|
276701
|
- |
|
cisco
|
identity_services_engine_software
|
The periodic-backup feature in Cisco Identity Services Engine (ISE) allows remote attackers to discover backup-encryption passwords via a crafted request that triggers inclusion of a password in a re…
|
CWE-200
Information Exposure
|
CVE-2014-8017
|
2024-11-21 11:18 |
2014-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276702
|
- |
|
cisco
|
identity_services_engine_software
|
The Sponsor Portal in Cisco Identity Services Engine (ISE) allows remote authenticated users to obtain access to an arbitrary sponsor's guest account via a modified HTTP request, aka Bug ID CSCur6440…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8015
|
2024-11-21 11:18 |
2014-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276703
|
- |
|
php
|
php
|
Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.36, 5.5.x before 5.5.20, and 5.6.x before 5.6.4 allows remote attackers to execu…
|
NVD-CWE-Other
|
CVE-2014-8142
|
2024-11-21 11:18 |
2014-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276704
|
- |
|
cisco
|
enterprise_content_delivery_system
|
Directory traversal vulnerability in Cisco Enterprise Content Delivery System (ECDS) allows remote attackers to read arbitrary files via a crafted URL, aka Bug ID CSCuo90148.
|
CWE-22
Path Traversal
|
CVE-2014-8019
|
2024-11-21 11:18 |
2014-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276705
|
- |
|
cisco
|
prime_infrastructure
|
Cisco Prime Infrastructure allows remote authenticated users to read device-discovery passwords by examining the HTML source code of the Quick Discovery options page, aka Bug ID CSCum00019.
|
CWE-200
Information Exposure
|
CVE-2014-8007
|
2024-11-21 11:18 |
2014-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276706
|
- |
|
mageia redhat canonical opensuse
|
mageia libvirt ubuntu_linux opensuse enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc_node
|
The (1) qemuDomainMigratePerform and (2) qemuDomainMigrateFinish2 functions in qemu/qemu_driver.c in libvirt do not unlock the domain when an ACL check fails, which allow local users to cause a denia…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8136
|
2024-11-21 11:18 |
2014-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276707
|
- |
|
redhat
|
libvirt
|
The storageVolUpload function in storage/storage_driver.c in libvirt before 1.2.11 does not check a certain return value, which allows local users to cause a denial of service (NULL pointer dereferen…
|
NVD-CWE-Other
|
CVE-2014-8135
|
2024-11-21 11:18 |
2014-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276708
|
- |
|
dell intel
|
idrac6_modular idrac7 ipmi idrac6_monolithic
|
The IPMI 1.5 functionality in Dell iDRAC6 modular before 3.65, iDRAC6 monolithic before 1.98, and iDRAC7 before 1.57.57 does not properly select session ID values, which makes it easier for remote at…
|
NVD-CWE-Other
|
CVE-2014-8272
|
2024-11-21 11:18 |
2014-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276709
|
- |
|
cisco
|
ironport_email_security_appliances
|
The Cisco IronPort Email Security Appliance (ESA) allows remote attackers to cause a denial of service (CPU consumption) via long Subject headers in e-mail messages, aka Bug ID CSCzv93864.
|
CWE-399
Resource Management Errors
|
CVE-2014-8016
|
2024-11-21 11:18 |
2014-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276710
|
- |
|
cisco
|
ios_xr
|
Cisco IOS XR allows remote attackers to cause a denial of service (RSVP process reload) via a malformed RSVP packet, aka Bug ID CSCub63710.
|
CWE-19
Data Processing Errors
|
CVE-2014-8014
|
2024-11-21 11:18 |
2014-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|