|
283071
|
- |
|
cisco
|
unified_communications_manager
|
Cross-site request forgery (CSRF) vulnerability in the Call Detail Records Analysis and Reporting (CAR) interface in the OS Administration component in Cisco Unified Communications Manager (Unified C…
|
CWE-352
Origin Validation Error
|
CVE-2014-0740
|
2024-11-21 11:02 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283072
|
- |
|
ibm
|
rational_focal_point
|
Multiple cross-site scripting (XSS) vulnerabilities in the (1) ForwardController and (2) AttributeEditor scripts in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 allo…
|
CWE-79
Cross-site Scripting
|
CVE-2014-0853
|
2024-11-21 11:02 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283073
|
- |
|
ibm
|
rational_focal_point
|
Cross-site scripting (XSS) vulnerability in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 allows remote authenticated users to inject arbitrary web script or HTML by …
|
CWE-79
Cross-site Scripting
|
CVE-2014-0843
|
2024-11-21 11:02 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283074
|
- |
|
ibm
|
rational_focal_point
|
The account-creation functionality in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 places the new user's default password within the creation page, which allows remo…
|
CWE-255
Credentials Management
|
CVE-2014-0842
|
2024-11-21 11:02 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283075
|
- |
|
ibm
|
rational_focal_point
|
Multiple cross-site scripting (XSS) vulnerabilities in IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 allow remote authenticated users to inject arbitrary web script o…
|
CWE-79
Cross-site Scripting
|
CVE-2014-0840
|
2024-11-21 11:02 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283076
|
- |
|
ibm
|
rational_focal_point
|
IBM Rational Focal Point 6.4.x and 6.5.x before 6.5.2.3 and 6.6.x before 6.6.1 allows remote authenticated users to modify data via vectors involving a direct object reference.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0839
|
2024-11-21 11:02 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283077
|
- |
|
iconics
|
genesis32
|
An ActiveX control in GenLaunch.htm in ICONICS GENESIS32 8.0, 8.02, 8.04, and 8.05 allows remote attackers to execute arbitrary programs via a crafted HTML document.
|
CWE-20
Improper Input Validation
|
CVE-2014-0758
|
2024-11-21 11:02 |
2014-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283078
|
- |
|
ibm
|
cognos_business_intelligence
|
Cross-site scripting (XSS) vulnerability in the server in IBM Cognos Business Intelligence (BI) 8.4.1, 10.1 before IF6, 10.1.1 before IF5, 10.2 before IF7, 10.2.1 before IF4, and 10.2.1.1 before IF4 …
|
CWE-79
Cross-site Scripting
|
CVE-2014-0861
|
2024-11-21 11:02 |
2014-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283079
|
- |
|
ibm
|
cognos_business_intelligence
|
The server in IBM Cognos Business Intelligence (BI) 8.4.1, 10.1 before IF6, 10.1.1 before IF5, 10.2 before IF7, 10.2.1 before IF4, and 10.2.1.1 before IF4 allows remote authenticated users to read ar…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0854
|
2024-11-21 11:02 |
2014-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283080
|
- |
|
autodesk
|
autocad
|
Untrusted search path vulnerability in Autodesk AutoCAD before 2014 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
|
CWE-20
Improper Input Validation
|
CVE-2014-0819
|
2024-11-21 11:02 |
2014-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|