LiveActive security incident?Get immediate response
CVE archive

June 2013

Browse CVE records published in June 2013, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 13 of 413 matching CVEs · Page 9 of 9.

Unknown · CVSS Not scored

CVE-2013-0549: Cross-site scripting (XSS) vulnerability in the Web Content Manager - Web Content Viewer Portlet in the ser...

Cross-site scripting (XSS) vulnerability in the Web Content Manager - Web Content Viewer Portlet in the server in IBM WebSphere Portal 7.0.0.x through 7.0.0.2 CF22 and 8.0.0.x through 8.0.0.1 CF5, when the IBM Portlet API is used, allows remote attackers to inject arbitrary web script or HTML via a crafted URL.

Published Jun 3, 2013 · Updated Aug 6, 2024

Unknown · CVSS Not scored

CVE-2013-0508: Multiple buffer overflows in IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monit...

Multiple buffer overflows in IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) 4.0.0 before FP14 and 4.0.1 before FP1 allow context-dependent attackers to execute arbitrary code or cause a denial of service via a long line in (1) hrfstable.idx, (2) hrdevice.idx, (3) hrstorage.idx, or (4) lotusmapfile in the SSM Config directory, or (5) .manifest.hive in the main agent directory.

Published Jun 5, 2013 · Updated Aug 6, 2024

Unknown · CVSS Not scored

CVE-2013-0304: ownCloud Server before 4.5.7 does not properly check ownership of calendars, which allows remote authentica...

ownCloud Server before 4.5.7 does not properly check ownership of calendars, which allows remote authenticated users to read arbitrary calendars via the calid parameter to /apps/calendar/export.php. NOTE: this issue has been reported as a cross-site request forgery (CSRF) vulnerability, but due to lack of details, it is uncertain what the root cause is.

Published Jun 5, 2014 · Updated Aug 6, 2024