|
276521
|
- |
|
owncloud
|
owncloud
|
Cross-site scripting (XSS) vulnerability in the import functionality in the bookmarks application in ownCloud before 5.0.18, 6.x before 6.0.6, and 7.x before 7.0.3 allows remote authenticated users t…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9042
|
2024-11-21 11:20 |
2015-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276522
|
- |
|
owncloud
|
owncloud
|
The import functionality in the bookmarks application in ownCloud server before 5.0.18, 6.x before 6.0.6, and 7.x before 7.0.3 does not validate CSRF tokens, which allow remote attackers to conduct C…
|
CWE-352
Origin Validation Error
|
CVE-2014-9041
|
2024-11-21 11:20 |
2015-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276523
|
- |
|
zohocorp
|
manageengine_desktop_central
|
Cross-site request forgery (CSRF) vulnerability in ZOHO ManageEngine Desktop Central before 9 build 90130 allows remote attackers to hijack the authentication of administrators for requests that add …
|
CWE-352
Origin Validation Error
|
CVE-2014-9331
|
2024-11-21 11:20 |
2015-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276524
|
- |
|
fedoraproject clamav
|
fedora clamav
|
ClamAV before 0.98.6 allows remote attackers to have unspecified impact via a crafted upack packer file, related to a "heap out of bounds condition."
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9328
|
2024-11-21 11:20 |
2015-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276525
|
- |
|
schneider-electric
|
somove somove_lite somachine unity_pro
|
Stack-based buffer overflow in an unspecified DLL file in a DTM development kit in Schneider Electric Unity Pro, SoMachine, SoMove, SoMove Lite, Modbus Communication Library 2.2.6 and earlier, CANope…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9200
|
2024-11-21 11:20 |
2015-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276526
|
- |
|
adobe
|
acrobat_reader acrobat
|
CoolType.dll in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows, and 10.x through 10.1.13 and 11.x through 11.0.10 on OS X, allows remote attackers to cause a denial o…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9161
|
2024-11-21 11:20 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276527
|
- |
|
schneider-electric
|
etg3000_factorycast_hmi_gateway_firmware tsxetg3000 tsxetg3010 tsxetg3021 tsxetg3022
|
The FTP server on the Schneider Electric ETG3000 FactoryCast HMI Gateway with firmware through 1.60 IR 04 has hardcoded credentials, which makes it easier for remote attackers to obtain access via an…
|
CWE-255
Credentials Management
|
CVE-2014-9198
|
2024-11-21 11:20 |
2015-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276528
|
- |
|
schneider-electric
|
etg3000_factorycast_hmi_gateway_firmware tsxetg3000 tsxetg3010 tsxetg3021 tsxetg3022
|
The Schneider Electric ETG3000 FactoryCast HMI Gateway with firmware before 1.60 IR 04 stores rde.jar under the web root with insufficient access control, which allows remote attackers to obtain sens…
|
CWE-284
Improper Access Control
|
CVE-2014-9197
|
2024-11-21 11:20 |
2015-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276529
|
- |
|
broadcom symantec
|
symantec_critical_system_protection data_center_security
|
The management server in Symantec Critical System Protection (SCSP) 5.2.9 through MP6 and Symantec Data Center Security: Server Advanced (SDCS:SA) 6.0.x through 6.0 MP1 allows local users to bypass i…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-9226
|
2024-11-21 11:20 |
2015-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276530
|
- |
|
broadcom symantec
|
symantec_critical_system_protection data_center_security
|
The ajaxswing webui in the management server in Symantec Critical System Protection (SCSP) 5.2.9 through MP6 and Symantec Data Center Security: Server Advanced (SDCS:SA) 6.0.x through 6.0 MP1 allows …
|
CWE-200
Information Exposure
|
CVE-2014-9225
|
2024-11-21 11:20 |
2015-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|