performed from remote. There is no available exploit.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2013-7236 | Simplemachines Forum up to 2.0.6 input validation
2 days 12 hours ago
A vulnerability was found in Simplemachines Forum up to 2.0.6. It has been classified as critical. This impacts an unknown function. This manipulation causes improper input validation.
The identification of this vulnerability is CVE-2013-7236. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2013-7259 | Neo4J 1.9.2 cross-site request forgery
2 days 12 hours ago
A vulnerability was found in Neo4J 1.9.2. It has been declared as problematic. Affected is an unknown function. Such manipulation leads to cross-site request forgery.
This vulnerability is referenced as CVE-2013-7259. It is possible to launch the attack remotely. No exploit is available.
vuldb.com
地平线6未加密游戏包泄露并被快速盗版传播 微软直接将大量玩家封禁7,000年
2 days 12 hours ago
你站在哪里
2 days 12 hours ago
上一篇顺口溜中的方法论我们讲了成长的内在五步:读书、行路、阅人、问师、领悟。但有一个问题没有回答:这五步,你在哪里迈?
CVE-2014-2182 | Cisco ASA DHCPv6 input validation (CSCun45520 / Nessus ID 74036)
2 days 12 hours ago
A vulnerability, which was classified as problematic, has been found in Cisco ASA. This issue affects some unknown processing of the component DHCPv6. This manipulation causes improper input validation.
This vulnerability is registered as CVE-2014-2182. The attack requires access to the local network. No exploit is available.
It is suggested to install a patch to address this issue.
vuldb.com
CVE-2014-2183 | Cisco IOS XE up to 3.10S(.2) ESP Card L2TP Packet input validation (CSCun09973 / XFDB-92862)
2 days 12 hours ago
A vulnerability was found in Cisco IOS XE up to 3.10S(.2) and classified as problematic. The impacted element is an unknown function of the component ESP Card L2TP Packet Handler. Executing a manipulation can lead to improper input validation.
This vulnerability appears as CVE-2014-2183. The attack may be performed from remote. There is no available exploit.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2014-2180 | Cisco Unified Contact Center input validation (CSCun74133 / XFDB-92867)
2 days 12 hours ago
A vulnerability marked as problematic has been reported in Cisco Unified Contact Center. The affected element is an unknown function. This manipulation causes improper input validation.
The identification of this vulnerability is CVE-2014-2180. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2014-2184 | Cisco Unified Communications Manager IP Manager Assistant input validation (CSCun74352 / XFDB-92863)
2 days 12 hours ago
A vulnerability described as problematic has been identified in Cisco Unified Communications Manager. The impacted element is an unknown function of the component IP Manager Assistant. Such manipulation leads to improper input validation.
This vulnerability is referenced as CVE-2014-2184. It is possible to launch the attack remotely. No exploit is available.
A patch should be applied to remediate this issue.
vuldb.com
CVE-2014-2185 | Cisco Unified Communications Manager Call Detail Records information disclosure (CSCun74374 / XFDB-92865)
2 days 12 hours ago
A vulnerability classified as problematic has been found in Cisco Unified Communications Manager. This affects an unknown function of the component Call Detail Records Handler. Performing a manipulation results in information disclosure.
This vulnerability is identified as CVE-2014-2185. The attack can be initiated remotely. There is not any exploit available.
To fix this issue, it is recommended to deploy a patch.
vuldb.com
CVE-2014-1841 | South River Technologies Titan FTP Server up to 10.0.1732 src path traversal (EDB-31579 / ID 121809)
2 days 12 hours ago
A vulnerability was found in South River Technologies Titan FTP Server up to 10.0.1732. It has been classified as problematic. The affected element is an unknown function. The manipulation of the argument src leads to path traversal.
This vulnerability is referenced as CVE-2014-1841. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
Upgrading the affected component is recommended.
vuldb.com