|
279591
|
- |
|
jenkins-ci
|
monitoring_plugin
|
Cross-site scripting (XSS) vulnerability in the Monitoring plugin before 1.53.0 for Jenkins allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-3678
|
2024-11-21 11:08 |
2014-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279592
|
- |
|
apache canonical redhat oracle
|
http_server ubuntu_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux_eus enterprise_manager_ops_cent…
|
The cache_merge_headers_out function in modules/cache/cache_util.c in the mod_cache module in the Apache HTTP Server before 2.4.11 allows remote attackers to cause a denial of service (NULL pointer d…
|
CWE-476
NULL Pointer Dereference
|
CVE-2014-3581
|
2024-11-21 11:08 |
2014-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279593
|
- |
|
cisco
|
intrusion_prevention_system
|
The authentication-manager process in the web framework in Cisco Intrusion Prevention System (IPS) 7.0(8)E4 and earlier in Cisco Intrusion Detection System (IDS) does not properly manage user tokens,…
|
CWE-287
Improper Authentication
|
CVE-2014-3402
|
2024-11-21 11:08 |
2014-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279594
|
- |
|
cisco
|
adaptive_security_virtual_appliance adaptive_security_appliance_software
|
The Smart Call Home (SCH) implementation in Cisco ASA Software 8.2 before 8.2(5.50), 8.4 before 8.4(7.15), 8.6 before 8.6(1.14), 8.7 before 8.7(1.13), 9.0 before 9.0(4.8), and 9.1 before 9.1(5.1) all…
|
CWE-295
Improper Certificate Validation
|
CVE-2014-3394
|
2024-11-21 11:08 |
2014-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279595
|
- |
|
cisco
|
adaptive_security_appliance_software
|
The Clientless SSL VPN portal customization framework in Cisco ASA Software 8.2 before 8.2(5.51), 8.3 before 8.3(2.42), 8.4 before 8.4(7.23), 8.6 before 8.6(1.14), 9.0 before 9.0(4.24), 9.1 before 9.…
|
CWE-287
Improper Authentication
|
CVE-2014-3393
|
2024-11-21 11:08 |
2014-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279596
|
- |
|
cisco
|
adaptive_security_appliance_software
|
The Clientless SSL VPN portal in Cisco ASA Software 8.2 before 8.2(5.51), 8.3 before 8.3(2.42), 8.4 before 8.4(7.23), 8.6 before 8.6(1.15), 9.0 before 9.0(4.24), 9.1 before 9.1(5.12), 9.2 before 9.2(…
|
NVD-CWE-noinfo
|
CVE-2014-3392
|
2024-11-21 11:08 |
2014-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279597
|
- |
|
cisco
|
ios_xe
|
Cisco IOS XE enables the IPv6 Routing Protocol for Low-Power and Lossy Networks (aka RPL) on both the Autonomic Control Plane (ACP) and external Autonomic Networking Infrastructure (ANI) interfaces, …
|
NVD-CWE-Other
|
CVE-2014-3405
|
2024-11-21 11:08 |
2014-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279598
|
- |
|
cisco
|
ios_xe
|
The Autonomic Networking Infrastructure (ANI) component in Cisco IOS XE does not properly validate certificates, which allows remote attackers to trigger acceptance of an invalid message via crafted …
|
CWE-310
Cryptographic Issues
|
CVE-2014-3404
|
2024-11-21 11:08 |
2014-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279599
|
- |
|
cisco
|
ios_xe
|
The Autonomic Networking Infrastructure (ANI) component in Cisco IOS XE does not properly validate certificates, which allows remote attackers to spoof devices via crafted messages, aka Bug ID CSCuq2…
|
CWE-310
Cryptographic Issues
|
CVE-2014-3403
|
2024-11-21 11:08 |
2014-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279600
|
- |
|
openstack
|
cinder
|
The (1) GlusterFS and (2) Linux Smbfs drivers in OpenStack Cinder before 2014.1.3 allows remote authenticated users to obtain file data from the Cinder-volume host by cloning and attaching a volume w…
|
CWE-200
Information Exposure
|
CVE-2014-3641
|
2024-11-21 11:08 |
2014-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|