|
283061
|
- |
|
cybozu
|
garoon
|
SQL injection vulnerability in the download feature in Cybozu Garoon 2.x through 2.5.4 and 3.x through 3.7 SP3 allows remote authenticated users to execute arbitrary SQL commands via unspecified vect…
|
CWE-89
SQL Injection
|
CVE-2014-0821
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283062
|
- |
|
cybozu
|
garoon
|
Directory traversal vulnerability in the download feature in Cybozu Garoon 2.x through 2.5.4 and 3.x through 3.7 SP3 allows remote authenticated users to read arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2014-0820
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283063
|
- |
|
cybozu
|
garoon
|
Cybozu Garoon 2.x through 2.5.4 and 3.x through 3.7 SP3 does not properly manage sessions, which allows remote authenticated users to impersonate arbitrary users via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0817
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283064
|
- |
|
norman
|
security_suite
|
Unspecified vulnerability in Norman Security Suite 10.1 and earlier allows local users to gain privileges via unknown vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0816
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283065
|
- |
|
cisco
|
unified_communications_manager
|
The Certificate Authority Proxy Function (CAPF) CLI implementation in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows local users to inject commands via unspecified CAPF …
|
CWE-20
Improper Input Validation
|
CVE-2014-0747
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283066
|
- |
|
cisco
|
unified_contact_center_express_editor_software
|
The disaster recovery system (DRS) in Cisco Unified Contact Center Express (Unified CCX) allows remote authenticated users to obtain sensitive information by reading extraneous fields in an HTML docu…
|
CWE-200
Information Exposure
|
CVE-2014-0746
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283067
|
- |
|
cisco
|
unified_contact_center_express_editor_software
|
Cross-site request forgery (CSRF) vulnerability in the Unified Serviceability subsystem in Cisco Unified Contact Center Express (Unified CCX) allows remote attackers to hijack the authentication of a…
|
CWE-352
Origin Validation Error
|
CVE-2014-0745
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283068
|
- |
|
cisco
|
unified_communications_manager
|
The Certificate Authority Proxy Function (CAPF) component in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows remote attackers to bypass authentication and modify register…
|
CWE-287
Improper Authentication
|
CVE-2014-0743
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283069
|
- |
|
cisco
|
unified_communications_manager
|
The Certificate Authority Proxy Function (CAPF) CLI implementation in the CSR management feature in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows local users to read or…
|
CWE-20
Improper Input Validation
|
CVE-2014-0742
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283070
|
- |
|
cisco
|
unified_communications_manager
|
The certificate-import feature in the Certificate Authority Proxy Function (CAPF) CLI implementation in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows local users to rea…
|
CWE-310
Cryptographic Issues
|
CVE-2014-0741
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|