|
277421
|
- |
|
address_visualization_with_google_maps_project
|
address_visualization_with_google_maps
|
SQL injection vulnerability in the Address visualization with Google Maps (st_address_map) extension before 0.3.6 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2014-6239
|
2024-11-21 11:14 |
2014-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277422
|
- |
|
akronymmanager_project
|
akronymmanager
|
Cross-site scripting (XSS) vulnerability in the Akronymmanager (aka SB Folderdownload) extension 0.5.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspeci…
|
CWE-79
Cross-site Scripting
|
CVE-2014-6238
|
2024-11-21 11:14 |
2014-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277423
|
- |
|
news_pack_project
|
news_pack
|
Cross-site scripting (XSS) vulnerability in the News Pack extension 0.1.0 and earlier for TYPO3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-6237
|
2024-11-21 11:14 |
2014-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277424
|
- |
|
lumonet_php_include_project
|
lumonet_php_include
|
Unspecified vulnerability in the LumoNet PHP Include (lumophpinclude) extension before 1.2.1 for TYPO3 allows remote attackers to execute arbitrary scripts via vectors related to extension links.
|
NVD-CWE-noinfo
|
CVE-2014-6236
|
2024-11-21 11:14 |
2014-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277425
|
- |
|
kennziffer
|
ke_dompdf
|
Unspecified vulnerability in the ke DomPDF extension before 0.0.5 for TYPO3 allows remote attackers to execute arbitrary code via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2014-6235
|
2024-11-21 11:14 |
2014-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277426
|
- |
|
open_graph_protocol_project
|
open_graph_protocol
|
Cross-site scripting (XSS) vulnerability in the Open Graph protocol (jh_opengraphprotocol) extension before 1.0.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecif…
|
CWE-79
Cross-site Scripting
|
CVE-2014-6234
|
2024-11-21 11:14 |
2014-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277427
|
- |
|
sap
|
netweaver
|
Buffer overflow in disp+work.exe 7000.52.12.34966 and 7200.117.19.50294 in the Dispatcher in SAP NetWeaver 7.00 and 7.20 allows remote authenticated users to cause a denial of service or execute arbi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-6252
|
2024-11-21 11:14 |
2014-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277428
|
7.2 |
HIGH
Network
|
vasyltech
|
advanced_access_manager
|
WordPress Advanced Access Manager Plugin before 2.8.2 has an Arbitrary File Overwrite Vulnerability
|
NVD-CWE-noinfo
|
CVE-2014-6059
|
2024-11-21 11:13 |
2020-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277429
|
7.5 |
HIGH
Network
|
zohocorp
|
manageengine_eventlog_analyzer
|
ManageEngine EventLog Analyzer version 7 through 9.9 build 9002 has a Credentials Disclosure Vulnerability. Fixed version 10 Build 10000.
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2014-6039
|
2024-11-21 11:13 |
2020-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277430
|
7.5 |
HIGH
Network
|
zohocorp
|
manageengine_eventlog_analyzer
|
Zoho ManageEngine EventLog Analyzer versions 7 through 9.9 build 9002 have a database Information Disclosure Vulnerability. Fixed in EventLog Analyzer 10.0 Build 10000.
|
CWE-200
Information Exposure
|
CVE-2014-6038
|
2024-11-21 11:13 |
2020-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|