|
278281
|
- |
|
joomla
|
joomla\!
|
Unspecified vulnerability in Joomla! before 2.5.4 before 2.5.26, 3.x before 3.2.6, and 3.3.x before 3.3.5 allows attackers to cause a denial of service via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2014-7229
|
2024-11-21 11:16 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278282
|
- |
|
zeromq
|
zeromq
|
libzmq (aka ZeroMQ/C++) 4.0.x before 4.0.5 does not ensure that nonces are unique, which allows man-in-the-middle attackers to conduct replay attacks via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2014-7203
|
2024-11-21 11:16 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278283
|
- |
|
zeromq
|
zeromq
|
stream_engine.cpp in libzmq (aka ZeroMQ/C++)) 4.0.5 before 4.0.5 allows man-in-the-middle attackers to conduct downgrade attacks via a crafted connection request.
|
NVD-CWE-noinfo
|
CVE-2014-7202
|
2024-11-21 11:16 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278284
|
- |
|
bassmaster_project
|
bassmaster
|
Eval injection vulnerability in the internals.batch function in lib/batch.js in the bassmaster plugin before 1.5.2 for the hapi server framework for Node.js allows remote attackers to execute arbitra…
|
CWE-94
Code Injection
|
CVE-2014-7205
|
2024-11-21 11:16 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278285
|
- |
|
python apple
|
python mac_os_x
|
Integer overflow in bufferobject.c in Python before 2.7.8 allows context-dependent attackers to obtain sensitive information from process memory via a large size and offset in a "buffer" function.
|
CWE-189
Numeric Errors
|
CVE-2014-7185
|
2024-11-21 11:16 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278286
|
- |
|
arubanetworks
|
arubaos
|
Unspecified vulnerability in administrative interfaces in ArubaOS 6.3.1.11, 6.3.1.11-FIPS, 6.4.2.1, and 6.4.2.1-FIPS on Aruba controllers allows remote attackers to bypass authentication, and obtain …
|
NVD-CWE-noinfo
|
CVE-2014-7299
|
2024-11-21 11:16 |
2014-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278287
|
- |
|
getmail
|
getmail
|
The POP3-over-SSL implementation in getmail 4.0.0 through 4.44.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof POP3 servers and obtain sensiti…
|
CWE-310
Cryptographic Issues
|
CVE-2014-7275
|
2024-11-21 11:16 |
2014-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278288
|
- |
|
getmail
|
getmail
|
The IMAP-over-SSL implementation in getmail 4.44.0 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) field of the X.509 certificate, which allows man-in…
|
CWE-310
Cryptographic Issues
|
CVE-2014-7274
|
2024-11-21 11:16 |
2014-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278289
|
- |
|
getmail
|
getmail
|
The IMAP-over-SSL implementation in getmail 4.0.0 through 4.43.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof IMAP servers and obtain sensiti…
|
CWE-310
Cryptographic Issues
|
CVE-2014-7273
|
2024-11-21 11:16 |
2014-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278290
|
- |
|
mediawiki
|
mediawiki
|
The (1) Special:Preferences and (2) Special:UserLogin pages in MediaWiki before 1.19.20, 1.22.x before 1.22.12 and 1.23.x before 1.23.5 allows remote authenticated users to conduct cross-site scripti…
|
CWE-79
Cross-site Scripting
|
CVE-2014-7295
|
2024-11-21 11:16 |
2014-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|