|
281081
|
- |
|
symantec
|
messaging_gateway
|
Cross-site scripting (XSS) vulnerability in brightmail/setting/compliance/DlpConnectFlow$view.flo in the management console in Symantec Messaging Gateway 10.x before 10.5.2 allows remote attackers to…
|
CWE-79
Cross-site Scripting
|
CVE-2014-1648
|
2024-11-21 11:04 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281082
|
- |
|
apple
|
mac_os_x
|
The kernel in Apple OS X through 10.9.2 places a kernel pointer into an XNU object data structure accessible from user space, which makes it easier for local users to bypass the ASLR protection mecha…
|
CWE-200
Information Exposure
|
CVE-2014-1322
|
2024-11-21 11:04 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281083
|
- |
|
apple
|
mac_os_x iphone_os tvos
|
IOKit in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 places kernel pointers into an object data structure, which makes it easier for local users to bypass the ASLR pr…
|
CWE-200
Information Exposure
|
CVE-2014-1320
|
2024-11-21 11:04 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281084
|
- |
|
apple
|
mac_os_x
|
Power Management in Apple OS X 10.9.x through 10.9.2 allows physically proximate attackers to bypass an intended transition into the locked-screen state by touching (1) a key or (2) the trackpad duri…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1321
|
2024-11-21 11:04 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281085
|
- |
|
apple
|
mac_os_x
|
Heimdal, as used in Apple OS X through 10.9.2, allows remote attackers to cause a denial of service (abort and daemon exit) via ASN.1 data encountered in the Kerberos 5 protocol.
|
CWE-20
Improper Input Validation
|
CVE-2014-1316
|
2024-11-21 11:04 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281086
|
- |
|
apple
|
mac_os_x
|
The Intel Graphics Driver in Apple OS X through 10.9.2 does not properly validate a certain pointer, which allows attackers to execute arbitrary code via a crafted application.
|
CWE-20
Improper Input Validation
|
CVE-2014-1318
|
2024-11-21 11:04 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281087
|
- |
|
apple
|
mac_os_x
|
Buffer overflow in ImageIO in Apple OS X 10.9.x through 10.9.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JPEG image.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1319
|
2024-11-21 11:04 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281088
|
- |
|
apple
|
mac_os_x
|
WindowServer in Apple OS X through 10.9.2 does not prevent session creation by a sandboxed application, which allows attackers to bypass the sandbox protection mechanism and execute arbitrary code vi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1314
|
2024-11-21 11:04 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281089
|
- |
|
apple
|
mac_os_x
|
Format string vulnerability in CoreServicesUIAgent in Apple OS X 10.9.x through 10.9.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via format st…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2014-1315
|
2024-11-21 11:04 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281090
|
- |
|
apple
|
iphone_os mac_os_x mac_os_x_server tvos
|
CFNetwork in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 does not ensure that a Set-Cookie HTTP header is complete before interpreting the header's value, which allow…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1296
|
2024-11-21 11:04 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|