|
276721
|
- |
|
3s_pocketnet_tech
|
3s_pocketnet_tech_video_management_software
|
Multiple buffer overflows in the PocketNetNVRMediaClientAxCtrl.NVRMediaViewer.1 control in 3S Pocketnet Tech VMS allow remote attackers to execute arbitrary code via a crafted string to the (1) Start…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9263
|
2024-11-21 11:20 |
2014-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276722
|
- |
|
pyyaml
|
libyaml
|
scanner.c in LibYAML 0.1.5 and 0.1.6, as used in the YAML-LibYAML (aka YAML-XS) module for Perl, allows context-dependent attackers to cause a denial of service (assertion failure and crash) via vect…
|
CWE-20
Improper Input Validation
|
CVE-2014-9130
|
2024-11-21 11:20 |
2014-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276723
|
- |
|
jasper_project
|
jasper
|
Multiple off-by-one errors in the (1) jpc_dec_cp_setfromcox and (2) jpc_dec_cp_setfromrgn functions in jpc/jpc_dec.c in JasPer 1.900.1 and earlier allow remote attackers to execute arbitrary code via…
|
CWE-189
Numeric Errors
|
CVE-2014-9029
|
2024-11-21 11:20 |
2014-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276724
|
- |
|
f5
|
big-ip
|
Cross-site scripting (XSS) vulnerability in the tree view (pl_tree.php) feature in Application Security Manager (ASM) in F5 BIG-IP 11.3.0 allows remote attackers to inject arbitrary web script or HTM…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9342
|
2024-11-21 11:20 |
2014-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276725
|
- |
|
phpmyadmin
|
phpmyadmin
|
Cross-site scripting (XSS) vulnerability in the redirection feature in url.php in phpMyAdmin 4.2.x before 4.2.13.1 allows remote attackers to inject arbitrary web script or HTML via the url parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2014-9219
|
2024-11-21 11:20 |
2014-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276726
|
- |
|
phpmyadmin
|
phpmyadmin
|
libraries/common.inc.php in phpMyAdmin 4.0.x before 4.0.10.7, 4.1.x before 4.1.14.8, and 4.2.x before 4.2.13.1 allows remote attackers to cause a denial of service (resource consumption) via a long p…
|
CWE-399
Resource Management Errors
|
CVE-2014-9218
|
2024-11-21 11:20 |
2014-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276727
|
- |
|
torch_gmbh
|
graylog2
|
Graylog2 before 0.92 allows remote attackers to bypass LDAP authentication via crafted wildcards.
|
CWE-287
Improper Authentication
|
CVE-2014-9217
|
2024-11-21 11:20 |
2014-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276728
|
- |
|
plex
|
media_server
|
Plex Media Server before 0.9.9.3 allows remote attackers to bypass the web server whitelist, conduct SSRF attacks, and execute arbitrary administrative actions via multiple crafted X-Plex-Url headers…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-9304
|
2024-11-21 11:20 |
2014-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276729
|
- |
|
entrypass
|
n5200_active_network_control_panel
|
EntryPass N5200 Active Network Control Panel allows remote attackers to read device memory and obtain the administrator username and password via a URL starting with an ASCII character o through z or…
|
CWE-200
Information Exposure
|
CVE-2014-9303
|
2024-11-21 11:20 |
2014-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276730
|
- |
|
alfresco
|
community_edition
|
Server-side request forgery (SSRF) vulnerability in the cmisbrowser servlet in Content Management Interoperability Service (CMIS) in Alfresco Community Edition 5.0.a and earlier allows remote attacke…
|
NVD-CWE-Other
|
CVE-2014-9302
|
2024-11-21 11:20 |
2014-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|