|
282861
|
- |
|
redhat fedoraproject
|
enterprise_linux sssd
|
The System Security Services Daemon (SSSD) 1.11.6 does not properly identify group membership when a non-POSIX group is in a group membership chain, which allows local users to bypass access restrict…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0249
|
2024-11-21 11:01 |
2014-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282862
|
- |
|
microsoft
|
windows_server_2012 windows_8.1 windows_7 windows_8
|
The Remote Desktop Protocol (RDP) implementation in Microsoft Windows 7 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 does not properly encrypt sessions, which makes it easier for …
|
CWE-310
Cryptographic Issues
|
CVE-2014-0296
|
2024-11-21 11:01 |
2014-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282863
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corru…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-0282
|
2024-11-21 11:01 |
2014-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282864
|
- |
|
cloudera
|
cloudera_manager
|
Cloudera Manager before 4.8.3 and 5.x before 5.0.1 allows remote authenticated users to obtain sensitive configuration information via the API.
|
CWE-200
Information Exposure
|
CVE-2014-0220
|
2024-11-21 11:01 |
2014-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282865
|
7.4 |
HIGH
Network
|
openssl redhat fedoraproject opensuse filezilla-project siemens mariadb python nodejs
|
openssl jboss_enterprise_web_platform enterprise_linux storage jboss_enterprise_web_server jboss_enterprise_application_platform fedora opensuse filezilla_server applicatio…
|
OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properly restrict processing of ChangeCipherSpec messages, which allows man-in-the-middle attackers to trigger use of a z…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2014-0224
|
2024-11-21 11:01 |
2014-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282866
|
- |
|
openssl redhat fedoraproject mariadb opensuse suse
|
openssl enterprise_linux storage fedora mariadb leap opensuse linux_enterprise_server linux_enterprise_software_development_kit linux_enterprise_desktop linux_enterprise…
|
The dtls1_get_message_fragment function in d1_both.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h allows remote attackers to cause a denial of service (recursion and client…
|
NVD-CWE-noinfo
|
CVE-2014-0221
|
2024-11-21 11:01 |
2014-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282867
|
- |
|
openssl mariadb opensuse fedoraproject
|
openssl mariadb leap opensuse fedora
|
The dtls1_reassemble_fragment function in d1_both.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properly validate fragment lengths in DTLS ClientHello messages, w…
|
CWE-120
Classic Buffer Overflow
|
CVE-2014-0195
|
2024-11-21 11:01 |
2014-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282868
|
- |
|
redhat
|
openstack
|
OpenStack Heat Templates (heat-templates), as used in Red Hat Enterprise Linux OpenStack Platform 4.0, sets gpgcheck to 0 for certain templates, which disables GPG signature checking on downloaded pa…
|
CWE-310
Cryptographic Issues
|
CVE-2014-0042
|
2024-11-21 11:01 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282869
|
- |
|
redhat
|
openstack
|
OpenStack Heat Templates (heat-templates), as used in Red Hat Enterprise Linux OpenStack Platform 4.0, sets sslverify to false for certain Yum repositories, which disables SSL protection and allows m…
|
CWE-310
Cryptographic Issues
|
CVE-2014-0041
|
2024-11-21 11:01 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282870
|
- |
|
redhat
|
openstack
|
OpenStack Heat Templates (heat-templates), as used in Red Hat Enterprise Linux OpenStack Platform 4.0, uses an HTTP connection to download (1) packages and (2) signing keys from Yum repositories, whi…
|
NVD-CWE-noinfo
|
CVE-2014-0040
|
2024-11-21 11:01 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|