|
281411
|
- |
|
openstack
|
horizon
|
Cross-site scripting (XSS) vulnerability in the Groups panel in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2 allows remote administrators to inject ar…
|
CWE-79
Cross-site Scripting
|
CVE-2014-8578
|
2024-11-21 11:19 |
2014-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281412
|
- |
|
croogo
|
croogo
|
Multiple cross-site scripting (XSS) vulnerabilities in Croogo before 2.1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) data[Contact][title] parameter to admin/contacts/c…
|
CWE-79
Cross-site Scripting
|
CVE-2014-8577
|
2024-11-21 11:19 |
2014-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281413
|
- |
|
bittorrent
|
bootstrap-dht
|
The lazy_bdecode function in BitTorrent bootstrap-dht (aka Bootstrap) allows remote attackers to execute arbitrary code via a crafted packet, which triggers an out-of-bounds read, related to "Imprope…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-8509
|
2024-11-21 11:19 |
2014-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281414
|
- |
|
citrix
|
xenmobile
|
Citrix XenMobile MDX Toolkit before 9.0.4, when used to wrap iOS 8 applications, does not properly encrypt cached application data, which allows context-dependent attackers to obtain sensitive inform…
|
CWE-310
Cryptographic Issues
|
CVE-2014-8495
|
2024-11-21 11:19 |
2014-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281415
|
- |
|
shim_project
|
shim
|
The default configuration in systemd-shim 8 enables the Abandon debugging clause, which allows local users to cause a denial of service via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2014-8399
|
2024-11-21 11:19 |
2014-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281416
|
- |
|
hijabmodern
|
hijab_modern
|
The Hijab Modern (aka com.Aisyaidea.HijabModern) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain …
|
CWE-310
Cryptographic Issues
|
CVE-2014-8538
|
2024-11-21 11:19 |
2014-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281417
|
- |
|
mcafee
|
network_data_loss_prevention
|
McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to obtain sensitive information by reading the logs.
|
CWE-200
Information Exposure
|
CVE-2014-8537
|
2024-11-21 11:19 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281418
|
- |
|
mcafee
|
network_data_loss_prevention
|
McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to obtain sensitive information by reading unspecified error messages.
|
CWE-200
Information Exposure
|
CVE-2014-8536
|
2024-11-21 11:19 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281419
|
- |
|
mcafee
|
network_data_loss_prevention
|
McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to bypass intended restriction on unspecified functionality via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2014-8535
|
2024-11-21 11:19 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281420
|
- |
|
mcafee
|
network_data_loss_prevention
|
Unspecified vulnerability in the login form in McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to cause a denial of service via a crafted value in the domain field.
|
NVD-CWE-noinfo
|
CVE-2014-8534
|
2024-11-21 11:19 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|