Search Results (118663 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2013-2567 1 Zavio 4 F3105, F3105 Firmware, F312a and 1 more 2024-11-21 7.5 High
An Authentication Bypass vulnerability exists in the web interface in Zavio IP Cameras through 1.6.03 due to a hardcoded admin account found in boa.conf, which lets a remote malicious user obtain sensitive information.
CVE-2013-2512 1 Ftpd Project 1 Ftpd 2024-11-21 9.8 Critical
The ftpd gem 0.2.1 for Ruby allows remote attackers to execute arbitrary OS commands via shell metacharacters in a LIST or NLST command argument within FTP protocol traffic.
CVE-2013-2499 1 Simplehrm 1 Simplehrm 2024-11-21 7.5 High
SimpleHRM 2.3 and earlier could allow remote attackers to bypass the authentication process in 'user_manager.php' via spoofing a cookie.
CVE-2013-2474 1 Aws-dms 1 Aws Xms 2024-11-21 7.5 High
Directory traversal vulnerability in AWS XMS 2.5 allows remote attackers to view arbitrary files via the 'what' parameter.
CVE-2013-2294 1 Viewgit Project 1 Viewgit 2024-11-21 6.1 Medium
Multiple cross-site scripting (XSS) vulnerabilities in ViewGit before 0.0.7 allow remote repository users to inject arbitrary web script or HTML via a (1) tag name to the Shortlog table in templates/shortlog.php or branch name to the (2) Shortlog table in templates/shortlog.php or (3) Heads table in plates/summary.php.
CVE-2013-2267 1 Fudforum 1 Fudforum 2024-11-21 7.2 High
PHP Code Injection vulnerability in FUDforum Bulletin Board Software 3.0.4 could allow remote attackers to execute arbitrary code on the system.
CVE-2013-2233 1 Redhat 1 Ansible 2024-11-21 N/A
Ansible before 1.2.1 makes it easier for remote attackers to conduct man-in-the-middle attacks by leveraging failure to cache SSH host keys.
CVE-2013-2228 1 Saltstack 1 Saltstack 2024-11-21 8.1 High
SaltStack RSA Key Generation allows remote users to decrypt communications
CVE-2013-2109 1 Undolog 1 Wp Cleanfix 2024-11-21 8.8 High
WordPress plugin wp-cleanfix has Remote Code Execution
CVE-2013-2103 1 Redhat 1 Openshift 2024-11-21 8.1 High
OpenShift cartridge allows remote URL retrieval
CVE-2013-2097 1 Zpanel Project 1 Zpanel 2024-11-21 7.8 High
ZPanel through 10.1.0 has Remote Command Execution
CVE-2013-2093 1 Dolibarr 1 Dolibarr Erp\/crm 2024-11-21 9.8 Critical
Dolibarr ERP/CRM 3.3.1 does not properly validate user input in viewimage.php and barcode.lib.php which allows remote attackers to execute arbitrary commands.
CVE-2013-2092 1 Dolibarr 1 Dolibarr Erp\/crm 2024-11-21 6.1 Medium
Cross-site Scripting (XSS) in Dolibarr ERP/CRM 3.3.1 allows remote attackers to inject arbitrary web script or HTML in functions.lib.php.
CVE-2013-2091 1 Dolibarr 1 Dolibarr Erp\/crm 2024-11-21 9.8 Critical
SQL injection vulnerability in Dolibarr ERP/CRM 3.3.1 allows remote attackers to execute arbitrary SQL commands via the 'pays' parameter in fiche.php.
CVE-2013-2060 1 Redhat 1 Openshift 2024-11-21 9.8 Critical
The download_from_url function in OpenShift Origin allows remote attackers to execute arbitrary commands via shell metacharacters in the URL of a request to download a cart.
CVE-2013-2049 1 Redhat 2 Cloudforms Management Engine, Cloudforms Managementengine 2024-11-21 N/A
Red Hat CloudForms 2 Management Engine (CFME) allows remote attackers to conduct session tampering attacks by leveraging use of a static secret_token.rb secret.
CVE-2013-2011 1 Automattic 1 W3 Super Cache 2024-11-21 8.8 High
WordPress W3 Super Cache Plugin before 1.3.2 contains a PHP code-execution vulnerability which could allow remote attackers to inject arbitrary code. This issue exists because of an incomplete fix for CVE-2013-2009.
CVE-2013-2010 2 Automattic, Boldgrid 2 Wp Super Cache, W3 Total Cache 2024-11-21 9.8 Critical
WordPress W3 Total Cache Plugin 0.9.2.8 has a Remote PHP Code Execution Vulnerability
CVE-2013-2009 1 Automattic 1 Wp Super Cache 2024-11-21 8.8 High
WordPress WP Super Cache Plugin 1.2 has Remote PHP Code Execution
CVE-2013-20002 1 Themify 1 Framework 2024-11-21 9.8 Critical
Elemin allows remote attackers to upload and execute arbitrary PHP code via the Themify framework (before 1.2.2) wp-content/themes/elemin/themify/themify-ajax.php file.