|
277241
|
6.1 |
MEDIUM
Network
|
formget
|
easy_contact_form_solution
|
Cross-site scripting (XSS) vulnerability in the Easy Contact Form Solution plugin before 1.7 for WordPress allows remote attackers to inject arbitrary web script or HTML via the value parameter in a …
|
CWE-79
Cross-site Scripting
|
CVE-2014-7240
|
2024-11-21 11:16 |
2017-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277242
|
9.8 |
CRITICAL
Network
|
kankunit
|
konke_smart_plug_firmware
|
The Konke Smart Plug K does not require authentication for TELNET sessions, which allows remote attackers to obtain "equipment management authority" via TCP traffic to port 23.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-7279
|
2024-11-21 11:16 |
2017-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277243
|
6.1 |
MEDIUM
Network
|
nex-forms_lite_project
|
nex-forms_lite
|
Multiple cross-site scripting (XSS) vulnerabilities in the NEX-Forms Lite plugin 2.1.0 for WordPress allow remote attackers to inject arbitrary web script or HTML via the form_fields parameter in a (…
|
CWE-79
Cross-site Scripting
|
CVE-2014-7151
|
2024-11-21 11:16 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277244
|
- |
|
yahoo
|
messenger
|
Multiple stack-based buffer overflows in Yahoo! Messenger 11.5.0.228 and earlier allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the (1) shortcut o…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-7216
|
2024-11-21 11:16 |
2015-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277245
|
- |
|
gehealthcare
|
precision_thunis-800\+
|
GE Healthcare Precision THUNIS-800+ has a default password of (1) 1973 for the factory default System Utilities menu, (2) TH8740 for installation using TH8740_122_Setup.exe, (3) hrml for "Setup and A…
|
CWE-255
Credentials Management
|
CVE-2014-7233
|
2024-11-21 11:16 |
2015-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277246
|
- |
|
gehealthcare
|
discovery_xr656_g2 discovery_xr656
|
GE Healthcare Discovery XR656 and XR656 G2 has a password of (1) 2getin for the insite user, (2) 4$xray for the xruser user, and (3) #superxr for the root user, which has unspecified impact and attac…
|
CWE-255
Credentials Management
|
CVE-2014-7232
|
2024-11-21 11:16 |
2015-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277247
|
- |
|
asus
|
rt-n66u_firmware rt-n66u rt-n56u_firmware rt-n56u rt-ac87u_firmware rt-ac87u rt-ac68u_firmware rt-ac68u rt-ac56s_firmware rt-ac56s
|
Cross-site request forgery (CSRF) vulnerability on ASUS JAPAN RT-AC87U routers with firmware 3.0.0.4.378.3754 and earlier, RT-AC68U routers with firmware 3.0.0.4.376.3715 and earlier, RT-AC56S router…
|
CWE-352
Origin Validation Error
|
CVE-2014-7270
|
2024-11-21 11:16 |
2015-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277248
|
- |
|
asus
|
rt-n66u_firmware rt-n66u rt-ac56s_firmware rt-ac56s rt-ac68u_firmware rt-ac68u rt-ac87u_firmware rt-ac87u rt-n56u_firmware rt-n56u
|
ASUS JAPAN RT-AC87U routers with firmware 3.0.0.4.378.3754 and earlier, RT-AC68U routers with firmware 3.0.0.4.376.3715 and earlier, RT-AC56S routers with firmware 3.0.0.4.376.3715 and earlier, RT-N6…
|
CWE-78
OS Command
|
CVE-2014-7269
|
2024-11-21 11:16 |
2015-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277249
|
- |
|
cybozu
|
remote_service_manager
|
Algorithmic complexity vulnerability in Cybozu Remote Service Manager through 2.3.0 and 3.x through 3.1.2 allows remote attackers to cause a denial of service (CPU consumption) via vectors that trigg…
|
CWE-399
Resource Management Errors
|
CVE-2014-7266
|
2024-11-21 11:16 |
2015-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277250
|
- |
|
symantec
|
encryption_management_server pgp_universal_server
|
Symantec PGP Universal Server and Encryption Management Server before 3.3.2 MP7 allow remote authenticated administrators to execute arbitrary shell commands via a crafted command line in a database-…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-7288
|
2024-11-21 11:16 |
2015-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|