|
280741
|
- |
|
open-xchange
|
open-xchange_appsuite
|
Cross-site scripting (XSS) vulnerability in the frontend in Open-Xchange (OX) AppSuite 7.4.1 before 7.4.1-rev10 and 7.4.2 before 7.4.2-rev8 allows remote attackers to inject arbitrary web script or H…
|
CWE-79
Cross-site Scripting
|
CVE-2014-2077
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280742
|
- |
|
pivotal_software
|
spring_framework
|
Cross-site scripting (XSS) vulnerability in web/servlet/tags/form/FormTag.java in Spring MVC in Spring Framework 3.0.0 before 3.2.8 and 4.0.0 before 4.0.2 allows remote attackers to inject arbitrary …
|
CWE-79
Cross-site Scripting
|
CVE-2014-1904
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280743
|
- |
|
silexlabs
|
silex
|
Cross-site scripting (XSS) vulnerability in Silex before 2.0.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-1971
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280744
|
- |
|
estrongs
|
es_file_explorer
|
Directory traversal vulnerability in the ES File Explorer File Manager application before 3.0.4 for Android allows remote attackers to overwrite or create arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2014-1970
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280745
|
- |
|
nttdocomo
|
spmode_mail_android
|
The NTT DOCOMO sp mode mail application 5900 through 6300 for Android 4.0.x and 6000 through 6620 for Android 4.1 through 4.4 allows remote attackers to execute arbitrary Java methods via Deco-mail e…
|
CWE-94
Code Injection
|
CVE-2014-1979
|
2024-11-21 11:05 |
2014-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280746
|
- |
|
nttdocomo
|
spmode_mail_android
|
The application link interface in the NTT DOCOMO sp mode mail application 6100 through 6300 for Android 4.0.x and 6130 through 6700 for Android 4.1 through 4.4 writes message content to the SD card d…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1978
|
2024-11-21 11:05 |
2014-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280747
|
- |
|
nttdocomo
|
spmode_mail_android
|
The NTT DOCOMO sp mode mail application 6300 and earlier for Android 4.0.x and 6700 and earlier for Android 4.1 through 4.4 uses weak permissions for attachments during processing of incoming e-mail …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1977
|
2024-11-21 11:05 |
2014-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280748
|
- |
|
cisco
|
hosted_collaboration_solution
|
Memory leak in the GUI in the Impact server in Cisco Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors, aka Bug ID …
|
CWE-20
Improper Input Validation
|
CVE-2014-2122
|
2024-11-21 11:05 |
2014-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280749
|
- |
|
cisco
|
hosted_collaboration_solution
|
The Java-based software in Cisco Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of service (closing of TCP ports) via unspecified vectors, aka Bug IDs CSCug77633, CSCug…
|
CWE-20
Improper Input Validation
|
CVE-2014-2121
|
2024-11-21 11:05 |
2014-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280750
|
- |
|
freetype canonical
|
freetype ubuntu_linux
|
The (1) cf2_initLocalRegionBuffer and (2) cf2_initGlobalRegionBuffer functions in cff/cf2ft.c in FreeType before 2.5.3 do not properly check if a subroutine exists, which allows remote attackers to c…
|
CWE-20
Improper Input Validation
|
CVE-2014-2241
|
2024-11-21 11:05 |
2014-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|