|
276991
|
- |
|
corel
|
pdf_fusion
|
Untrusted search path vulnerability in Corel PDF Fusion allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse quserex.dll file that is located in the same …
|
NVD-CWE-Other
|
CVE-2014-8396
|
2024-11-21 11:19 |
2015-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276992
|
- |
|
corel
|
painter
|
Untrusted search path vulnerability in Corel Painter 2015 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wacommt.dll file that is located in the sam…
|
NVD-CWE-Other
|
CVE-2014-8395
|
2024-11-21 11:19 |
2015-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276993
|
- |
|
corel
|
corelcad
|
Multiple untrusted search path vulnerabilities in Corel CAD 2014 allow local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse (1) FxManagedCommands_3.08_9.tx or (2…
|
NVD-CWE-Other
|
CVE-2014-8394
|
2024-11-21 11:19 |
2015-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276994
|
- |
|
opensuse mozilla
|
opensuse firefox
|
Mozilla Firefox before 35.0 on Windows allows remote attackers to bypass the Gecko Media Plugin (GMP) sandbox protection mechanism by leveraging access to the GMP process, as demonstrated by the Open…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8643
|
2024-11-21 11:19 |
2015-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276995
|
- |
|
mozilla opensuse
|
seamonkey opensuse firefox
|
Mozilla Firefox before 35.0 and SeaMonkey before 2.32 do not consider the id-pkix-ocsp-nocheck extension in deciding whether to trust an OCSP responder, which makes it easier for remote attackers to …
|
CWE-310
Cryptographic Issues
|
CVE-2014-8642
|
2024-11-21 11:19 |
2015-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276996
|
- |
|
mozilla
|
seamonkey firefox firefox_esr
|
Use-after-free vulnerability in the WebRTC implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, and SeaMonkey before 2.32 allows remote attackers to execute arbitrary code via…
|
NVD-CWE-Other
|
CVE-2014-8641
|
2024-11-21 11:19 |
2015-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276997
|
- |
|
mozilla opensuse
|
firefox opensuse seamonkey
|
The mozilla::dom::AudioParamTimeline::AudioNodeInputValue function in the Web Audio API implementation in Mozilla Firefox before 35.0 and SeaMonkey before 2.32 does not properly restrict timeline ope…
|
CWE-362
Race Condition
|
CVE-2014-8640
|
2024-11-21 11:19 |
2015-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276998
|
- |
|
mozilla
|
seamonkey firefox firefox_esr thunderbird
|
Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 do not properly interpret Set-Cookie headers within responses that have a 407 (aka Proxy …
|
NVD-CWE-Other
|
CVE-2014-8639
|
2024-11-21 11:19 |
2015-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276999
|
- |
|
mozilla
|
firefox firefox_esr thunderbird seamonkey
|
The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 omits the CORS Origin header, which allows rem…
|
CWE-352
Origin Validation Error
|
CVE-2014-8638
|
2024-11-21 11:19 |
2015-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277000
|
- |
|
mozilla
|
seamonkey firefox
|
Mozilla Firefox before 35.0 and SeaMonkey before 2.32 do not properly initialize memory for BMP images, which allows remote attackers to obtain sensitive information from process memory via a crafted…
|
CWE-200
Information Exposure
|
CVE-2014-8637
|
2024-11-21 11:19 |
2015-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|