|
276871
|
7.0 |
HIGH
Local
|
google
|
android
|
Race condition in the bindBackupAgent method in the ActivityManagerService in Android 4.4.4 allows local users with adb shell access to execute arbitrary code or any valid package as system by runnin…
|
CWE-362
Race Condition
|
CVE-2014-7953
|
2024-11-21 11:18 |
2017-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276872
|
8.8 |
HIGH
Network
|
opendaylight
|
defense4all
|
OpenDaylight defense4all 1.1.0 and earlier allows remote authenticated users to write report data to arbitrary files.
|
CWE-20
Improper Input Validation
|
CVE-2014-8149
|
2024-11-21 11:18 |
2017-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276873
|
6.5 |
MEDIUM
Network
|
libtiff opensuse
|
libtiff opensuse
|
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted TIFF image to the (1) checkInkNamesString function in tif_dir.c in the thumbnail tool, …
|
CWE-125
Out-of-bounds Read
|
CVE-2014-8127
|
2024-11-21 11:18 |
2017-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276874
|
7.5 |
HIGH
Network
|
google
|
android
|
b/libs/gui/ISurfaceComposer.cpp in Android allows attackers to trigger a denial of service (null pointer dereference and process crash).
|
CWE-476
NULL Pointer Dereference
|
CVE-2014-7919
|
2024-11-21 11:18 |
2017-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276875
|
5.5 |
MEDIUM
Local
|
mongodb
|
mongodb
|
MongoDB on Red Hat Satellite 6 allows local users to bypass authentication by logging in with an empty password and delete information which can cause a Denial of Service.
|
CWE-287
Improper Authentication
|
CVE-2014-8180
|
2024-11-21 11:18 |
2017-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276876
|
9.8 |
CRITICAL
Network
|
google
|
android
|
mediaserver in Android 4.0.3 through 5.x before 5.1 allows attackers to gain privileges. NOTE: This is a different vulnerability than CVE-2014-7920.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-7921
|
2024-11-21 11:18 |
2017-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276877
|
9.8 |
CRITICAL
Network
|
google
|
android
|
mediaserver in Android 2.2 through 5.x before 5.1 allows attackers to gain privileges. NOTE: This is a different vulnerability than CVE-2014-7921.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-7920
|
2024-11-21 11:18 |
2017-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276878
|
5.5 |
MEDIUM
Local
|
imagemagick
|
imagemagick
|
PCX parser code in ImageMagick before 6.8.9-9 allows remote attackers to cause a denial of service (out-of-bounds read).
|
CWE-125
Out-of-bounds Read
|
CVE-2014-8355
|
2024-11-21 11:18 |
2017-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276879
|
6.5 |
MEDIUM
Network
|
imagemagick
|
imagemagick
|
The HorizontalFilter function in resize.c in ImageMagick before 6.8.9-9 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted image file.
|
CWE-125
Out-of-bounds Read
|
CVE-2014-8354
|
2024-11-21 11:18 |
2017-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276880
|
9.8 |
CRITICAL
Network
|
vivint
|
sky_control_panel_firmware
|
Vivint Sky Control Panel 1.1.1.9926 allows remote attackers to enable and disable the alarm system and modify other security settings via the Web-enabled interface.
|
CWE-284
Improper Access Control
|
CVE-2014-8362
|
2024-11-21 11:18 |
2017-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|