|
280881
|
- |
|
zabbix fedoraproject
|
zabbix fedora
|
The API in Zabbix before 1.8.20rc1, 2.0.x before 2.0.11rc1, and 2.2.x before 2.2.2rc1 allows remote authenticated users to spoof arbitrary users via the user name in a user.login request.
|
CWE-287
Improper Authentication
|
CVE-2014-1682
|
2024-11-21 11:04 |
2014-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280882
|
- |
|
google
|
chrome
|
Integer overflow in api.cc in Google V8, as used in Google Chrome before 34.0.1847.131 on Windows and OS X and before 34.0.1847.132 on Linux, allows remote attackers to cause a denial of service or p…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-1736
|
2024-11-21 11:04 |
2014-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280883
|
- |
|
coreftp
|
core_ftp
|
Core FTP Server 1.2 before build 515 allows remote authenticated users to obtain sensitive information (password for the previous user) via a USER command with a specific length, possibly related to …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1443
|
2024-11-21 11:04 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280884
|
- |
|
coreftp
|
core_ftp
|
Directory traversal vulnerability in Core FTP Server 1.2 before build 515 allows remote authenticated users to determine the existence of arbitrary files via a /../ sequence in an XCRC command.
|
CWE-22
Path Traversal
|
CVE-2014-1442
|
2024-11-21 11:04 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280885
|
- |
|
coreftp
|
core_ftp
|
Core FTP Server 1.2 before build 515 allows remote attackers to cause a denial of service (reachable assertion and crash) via an AUTH SSL command with malformed data, as demonstrated by pressing the …
|
CWE-362
Race Condition
|
CVE-2014-1441
|
2024-11-21 11:04 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280886
|
9.8 |
CRITICAL
Network
|
mozilla fedoraproject canonical debian redhat opensuse suse
|
thunderbird firefox firefox_esr seamonkey fedora ubuntu_linux debian_linux enterprise_linux_server enterprise_linux_server_eus enterprise_linux_workstation enterprise_li…
|
Use-after-free vulnerability in the nsHostResolver::ConditionallyRefreshRecord function in libxul.so in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonk…
|
CWE-416
Use After Free
|
CVE-2014-1532
|
2024-11-21 11:04 |
2014-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280887
|
- |
|
canonical opensuse_project opensuse oracle mozilla fedoraproject
|
ubuntu_linux opensuse solaris firefox seamonkey fedora
|
The sse2_composite_src_x888_8888 function in Pixman, as used in Cairo in Mozilla Firefox 28.0 and SeaMonkey 2.25 on Windows, allows remote attackers to execute arbitrary code or cause a denial of ser…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1528
|
2024-11-21 11:04 |
2014-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280888
|
- |
|
fedoraproject mozilla oracle
|
fedora firefox solaris
|
Mozilla Firefox before 29.0 on Android allows remote attackers to spoof the address bar via crafted JavaScript code that uses DOM events to prevent the reemergence of the actual address bar after scr…
|
NVD-CWE-noinfo
|
CVE-2014-1527
|
2024-11-21 11:04 |
2014-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280889
|
- |
|
mozilla canonical opensuse fedoraproject
|
firefox seamonkey ubuntu_linux opensuse fedora
|
The XrayWrapper implementation in Mozilla Firefox before 29.0 and SeaMonkey before 2.26 allows user-assisted remote attackers to bypass intended access restrictions via a crafted web site that is vis…
|
CWE-269
Improper Privilege Management
|
CVE-2014-1526
|
2024-11-21 11:04 |
2014-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280890
|
- |
|
mozilla canonical opensuse fedoraproject
|
firefox seamonkey ubuntu_linux opensuse fedora
|
The mozilla::dom::TextTrack::AddCue function in Mozilla Firefox before 29.0 and SeaMonkey before 2.26 does not properly perform garbage collection for Text Track Manager variables, which allows remot…
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2014-1525
|
2024-11-21 11:04 |
2014-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|