|
278101
|
8.8 |
HIGH
Network
|
oberhumer
|
lzo2 liblzo2
|
Integer overflow in the LZO algorithm variant in Oberhumer liblzo2 and lzo-2 before 2.07 on 32-bit platforms might allow remote attackers to execute arbitrary code via a crafted Literal Run.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-4607
|
2024-11-21 11:10 |
2020-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278102
|
8.8 |
HIGH
Network
|
ffmpeg
|
ffmpeg
|
Integer overflow in the get_len function in libavutil/lzo.c in FFmpeg before 0.10.14, 1.1.x before 1.1.12, 1.2.x before 1.2.7, 2.0.x before 2.0.5, 2.1.x before 2.1.5, and 2.2.x before 2.2.4 allows re…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-4610
|
2024-11-21 11:10 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278103
|
8.8 |
HIGH
Network
|
libav
|
libav
|
Integer overflow in the get_len function in libavutil/lzo.c in Libav before 0.8.13, 9.x before 9.14, and 10.x before 10.2 allows remote attackers to execute arbitrary code via a crafted Literal Run.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-4609
|
2024-11-21 11:10 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278104
|
6.1 |
MEDIUM
Network
|
ultimate-weather_project
|
ultimate-weather
|
The ultimate-weather plugin 1.0 for WordPress has XSS
|
CWE-79
Cross-site Scripting
|
CVE-2014-4561
|
2024-11-21 11:10 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278105
|
6.1 |
MEDIUM
Network
|
flog_project
|
flog
|
flog plugin 0.1 for WordPress has XSS
|
CWE-79
Cross-site Scripting
|
CVE-2014-4530
|
2024-11-21 11:10 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278106
|
6.1 |
MEDIUM
Network
|
spreadshirt-rss-3d-cube-flash-gallery_project
|
spreadshirt-rss-3d-cube-flash-gallery
|
Cross-site Scripting (XSS) in the spreadshirt-rss-3d-cube-flash-gallery plugin 2014 for WordPress allows remote attackers to execute arbitrary web script or HTML via unspecified parameters.
|
CWE-79
Cross-site Scripting
|
CVE-2014-4553
|
2024-11-21 11:10 |
2020-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278107
|
6.1 |
MEDIUM
Network
|
visualshortcodes
|
ninja
|
Cross-site scripting (XSS) vulnerability in preview-shortcode-external.php in the Shortcode Ninja plugin 1.4 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML v…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4550
|
2024-11-21 11:10 |
2019-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278108
|
6.1 |
MEDIUM
Network
|
katz
|
infusionsoft_gravity_forms
|
Multiple cross-site scripting (XSS) vulnerabilities in tests/notAuto_test_ContactService_pauseCampaign.php in the Infusionsoft Gravity Forms plugin before 1.5.6 for WordPress allow remote attackers t…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4536
|
2024-11-21 11:10 |
2019-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278109
|
6.1 |
MEDIUM
Network
|
import_legacy_media_project
|
import_legacy_media
|
Cross-site scripting (XSS) vulnerability in the Import Legacy Media plugin 0.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the filename parameter to g…
|
CWE-79
Cross-site Scripting
|
CVE-2014-4535
|
2024-11-21 11:10 |
2019-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278110
|
6.1 |
MEDIUM
Network
|
videowhisper
|
video_comments_webcam_recorder
|
Cross-site scripting (XSS) vulnerability in comments/videowhisper2/r_logout.php in the Video Comments Webcam Recorder plugin 1.55, as downloaded before 20140116 for WordPress allows remote attackers …
|
CWE-79
Cross-site Scripting
|
CVE-2014-4567
|
2024-11-21 11:10 |
2019-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|