| OSVDB ID | Disclosure Date | Title |
|
93451
Description:
libvirt contains a flaw in the storage pool manager that may allow a remote denial of service. The issue is triggered when handling a socket file description when the 'to list all volumes for the particular pool' request was issued. This may allow a remote attacker to crash the program.
|
2013-05-16
|
libvirt Storage Pool Manager Socket File Descriptor Handling Remote DoS
|
|
93452
Description:
Mail On Update Plugin for WordPress contains a flaw that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps or explicit confirmation for sensitive transactions. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into changing email options in the context of their session with the application, without further prompting or verification.
|
2013-05-16
|
Mail On Update Plugin for WordPress Email Option Manipulation CSRF
|
|
93454
Description:
Multiple RSA products contains a flaw that may lead to the unauthorized disclosure of sensitive information. The issue is due to the program using an encryption key and encryption algorithm that is considered ineffective. This may allow a remote attacker to gain access to potentially sensitive information.
|
2013-05-16
|
RSA SecurID Multiple Product Node Secret Encryption Weakness Remote Information Disclosure
|
|
93455
Description:
EMC VNX Control Station and Celerra Control Station contain a flaw that leads to unauthorized privileges being gained. The issue is due to certain unspecified script files, which may allow a local attacker to gain elevated privileges.
|
2013-05-16
|
EMC VNX / Celerra Control Station Unspecified Script Files Local Privilege Escalation
|
|
93453
Description:
OpenStack Nova contains a flaw that may allow a denial of service. The issue is triggered when the program fails to check the virtual size of a specially crafted qcow2 image when using it for ephemeral storage. This may allow a context-dependent attacker to cause a loss in availability by consuming all available disk space.
|
2013-05-16
|
OpenStack Nova Crafted qcow2 Image Disk Consumption DoS
|
|
93459
Description:
Apple iTunes contains a flaw related to certificate validation. The issue is due to the program not properly verifying the HTTPS Server's certificate. This may allow an attacker with access to network traffic (e.g. MiTM, DNS cache poisoning) to spoof the HTTPS server via an arbitrary certificate that appears valid. Such an attack would allow for the interception of sensitive traffic, and potentially allow for the injection of content.
|
2013-05-16
|
Apple iTunes HTTPS Server Certificate Validation MitM Spoofing Weakness
|
|
93444
Description:
Mutiny contains a flaw that allows an attacker to traverse outside of a restricted path. The issue is due to the EditDocument servlet not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied via the UPLOAD, DELETE, CUT and COPY commands. This directory traversal attack would allow a remote attacker to upload arbitrary files.
|
2013-05-15
|
Mutiny EditDocument Servlet Multiple Command Traversal Arbitrary File Upload
|
|
93409
Description:
Cisco Secure Access Control Server (ACS) contains a flaw in the Web Interface that allows a remote, user-assisted attacker to conduct a session fixation attack. This flaw exists because the application, when establishing a new session, does not invalidate an existing session identifier and assign a new one. With a specially crafted request fixating the session identifier, a context-dependent attacker can ensure a user authenticates with the known session identifier, allowing the session to be subsequently hijacked.
|
2013-05-15
|
Cisco Secure Access Control Server (ACS) Web Interface Session Fixation
|
|
93410
Description:
Cisco TelePresence Supervisor MSE 8050 contains a flaw that may allow a remote denial of service. The issue is triggered during the handling of a saturation of TCP connection requests. This may allow a remote attacker to cause a consumption of CPU resources and a reload on the system.
|
2013-05-15
|
Cisco TelePresence Supervisor MSE 8050 TCP Connection Request Saturation Remote DoS
|
|
93408
Description:
Python contains a TYPE flaw in the ssl.match_hostname() function that may allow a denial of service. The issue is triggered during the handling of a malformed SSL certificate with a large number of asterisks. This may allow a context-dependent attacker to crash the program.
|
2013-05-15
|
Python python-backports ssl.match_hostname() Function Malformed SSL Certificate Handling DoS
|
|
93448
Description:
Exponent CMS contains a flaw that allows an attacker to traverse outside of a restricted path. The issue is due to the /install/popup.php script not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied via the 'page' parameter. This directory traversal attack would allow a remote attacker to gain access to arbitrary files.
|
2013-05-15
|
Exponent CMS /install/popup.php page Parameter Traversal Arbitrary File Access
|
|
93447
Description:
Exponent CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'src' and 'username' parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2013-05-15
|
Exponent CMS index.php Multiple Parameter SQL Injection
|
|
93324
Description:
Adobe Flash Player and AIR contain a memory corruption flaw that is triggered as certain unspecified user-supplied input is not properly sanitized. With a specially crafted file, a context-dependent attacker can corrupt memory to cause a denial of service or potentially execute arbitrary code.
