- EPSS 28.03%
- Veröffentlicht 16.10.2013 17:55:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vecto...
- EPSS 4.9%
- Veröffentlicht 16.10.2013 17:55:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, JavaFX 2.2.40 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and ava...
- EPSS 15.43%
- Veröffentlicht 16.10.2013 17:55:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vecto...
- EPSS 14.28%
- Veröffentlicht 16.10.2013 17:55:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, JRockit R28.2.8 and earlier, JRockit R27.7.6 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect conf...
CVE-2013-1943
- EPSS 0.12%
- Veröffentlicht 16.07.2013 14:08:50
- Zuletzt bearbeitet 11.04.2025 00:51:21
The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are specified during allocation of memory slots for use in a guest's physical address space, which allows local users to gain privileges or obtain sensitive info...
CVE-2013-1896
- EPSS 38.56%
- Veröffentlicht 10.07.2013 20:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
mod_dav.c in the Apache HTTP Server before 2.2.25 does not properly determine whether DAV is enabled for a URI, which allows remote attackers to cause a denial of service (segmentation fault) via a MERGE request in which the URI is configured for han...
CVE-2013-1690
- EPSS 49.62%
- Veröffentlicht 26.06.2013 03:19:10
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly handle onreadystatechange events in conjunction with page reloading, which allows remote attackers to cause...
CVE-2013-1862
- EPSS 41.76%
- Veröffentlicht 10.06.2013 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
mod_rewrite.c in the mod_rewrite module in the Apache HTTP Server 2.2.x before 2.2.25 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to execute arbitrary commands via an HTTP request containi...
- EPSS 21.41%
- Veröffentlicht 29.05.2013 14:29:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
schpw.c in the kpasswd service in kadmind in MIT Kerberos 5 (aka krb5) before 1.11.3 does not properly validate UDP packets before sending responses, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a for...
CVE-2012-6137
- EPSS 0.19%
- Veröffentlicht 21.05.2013 18:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
rhn-migrate-classic-to-rhsm tool in Red Hat subscription-manager does not verify the Red Hat Network Classic server's X.509 certificate when migrating to a Certificate-based Red Hat Network, which allows remote man-in-the-middle attackers to obtain s...