|
280911
|
- |
|
cisco
|
unified_communications_manager
|
Directory traversal vulnerability in the Multiple Analyzer in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager 10.0(1) allows remote authenticated users to delete ar…
|
CWE-22
Path Traversal
|
CVE-2014-3317
|
2024-11-21 11:07 |
2014-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280912
|
- |
|
raritan
|
px dpxr20a-16
|
Raritan PX before 1.5.11 on DPXR20A-16 devices allows remote attackers to bypass authentication and execute arbitrary IPMI commands by using cipher suite 0 (aka cipher zero) and an arbitrary password.
|
CWE-287
Improper Authentication
|
CVE-2014-2955
|
2024-11-21 11:07 |
2014-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280913
|
- |
|
datumsystems
|
snip
|
Datum Systems SnIP on PSM-500 and PSM-4500 devices has a hardcoded password of admin for the admin account, which makes it easier for remote attackers to obtain access via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2014-2951
|
2024-11-21 11:07 |
2014-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280914
|
- |
|
datumsystems
|
snip
|
Datum Systems SnIP on PSM-500 and PSM-4500 devices does not require authentication for FTP sessions, which allows remote attackers to obtain sensitive information via RETR commands.
|
NVD-CWE-Other
|
CVE-2014-2950
|
2024-11-21 11:07 |
2014-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280915
|
- |
|
kaseya
|
virtual_system_administrator
|
kapfa.sys in Kaseya Virtual System Administrator (VSA) 6.5 before 6.5.0.17 and 7.0 before 7.0.0.16 allows local users to cause a denial of service (NULL pointer dereference and application crash) via…
|
NVD-CWE-Other
|
CVE-2014-2926
|
2024-11-21 11:07 |
2014-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280916
|
- |
|
cisco
|
unified_communications_manager
|
Directory traversal vulnerability in dna/viewfilecontents.do in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote authenticated users to read arbitrary …
|
CWE-20
Improper Input Validation
|
CVE-2014-3318
|
2024-11-21 11:07 |
2014-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280917
|
- |
|
cisco
|
unified_communications_manager
|
The Multiple Analyzer in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote authenticated users to bypass intended upload restrictions via a crafted para…
|
CWE-20
Improper Input Validation
|
CVE-2014-3316
|
2024-11-21 11:07 |
2014-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280918
|
- |
|
cisco
|
unified_communications_manager
|
Cross-site scripting (XSS) vulnerability in viewfilecontents.do in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote attackers to inject arbitrary web s…
|
CWE-79
Cross-site Scripting
|
CVE-2014-3315
|
2024-11-21 11:07 |
2014-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280919
|
- |
|
cisco
|
webex_meeting_center webex_meetings_server
|
Heap-based buffer overflow in the file-sharing feature in WebEx Meetings Client in Cisco WebEx Meetings Server and WebEx Meeting Center allows remote attackers to execute arbitrary code via crafted d…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-3311
|
2024-11-21 11:07 |
2014-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280920
|
- |
|
cisco
|
webex_meeting_center webex_meetings_server
|
The File Transfer feature in WebEx Meetings Client in Cisco WebEx Meetings Server and WebEx Meeting Center does not verify that a requested file was an offered file, which allows remote attackers to …
|
CWE-20
Improper Input Validation
|
CVE-2014-3310
|
2024-11-21 11:07 |
2014-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|