|
280971
|
- |
|
cisco
|
unified_communications_domain_manager
|
The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) does not properly implement access control, which allows remote attackers to obtain potentially sensitive user informati…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3281
|
2024-11-21 11:07 |
2014-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280972
|
- |
|
cisco
|
unified_communications_domain_manager
|
The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) does not properly implement access control, which allows remote attackers to enumerate accounts by visiting an unspecifi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3278
|
2024-11-21 11:07 |
2014-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280973
|
- |
|
cisco
|
unified_communications_domain_manager
|
The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier does not properly implement access control, which allows remote authenticated users to obtain potent…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3280
|
2024-11-21 11:07 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280974
|
- |
|
dell quantum
|
powervault_ml6000_firmware powervault_ml6000 scalar_i500_firmware scalar_i500
|
logViewer.htm on the Dell ML6000 tape backup system with firmware before i8.2.0.2 (641G.GS103) and the Quantum Scalar i500 tape backup system with firmware before i8.2.2.1 (646G.GS002) allows remote …
|
CWE-78
OS Command
|
CVE-2014-2959
|
2024-11-21 11:07 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280975
|
- |
|
huawei
|
webui e303_modem_firmware e303_modem
|
Cross-site request forgery (CSRF) vulnerability in api/sms/send-sms in the Web UI 11.010.06.01.858 on Huawei E303 modems with software 22.157.18.00.858 allows remote attackers to hijack the authentic…
|
CWE-352
Origin Validation Error
|
CVE-2014-2946
|
2024-11-21 11:07 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280976
|
- |
|
alfresco
|
alfresco
|
Multiple cross-site scripting (XSS) vulnerabilities in Alfresco Enterprise before 4.1.6.13 allow remote attackers to inject arbitrary web script or HTML via (1) an XHTML document, (2) a <% tag, or (3…
|
CWE-79
Cross-site Scripting
|
CVE-2014-2939
|
2024-11-21 11:07 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280977
|
- |
|
debian
|
dpkg
|
dpkg 1.15.9, 1.16.x before 1.16.14, and 1.17.x before 1.17.9 expect the patch program to be compliant with a need for the "C-style encoded filenames" feature, but is supported in environments with no…
|
CWE-22
Path Traversal
|
CVE-2014-3227
|
2024-11-21 11:07 |
2014-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280978
|
- |
|
ibm
|
websphere_service_registry_and_repository
|
Cross-site scripting (XSS) vulnerability in the Web UI in IBM WebSphere Service Registry and Repository (WSRR) 6.2, 6.3 before 6.3.0.6, 7.0 before 7.0.0.6, 7.5 before 7.5.0.5, and 8.0 before 8.0.0.3 …
|
CWE-79
Cross-site Scripting
|
CVE-2014-3010
|
2024-11-21 11:07 |
2014-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280979
|
- |
|
cisco
|
wide_area_application_services
|
Cisco Wide Area Application Services (WAAS) 5.3(.5a) and earlier, when SharePoint acceleration is enabled, does not properly parse SharePoint responses, which allows remote attackers to cause a denia…
|
CWE-20
Improper Input Validation
|
CVE-2014-3285
|
2024-11-21 11:07 |
2014-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280980
|
- |
|
cisco
|
unified_communications_domain_manager
|
Open redirect vulnerability in Self-Care Client Portal applications in the web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier allows remote attackers to re…
|
CWE-20
Improper Input Validation
|
CVE-2014-3283
|
2024-11-21 11:07 |
2014-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|