Search Results (29390 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2013-7052 1 Dlink 2 Dir-100, Dir-100 Firmware 2024-11-21 9.8 Critical
D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script
CVE-2013-6792 1 Google 1 Android 2024-11-21 9.8 Critical
Google Android prior to 4.4 has an APK Signature Security Bypass Vulnerability
CVE-2013-6362 1 Xerox 24 Colorqube 9201, Colorqube 9201 Firmware, Colorqube 9202 and 21 more 2024-11-21 9.8 Critical
Xerox ColorCube and WorkCenter devices in 2013 had hardcoded FTP and shell user accounts.
CVE-2013-6295 1 Prestashop 1 Prestashop 2024-11-21 9.8 Critical
PrestaShop 1.5.5 vulnerable to privilege escalation via a Salesman account via upload module
CVE-2013-6276 1 Qnap 10 Viocard-100, Viocard-100 Firmware, Viocard-30 and 7 more 2024-11-21 9.8 Critical
QNAP F_VioCard 2312 and F_VioGate 2308 have hardcoded entries in authorized_keys files. NOTE: 1. All active models are not affected. The last affected model was EOL since 2010. 2. The legacy authorization mechanism is no longer adopted in all active models
CVE-2013-6236 1 Izoncam 2 Izon Ip, Izon Ip Firmware 2024-11-21 9.8 Critical
IZON IP 2.0.2: hard-coded password vulnerability
CVE-2013-6225 1 Livezilla 1 Livezilla 2024-11-21 9.8 Critical
LiveZilla 5.0.1.4 has a Remote Code Execution vulnerability
CVE-2013-5945 1 Dlink 16 Dsr-1000, Dsr-1000 Firmware, Dsr-1000n and 13 more 2024-11-21 9.8 Critical
Multiple SQL injection vulnerabilities in D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware before 1.08B44; and DSR-500, DSR-500N, DSR-1000, and DSR-1000N with firmware before 1.08B77 allow remote attackers to execute arbitrary SQL commands via the password to (1) the login.authenticate function in share/lua/5.1/teamf1lualib/login.lua or (2) captivePortal.lua.
CVE-2013-5743 1 Zabbix 1 Zabbix 2024-11-21 9.8 Critical
Multiple SQL injection vulnerabilities in Zabbix 1.8.x before 1.8.18rc1, 2.0.x before 2.0.9rc1, and 2.1.x before 2.1.7.
CVE-2013-5122 1 Cisco 8 Linksys E4200, Linksys E4200 Firmware, Linksys Ea2700 and 5 more 2024-11-21 9.8 Critical
Cisco Linksys Routers EA2700, EA3500, E4200, EA4500: A bug can cause an unsafe TCP port to open which leads to unauthenticated access
CVE-2013-5027 1 O-dyn 1 Collabtive 2024-11-21 9.8 Critical
Collabtive 1.0 has incorrect access control
CVE-2013-4982 1 Avtech 2 Avn801 Dvr, Avn801 Dvr Firmware 2024-11-21 9.8 Critical
AVTECH AVN801 DVR has a security bypass via the administration login captcha
CVE-2013-4976 1 Hikvision 2 Ds-2cd7153-e, Ds-2cd7153-e Firmware 2024-11-21 9.8 Critical
Hikvision DS-2CD7153-E IP Camera has security bypass via hardcoded credentials
CVE-2013-4864 1 Micasaverde 2 Veralite, Veralite Firmware 2024-11-21 9.8 Critical
MiCasaVerde VeraLite with firmware 1.5.408 allows remote attackers to send HTTP requests to intranet servers via the url parameter to cgi-bin/cmh/proxy.sh, related to a Server-Side Request Forgery (SSRF) issue.
CVE-2013-4857 1 Dlink 2 Dir-865l, Dir-865l Firmware 2024-11-21 9.8 Critical
D-Link DIR-865L has PHP File Inclusion in the router xml file.
CVE-2013-4743 1 Static Http Server Project 1 Static Http Server 2024-11-21 9.8 Critical
Static HTTP Server 1.0 has a Local Overflow
CVE-2013-4658 1 Linksys 2 Ea6500, Ea6500 Firmware 2024-11-21 9.8 Critical
Linksys EA6500 has SMB Symlink Traversal allowing symbolic links to be created to locations outside of the Samba share.
CVE-2013-4657 1 Netgear 4 Wnr3500l, Wnr3500l Firmware, Wnr3500u and 1 more 2024-11-21 9.8 Critical
Symlink Traversal vulnerability in NETGEAR WNR3500U and WNR3500L due to misconfiguration in the SMB service.
CVE-2013-4656 1 Asus 4 Rt-ac66u, Rt-ac66u Firmware, Rt-n56u and 1 more 2024-11-21 9.8 Critical
Symlink Traversal vulnerability in ASUS RT-AC66U and RT-N56U due to misconfiguration in the SMB service.
CVE-2013-4654 1 Tp-link 4 Tl-1043nd, Tl-1043nd Firmware, Tl-wdr4300 and 1 more 2024-11-21 9.8 Critical
Symlink Traversal vulnerability in TP-LINK TL-WDR4300 and TL-1043ND..