|
281671
|
- |
|
izarc
|
izarc
|
IZArc 4.1.8 displays a file's name on the basis of a ZIP archive's Central Directory entry, but launches this file on the basis of a ZIP archive's local file header, which allows user-assisted remote…
|
CWE-94
Code Injection
|
CVE-2014-2720
|
2024-11-21 11:06 |
2014-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281672
|
- |
|
hp
|
operations_manager_i
|
Unspecified vulnerability in HP Operations Manager i 9.1 through 9.13 and 9.2 through 9.24 allows remote authenticated users to execute arbitrary code by leveraging the OMi operator role.
|
NVD-CWE-noinfo
|
CVE-2014-2607
|
2024-11-21 11:06 |
2014-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281673
|
- |
|
emc
|
documentum_d2
|
EMC Documentum D2 3.1 before P20, 3.1 SP1 before P02, 4.0 before P10, 4.1 before P13, and 4.2 before P01 allows remote authenticated users to bypass intended access restrictions and execute arbitrary…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-2504
|
2024-11-21 11:06 |
2014-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281674
|
- |
|
emerson
|
deltav
|
Emerson DeltaV 10.3.1, 11.3, 11.3.1, and 12.3 uses hardcoded credentials for diagnostic services, which allows remote attackers to bypass intended access restrictions via a TCP session, as demonstrat…
|
CWE-255
Credentials Management
|
CVE-2014-2350
|
2024-11-21 11:06 |
2014-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281675
|
- |
|
emerson
|
deltav
|
Emerson DeltaV 10.3.1, 11.3, 11.3.1, and 12.3 allows local users to modify or read configuration files by leveraging engineering-level privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-2349
|
2024-11-21 11:06 |
2014-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281676
|
- |
|
hp
|
icewall_mcrp icewall_sso
|
Unspecified vulnerability in HP IceWall SSO 10.0 Dfw and IceWall MCRP 2.1 and 3.0 allows remote attackers to cause a denial of service via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2014-2604
|
2024-11-21 11:06 |
2014-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281677
|
- |
|
controlsystemworks
|
csworks
|
SQL injection vulnerability in the LiveData service in CSWorks before 2.5.5233.0 allows remote attackers to execute arbitrary SQL commands via vectors related to pathnames contained in web API reques…
|
CWE-89
SQL Injection
|
CVE-2014-2351
|
2024-11-21 11:06 |
2014-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281678
|
- |
|
bmc
|
patrol_agent
|
Untrusted search path vulnerability in BMC Patrol for AIX 3.9.00 allows local users to gain privileges via a crafted library, related to an incorrect RPATH setting.
|
NVD-CWE-Other
|
CVE-2014-2591
|
2024-11-21 11:06 |
2014-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281679
|
- |
|
oracle
|
openjdk
|
Unspecified vulnerability in OpenJDK 6 before 6b31 on Debian GNU/Linux and Ubuntu 12.04 LTS and 10.04 LTS has unknown impact and attack vectors, a different vulnerability than CVE-2014-0462.
|
NVD-CWE-noinfo
|
CVE-2014-2405
|
2024-11-21 11:06 |
2014-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281680
|
- |
|
bscw
|
bscw
|
OrbiTeam BSCW before 5.0.8 allows remote attackers to obtain sensitive metadata via the inf operations (op=inf) to an object in pub/bscw.cgi/.
|
CWE-200
Information Exposure
|
CVE-2014-2301
|
2024-11-21 11:06 |
2014-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|