|
2013-05-14
|
Adobe Flash Player / AIR Unspecified Memory Corruption (2013-3325)
|
|
93291
Description:
Microsoft IE contains an unspecified use-after-free error that may allow a context-dependent attacker to dereference already freed memory and potentially execute arbitrary code. No further details have been provided by the vendor.
|
2013-05-14
|
Microsoft IE Unspecified Use-after-free Arbitrary Code Execution (2013-1306)
|
|
93371
Description:
ownCloud contains a flaw that allows a remote user to execute arbitrary PHP code. This flaw exists because the program does not properly verify or sanitize specially crafted user-uploaded files. By uploading a crafted file, the remote system will place the file in a user-accessible path. Making a direct request to the uploaded file will allow the user to execute the script with the privileges of the web server. This issue exists because of an inadequate blacklist preventing dangerous file uploads.
|
2013-05-14
|
ownCloud Crafted File Upload Arbitrary Code Execution
|
|
93289
Description:
Microsoft IE contains an unspecified flaw that may allow a context-dependent attacker to gain access to potentially sensitive information stored in JSON data files. No further details have been provided by the vendor.
|
2013-05-14
|
Microsoft IE Unspecified JSON Data File Information Disclosure
|
|
93290
Description:
Microsoft IE contains an unspecified use-after-free error that may allow a context-dependent attacker to dereference already freed memory and potentially execute arbitrary code. No further details have been provided by the vendor.
|
2013-05-14
|
Microsoft IE Unspecified Use-after-free Arbitrary Code Execution (2013-0811)
|
|
93292
Description:
Microsoft IE contains an unspecified use-after-free error that may allow a context-dependent attacker to dereference already freed memory and potentially execute arbitrary code. No further details have been provided by the vendor.
|
2013-05-14
|
Microsoft IE Unspecified Use-after-free Arbitrary Code Execution (2013-1307)
|
|
93293
Description:
Microsoft IE contains an unspecified use-after-free error that may allow a context-dependent attacker to dereference already freed memory and potentially execute arbitrary code. No further details have been provided by the vendor.
|
2013-05-14
|
Microsoft IE Unspecified Use-after-free Arbitrary Code Execution (2013-1308)
|
|
93294
Description:
Microsoft IE contains an unspecified use-after-free error that may allow a context-dependent attacker to dereference already freed memory and potentially execute arbitrary code. No further details have been provided by the vendor.
|
2013-05-14
|
Microsoft IE Unspecified Use-after-free Arbitrary Code Execution (2013-1309)
|
|
93295
Description:
Microsoft IE contains an unspecified use-after-free error that may allow a context-dependent attacker to dereference already freed memory and potentially execute arbitrary code. No further details have been provided by the vendor.
|
2013-05-14
|
Microsoft IE Unspecified Use-after-free Arbitrary Code Execution (2013-1310)
|
|
93296
Description:
Microsoft IE contains an unspecified use-after-free error that may allow a context-dependent attacker to dereference already freed memory and potentially execute arbitrary code. No further details have been provided by the vendor.
|
2013-05-14
|
Microsoft IE Unspecified Use-after-free Arbitrary Code Execution (2013-1311)
|
|
93297
Description:
Microsoft IE contains an unspecified use-after-free error that may allow a context-dependent attacker to dereference already freed memory and potentially execute arbitrary code. No further details have been provided by the vendor.
|
2013-05-14
|
Microsoft IE Unspecified Use-after-free Arbitrary Code Execution (2013-1312)
|
|
93298
Description:
Microsoft IE contains an unspecified use-after-free error that may allow a context-dependent attacker to dereference already freed memory and potentially execute arbitrary code. No further details have been provided by the vendor.
|
2013-05-14
|
Microsoft IE Unspecified Use-after-free Arbitrary Code Execution (2013-1313)
|
|
93337
Description:
Adobe Reader and Acrobat contain a memory corruption flaw that is triggered as certain unspecified user-supplied input is not properly sanitized. With a specially crafted file, a context-dependent attacker can corrupt memory to cause a denial of service or potentially execute arbitrary code.
|
2013-05-14
|
Adobe Reader / Acrobat Unspecified Memory Corruption (2013-2720)
|
|
93338
Description:
Adobe Reader and Acrobat contain a memory corruption flaw that is triggered as certain unspecified user-supplied input is not properly sanitized. With a specially crafted file, a context-dependent attacker can corrupt memory to cause a denial of service or potentially execute arbitrary code.
|
2013-05-14
|
Adobe Reader / Acrobat Unspecified Memory Corruption (2013-2721)
|
|
93339
Description:
Adobe Reader and Acrobat contain a memory corruption flaw that is triggered as certain unspecified user-supplied input is not properly sanitized. With a specially crafted file, a context-dependent attacker can corrupt memory to cause a denial of service or potentially execute arbitrary code.
