|
283161
|
- |
|
cisco
|
secure_access_control_system
|
Cross-site scripting (XSS) vulnerability in the portal in Cisco Secure Access Control System (ACS) allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug…
|
CWE-79
Cross-site Scripting
|
CVE-2014-0668
|
2024-11-21 11:02 |
2014-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283162
|
- |
|
sonatype
|
nexus
|
Sonatype Nexus 1.x and 2.x before 2.7.1 allows remote attackers to create arbitrary objects and execute arbitrary code via unspecified vectors related to unmarshalling of unintended Object types.
|
CWE-94
Code Injection
|
CVE-2014-0792
|
2024-11-21 11:02 |
2014-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283163
|
- |
|
cisco
|
secure_access_control_system
|
The RMI interface in Cisco Secure Access Control System (ACS) does not properly enforce authorization requirements, which allows remote authenticated users to read arbitrary files via a request to th…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0667
|
2024-11-21 11:02 |
2014-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283164
|
- |
|
cisco
|
jabber
|
Directory traversal vulnerability in the Send Screen Capture implementation in Cisco Jabber 9.2(.1) and earlier on Windows allows remote attackers to upload arbitrary types of files, and consequently…
|
CWE-22
Path Traversal
|
CVE-2014-0666
|
2024-11-21 11:02 |
2014-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283165
|
- |
|
cisco
|
secure_access_control_system
|
The web interface in Cisco Secure Access Control System (ACS) 5.x before 5.4 Patch 3 allows remote attackers to execute arbitrary operating-system commands via a request to this interface, aka Bug ID…
|
CWE-20
Improper Input Validation
|
CVE-2014-0650
|
2024-11-21 11:02 |
2014-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283166
|
- |
|
cisco
|
secure_access_control_system
|
The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authorization requirements, which allows remote authenticated users to obtain superadmin access …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0649
|
2024-11-21 11:02 |
2014-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283167
|
- |
|
cisco
|
secure_access_control_system
|
The RMI interface in Cisco Secure Access Control System (ACS) 5.x before 5.5 does not properly enforce authentication and authorization requirements, which allows remote attackers to obtain administr…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0648
|
2024-11-21 11:02 |
2014-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283168
|
- |
|
adobe
|
acrobat
|
Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-0495
|
2024-11-21 11:02 |
2014-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283169
|
- |
|
adobe
|
acrobat
|
Adobe Reader and Acrobat 10.x before 10.1.9 and 11.x before 11.0.06 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-0493
|
2024-11-21 11:02 |
2014-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283170
|
- |
|
adobe
|
flash_player adobe_air_sdk adobe_air
|
Adobe Flash Player before 11.7.700.260 and 11.8.x and 11.9.x before 12.0.0.38 on Windows and Mac OS X and before 11.2.202.335 on Linux, Adobe AIR before 4.0.0.1390, Adobe AIR SDK before 4.0.0.1390, a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0492
|
2024-11-21 11:02 |
2014-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|