|
283691
|
- |
|
iridium
|
open_port pilot_below_deck_equipment
|
The Pilot Below Deck Equipment (BDE) and OpenPort implementations on Iridium satellite terminals allow remote attackers to read hardcoded credentials via the web interface.
|
NVD-CWE-Other
|
CVE-2014-0326
|
2024-11-21 11:01 |
2014-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283692
|
- |
|
cobham
|
ailor_6110_mini-c_gmdss sailor_6006_message_terminal sailor_6222_vhf sailor_6300_mf_\/_hf
|
The thraneLINK protocol implementation on Cobham devices does not verify firmware signatures, which allows attackers to execute arbitrary code by leveraging physical access or terminal access to send…
|
NVD-CWE-Other
|
CVE-2014-0328
|
2024-11-21 11:01 |
2014-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283693
|
- |
|
microsoft
|
windows_server_2008 windows_rt windows_8.1 windows_7 windows_rt_8.1 windows_vista windows_8 windows_server_2012 windows_server_2003
|
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-0318
|
2024-11-21 11:01 |
2014-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283694
|
- |
|
microsoft
|
windows_server_2008 windows_server_2012 windows_rt windows_8.1 windows_7 windows_rt_8.1 windows_8
|
Memory leak in the Local RPC (LRPC) server implementation in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 …
|
CWE-399
Resource Management Errors
|
CVE-2014-0316
|
2024-11-21 11:01 |
2014-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283695
|
- |
|
redhat opensuse
|
libvirt enterprise_linux opensuse enterprise_virtualization
|
libvirt 0.7.5 through 1.2.x before 1.2.5 allows local users to cause a denial of service (read block and hang) via a crafted XML document containing an XML external entity declaration in conjunction …
|
CWE-20
Improper Input Validation
|
CVE-2014-0179
|
2024-11-21 11:01 |
2014-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283696
|
- |
|
zarafa fedoraproject
|
zarafa webapp fedora
|
WebAccess in Zarafa before 7.1.10 and WebApp before 1.6 stores credentials in cleartext, which allows local Apache users to obtain sensitive information by reading the PHP session files.
|
CWE-310
Cryptographic Issues
|
CVE-2014-0103
|
2024-11-21 11:01 |
2014-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283697
|
- |
|
apache
|
http_server
|
The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script …
|
CWE-399
Resource Management Errors
|
CVE-2014-0231
|
2024-11-21 11:01 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283698
|
- |
|
apache debian redhat oracle
|
http_server debian_linux jboss_enterprise_application_platform secure_global_desktop enterprise_manager_ops_center
|
Race condition in the mod_status module in the Apache HTTP Server before 2.4.10 allows remote attackers to cause a denial of service (heap-based buffer overflow), or possibly obtain sensitive credent…
|
CWE-362
Race Condition
|
CVE-2014-0226
|
2024-11-21 11:01 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283699
|
- |
|
apache debian redhat
|
http_server debian_linux jboss_enterprise_application_platform
|
The deflate_in_filter function in mod_deflate.c in the mod_deflate module in the Apache HTTP Server before 2.4.10, when request body decompression is enabled, allows remote attackers to cause a denia…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2014-0118
|
2024-11-21 11:01 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283700
|
- |
|
apache apple
|
http_server mac_os_x
|
The mod_proxy module in the Apache HTTP Server 2.4.x before 2.4.10, when a reverse proxy is enabled, allows remote attackers to cause a denial of service (child-process crash) via a crafted HTTP Conn…
|
CWE-20
Improper Input Validation
|
CVE-2014-0117
|
2024-11-21 11:01 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|