|
2013-05-14
|
Adobe Reader / Acrobat Unspecified Memory Corruption (2013-2722)
|
|
93340
Description:
Adobe Reader and Acrobat contain a memory corruption flaw that is triggered as certain unspecified user-supplied input is not properly sanitized. With a specially crafted file, a context-dependent attacker can corrupt memory to cause a denial of service or potentially execute arbitrary code.
|
2013-05-14
|
Adobe Reader / Acrobat Unspecified Memory Corruption (2013-2723)
|
|
93341
Description:
Adobe Reader and Acrobat contain a memory corruption flaw that is triggered as certain unspecified user-supplied input is not properly sanitized. With a specially crafted file, a context-dependent attacker can corrupt memory to cause a denial of service or potentially execute arbitrary code.
|
2013-05-14
|
Adobe Reader / Acrobat Unspecified Memory Corruption (2013-2725)
|
|
93342
Description:
Adobe Reader and Acrobat contain a memory corruption flaw that is triggered as certain unspecified user-supplied input is not properly sanitized. With a specially crafted file, a context-dependent attacker can corrupt memory to cause a denial of service or potentially execute arbitrary code.
|
2013-05-14
|
Adobe Reader / Acrobat Unspecified Memory Corruption (2013-2726)
|
|
93343
Description:
Adobe Reader and Acrobat contain a memory corruption flaw that is triggered as certain unspecified user-supplied input is not properly sanitized. With a specially crafted file, a context-dependent attacker can corrupt memory to cause a denial of service or potentially execute arbitrary code.
|
2013-05-14
|
Adobe Reader / Acrobat Unspecified Memory Corruption (2013-2731)
|
|
93359
Description:
Adobe Reader contains an unspecified flaw related to the way the program handles blacklisted domains, which may allow a context-dependent attacker to have an unspecified impact, likely relating to bypassing the domain blacklisting. No further details have been provided by the vendor.
|
2013-05-14
|
Adobe Reader Blacklisted Domain Handling Unspecified Issue
|
|
93306
Description:
Microsoft Office Publisher contains a flaw that is triggered during the handling of a corrupt interface pointer in a specially crafted PUB file. This may allow a context-dependent attacker to potentially execute arbitrary code.
|
2013-05-14
|
Microsoft Office Publisher PUB File Corrupt Interface Pointer Handling Arbitrary Code Execution
|
|
93307
Description:
Microsoft Office Publisher contains a flaw that is triggered during the handling of a return value in a specially crafted PUB file. This may allow a context-dependent attacker to potentially execute arbitrary code.
|
2013-05-14
|
Microsoft Office Publisher PUB File Return Value Handling Arbitrary Code Execution
|
|
93308
Description:
Microsoft Office Publisher contains an overflow condition that is triggered as user-supplied input is not properly validated during the handling of a specially crafted PUB file. This may allow a context-dependent attacker to cause a buffer overflow, resulting in a denial of service or potentially allowing the execution of arbitrary code.
|
2013-05-14
|
Microsoft Office Publisher PUB File Handling Buffer Overflow
|
|
93309
Description:
Microsoft Office Publisher contains a flaw that is triggered during the validation of a return value in a specially crafted PUB file. This may allow a context-dependent attacker to potentially execute arbitrary code.
|
2013-05-14
|
Microsoft Office Publisher PUB File Return Value Validation Arbitrary Code Execution
|
|
93310
Description:
Microsoft Office Publisher contains a flaw that is triggered during the handling of an invalid range check in a specially crafted PUB file. This may allow a context-dependent attacker to potentially execute arbitrary code.
|
2013-05-14
|
Microsoft Office Publisher PUB File Invalid Range Check Handling Arbitrary Code Execution
|
|
93311
Description:
Microsoft Office Publisher contains a flaw that is triggered during the handling of an incorrect NULL value in a specially crafted PUB file. This may allow a context-dependent attacker to potentially execute arbitrary code.
|
2013-05-14
|
Microsoft Office Publisher PUB File Incorrect NULL Value Handling Arbitrary Code Execution
|
|
93312
Description:
Microsoft Office Publisher contains a flaw that is triggered during the handling of a signed integer in a specially crafted PUB file. This may allow a context-dependent attacker to potentially execute arbitrary code.
|
2013-05-14
|
Microsoft Office Publisher PUB File Signed Integer Handling Arbitrary Code Execution
|
|
93313
Description:
Microsoft Office Publisher contains a flaw that is triggered during the handling of a pointer in a specially crafted PUB file. This may allow a context-dependent attacker to potentially execute arbitrary code.
|
2013-05-14
|
Microsoft Office Publisher PUB File Pointer Handling Arbitrary Code Execution
|