|
279461
|
- |
|
debian cacti opensuse
|
debian_linux cacti opensuse
|
Multiple cross-site scripting (XSS) vulnerabilities in Cacti 0.8.8b allow remote authenticated users with console access to inject arbitrary web script or HTML via a (1) Graph Tree Title in a delete …
|
CWE-79
Cross-site Scripting
|
CVE-2014-5026
|
2024-11-21 11:11 |
2014-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279462
|
- |
|
debian opensuse cacti
|
debian_linux opensuse cacti
|
Cross-site scripting (XSS) vulnerability in data_sources.php in Cacti 0.8.8b allows remote authenticated users with console access to inject arbitrary web script or HTML via the name_cache parameter …
|
CWE-79
Cross-site Scripting
|
CVE-2014-5025
|
2024-11-21 11:11 |
2014-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279463
|
- |
|
pro_chat_rooms
|
text_chat_rooms
|
Multiple cross-site scripting (XSS) vulnerabilities in Pro Chat Rooms Text Chat Rooms 8.2.0 allow remote authenticated users to inject arbitrary web script or HTML via (1) an uploaded profile picture…
|
CWE-79
Cross-site Scripting
|
CVE-2014-5276
|
2024-11-21 11:11 |
2014-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279464
|
- |
|
prochatrooms
|
text_chat_rooms
|
Multiple SQL injection vulnerabilities in includes/functions.php in Pro Chat Rooms Text Chat Rooms 8.2.0 allow remote authenticated users to execute arbitrary SQL commands via the (1) password, (2) e…
|
CWE-89
SQL Injection
|
CVE-2014-5275
|
2024-11-21 11:11 |
2014-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279465
|
- |
|
jamroom
|
search_module
|
Cross-site scripting (XSS) vulnerability in the Search module before 1.2.2 in Jamroom allows remote attackers to inject arbitrary web script or HTML via the query string to search/results/.
|
CWE-79
Cross-site Scripting
|
CVE-2014-5098
|
2024-11-21 11:11 |
2014-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279466
|
- |
|
status2k
|
status2k
|
Status2k allows remote attackers to obtain configuration information via a phpinfo action in a request to status/index.php, which calls the phpinfo function.
|
CWE-200
Information Exposure
|
CVE-2014-5094
|
2024-11-21 11:11 |
2014-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279467
|
- |
|
aptana
|
aflax
|
Cross-site scripting (XSS) vulnerability in Aflax allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-5331
|
2024-11-21 11:11 |
2014-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279468
|
- |
|
birdblog
|
birdblog
|
Cross-site scripting (XSS) vulnerability in BirdBlog allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-5330
|
2024-11-21 11:11 |
2014-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279469
|
- |
|
partytrack_library_project
|
partytrack_library
|
The PartyTrack library for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certif…
|
CWE-310
Cryptographic Issues
|
CVE-2014-4881
|
2024-11-21 11:11 |
2014-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279470
|
- |
|
huawei
|
e5332_firmware e5332
|
Buffer overflow in the Webserver component on the Huawei E5332 router before 21.344.27.00.1080 allows remote authenticated users to cause a denial of service (reboot) via a long parameter in an API s…
|
CWE-399
Resource Management Errors
|
CVE-2014-5328
|
2024-11-21 11:11 |
2014-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|