Show filters
819 Total Results
Displaying 661-670 of 819
Sort by:
Attacker Value
Unknown
CVE-2013-4397
Disclosure Date: October 17, 2013 (last updated October 05, 2023)
Multiple integer overflows in the th_read function in lib/block.c in libtar before 1.2.20 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) name or (2) link in an archive, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2013-2231
Disclosure Date: October 01, 2013 (last updated October 05, 2023)
Unquoted Windows search path vulnerability in the QEMU Guest Agent service for Red Hat Enterprise Linux Desktop 6, HPC Node 6, Server 6, Workstation 6, Desktop Supplementary 6, Server Supplementary 6, Supplementary AUS 6.4, Supplementary EUS 6.4.z, and Workstation Supplementary 6, when installing on Windows, allows local users to gain privileges via a crafted program in an unspecified folder.
0
Attacker Value
Unknown
CVE-2013-5578
Disclosure Date: August 25, 2013 (last updated October 05, 2023)
Buffer overflow in the ToDot method in the WINGRAPHVIZLib.NEATO ActiveX control in WinGraphviz.dll in StarUML allows remote attackers to execute arbitrary code via a long argument.
0
Attacker Value
Unknown
CVE-2013-0149
Disclosure Date: August 05, 2013 (last updated October 05, 2023)
The OSPF implementation in Cisco IOS 12.0 through 12.4 and 15.0 through 15.3, IOS-XE 2.x through 3.9.xS, ASA and PIX 7.x through 9.1, FWSM, NX-OS, and StarOS before 14.0.50488 does not properly validate Link State Advertisement (LSA) type 1 packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service (routing disruption) or obtain sensitive packet information via a (1) unicast or (2) multicast packet, aka Bug IDs CSCug34485, CSCug34469, CSCug39762, CSCug63304, and CSCug39795.
0
Attacker Value
Unknown
CVE-2013-3979
Disclosure Date: July 25, 2013 (last updated October 05, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in the help pages in Web\Content\Help\ in the Web Client in IBM Cognos Command Center (aka Star Command Center or Star Analytics) before 10.1, when Internet Explorer is used, allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2013-3644
Disclosure Date: June 18, 2013 (last updated October 05, 2023)
Unspecified vulnerability in JustSystems Ichitaro 2006 through 2013; Ichitaro Pro through 2; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro Portable with oreplug; Ichitaro Viewer; and Ichitaro JUST School through 2010 allows remote attackers to execute arbitrary code via a crafted document.
0
Attacker Value
Unknown
CVE-2013-0709
Disclosure Date: March 01, 2013 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in dopvSTAR* 0091 allows remote attackers to inject arbitrary web script or HTML via the HTTP Referer header, which is not properly handled during display of the access log.
0
Attacker Value
Unknown
CVE-2013-0707
Disclosure Date: March 01, 2013 (last updated October 05, 2023)
Unspecified vulnerability in JustSystems Ichitaro 2006 and 2007, Ichitaro Government 2006 and 2007, Ichitaro Portable with oreplug, Hanako 2006 through 2013, Hanako Police, Hanako Police 3, and Hanako Police 2010 allows remote attackers to execute arbitrary code via a crafted file.
0
Attacker Value
Unknown
CVE-2012-4848
Disclosure Date: December 19, 2012 (last updated October 05, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in IBM Lotus Foundations Start before 1.2.2c allow remote authenticated users to inject arbitrary web script or HTML via a Webconfig Users user-attribute field, as demonstrated by the (1) First Name or (2) Last Name field.
0
Attacker Value
Unknown
CVE-2012-6048
Disclosure Date: November 27, 2012 (last updated October 05, 2023)
Guitar Pro 6.1.1 r10791 allows remote attackers to cause a denial of service (crash) via a long string in a gpx file.
0