|
286701
|
- |
|
microsoft
|
windows_server_2008 windows_rt windows_8.1 windows_7 windows_rt_8.1 windows_vista windows_8 windows_server_2012 windows_server_2003
|
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0318
|
2024-11-21 11:01 |
2014-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286702
|
- |
|
microsoft
|
windows_server_2008 windows_server_2012 windows_rt windows_8.1 windows_7 windows_rt_8.1 windows_8
|
Memory leak in the Local RPC (LRPC) server implementation in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 …
|
CWE-399
Resource Management Errors
|
CVE-2014-0316
|
2024-11-21 11:01 |
2014-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286703
|
- |
|
redhat opensuse
|
libvirt enterprise_linux opensuse enterprise_virtualization
|
libvirt 0.7.5 through 1.2.x before 1.2.5 allows local users to cause a denial of service (read block and hang) via a crafted XML document containing an XML external entity declaration in conjunction …
|
CWE-20
Improper Input Validation
|
CVE-2014-0179
|
2024-11-21 11:01 |
2014-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286704
|
- |
|
zarafa fedoraproject
|
zarafa webapp fedora
|
WebAccess in Zarafa before 7.1.10 and WebApp before 1.6 stores credentials in cleartext, which allows local Apache users to obtain sensitive information by reading the PHP session files.
|
CWE-310
Cryptographic Issues
|
CVE-2014-0103
|
2024-11-21 11:01 |
2014-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286705
|
- |
|
apache
|
http_server
|
The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script …
|
CWE-399
Resource Management Errors
|
CVE-2014-0231
|
2024-11-21 11:01 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286706
|
- |
|
apache debian redhat oracle
|
http_server debian_linux jboss_enterprise_application_platform secure_global_desktop enterprise_manager_ops_center
|
Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credent…
|
CWE-362
Race Condition
|
CVE-2014-0226
|
2024-11-21 11:01 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286707
|
- |
|
apache debian redhat
|
http_server debian_linux jboss_enterprise_application_platform
|
The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denia…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2014-0118
|
2024-11-21 11:01 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286708
|
- |
|
apache apple
|
http_server mac_os_x
|
The mod_proxy module in the Apache HTTP Server 2.4.x before 2.4.10, when a reverse proxy is enabled, allows remote attackers to cause a denial of service (child-process crash) via a crafted HTTP Conn…
|
CWE-20
Improper Input Validation
|
CVE-2014-0117
|
2024-11-21 11:01 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286709
|
- |
|
redhat
|
enterprise_mrg
|
Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, does not include the HTTPOnly flag in a Set-Cookie header for the session cookie, which makes it easier for remote attackers…
|
CWE-200
Information Exposure
|
CVE-2014-0174
|
2024-11-21 11:01 |
2014-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286710
|
- |
|
christos_zoulas php oracle opensuse debian
|
file php linux opensuse debian_linux
|
The cdf_read_short_sector function in cdf.c in file before 5.19, as used in the Fileinfo component in PHP before 5.4.30 and 5.5.x before 5.5.14, allows remote attackers to cause a denial of service (…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-0207
|
2024-11-21 11:01 |
2014-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|