|
282721
|
- |
|
ibm
|
rational_focal_point
|
Multiple cross-site scripting (XSS) vulnerabilities in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 allow remote authenticated users to inject arbitrary web script o…
|
CWE-79
Cross-site Scripting
|
CVE-2014-0840
|
2024-11-21 11:02 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282722
|
- |
|
ibm
|
rational_focal_point
|
IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 allows remote authenticated users to modify data via vectors involving a direct object reference.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0839
|
2024-11-21 11:02 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282723
|
- |
|
iconics
|
genesis32
|
An ActiveX control in GenLaunch.htm in ICONICS GENESIS32 8.0, 8.02, 8.04, and 8.05 allows remote attackers to execute arbitrary programs via a crafted HTML document.
|
CWE-20
Improper Input Validation
|
CVE-2014-0758
|
2024-11-21 11:02 |
2014-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282724
|
- |
|
ibm
|
cognos_business_intelligence
|
Cross-site scripting (XSS) vulnerability in the server in IBM Cognos Business Intelligence (BI) 8.4.1, 10.1 before IF6, 10.1.1 before IF5, 10.2 before IF7, 10.2.1 before IF4, and 10.2.1.1 before IF4 …
|
CWE-79
Cross-site Scripting
|
CVE-2014-0861
|
2024-11-21 11:02 |
2014-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282725
|
- |
|
ibm
|
cognos_business_intelligence
|
The server in IBM Cognos Business Intelligence (BI) 8.4.1, 10.1 before IF6, 10.1.1 before IF5, 10.2 before IF7, 10.2.1 before IF4, and 10.2.1.1 before IF4 allows remote authenticated users to read ar…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0854
|
2024-11-21 11:02 |
2014-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282726
|
- |
|
autodesk
|
autocad
|
Untrusted search path vulnerability in Autodesk AutoCAD before 2014 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
|
CWE-20
Improper Input Validation
|
CVE-2014-0819
|
2024-11-21 11:02 |
2014-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282727
|
- |
|
autodesk
|
autocad
|
Untrusted search path vulnerability in Autodesk AutoCAD before 2014 allows local users to gain privileges and execute arbitrary VBScript code via a Trojan horse FAS file in the FAS file search path.
|
CWE-94
Code Injection
|
CVE-2014-0818
|
2024-11-21 11:02 |
2014-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282728
|
- |
|
blackboard
|
vista\/ce
|
Cross-site scripting (XSS) vulnerability in Blackboard Vista/CE 8.0 SP6 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-0811
|
2024-11-21 11:02 |
2014-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282729
|
- |
|
cisco
|
adaptive_security_appliance_software
|
Race condition in the Phone Proxy component in Cisco Adaptive Security Appliance (ASA) Software 9.1(.3) and earlier allows remote attackers to bypass sec_db authentication and provide certain pass-th…
|
CWE-287
Improper Authentication
|
CVE-2014-0739
|
2024-11-21 11:02 |
2014-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282730
|
- |
|
cisco
|
adaptive_security_appliance_software
|
The Phone Proxy component in Cisco Adaptive Security Appliance (ASA) Software 9.1(.3) and earlier allows remote attackers to bypass authentication and change trust relationships by injecting a Certif…
|
CWE-287
Improper Authentication
|
CVE-2014-0738
|
2024-11-21 11:02 |
2014-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|