|
280001
|
- |
|
siemens
|
wincc simatic_pcs7
|
The WebNavigator server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote attackers to obtain sensitive information via an HTTP request.
|
CWE-200
Information Exposure
|
CVE-2014-4682
|
2024-11-21 11:10 |
2014-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280002
|
- |
|
sgminer_project cgminer_project
|
sgminer cgminer
|
The parse_notify function in util.c in sgminer before 4.2.2 and cgminer 3.3.0 through 4.0.1 allows man-in-the-middle attackers to cause a denial of service (application exit) via a crafted (1) bbvers…
|
CWE-20
Improper Input Validation
|
CVE-2014-4503
|
2024-11-21 11:10 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280003
|
- |
|
bfgminer sgminer_project
|
bfgminer sgminer
|
Multiple heap-based buffer overflows in the parse_notify function in sgminer before 4.2.2, cgminer before 4.3.5, and BFGMiner before 4.1.0 allow remote pool servers to have unspecified impact via a (…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-4502
|
2024-11-21 11:10 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280004
|
- |
|
sgminer_project cgminer_project bfgminer
|
sgminer cgminer bfgminer
|
Multiple stack-based buffer overflows in sgminer before 4.2.2, cgminer before 4.3.5, and BFGMiner before 3.3.0 allow remote pool servers to have unspecified impact via a long URL in a client.reconnec…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-4501
|
2024-11-21 11:10 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280005
|
- |
|
gitlist
|
gitlist
|
Gitlist before 0.5.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name in the URI of a request for a (1) blame, (2) file, or (3) stats page, as demonstra…
|
NVD-CWE-Other
|
CVE-2014-4511
|
2024-11-21 11:10 |
2014-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280006
|
- |
|
e107
|
e107
|
Cross-site scripting (XSS) vulnerability in e107_admin/db.php in e107 2.0 alpha2 and earlier allows remote attackers to inject arbitrary web script or HTML via the type parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2014-4734
|
2024-11-21 11:10 |
2014-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280007
|
- |
|
debian mit redhat
|
debian_linux kerberos kerberos_5 enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc_node
|
MIT Kerberos 5 (aka krb5) 1.7.x through 1.12.x before 1.12.2 allows remote attackers to cause a denial of service (buffer over-read or NULL pointer dereference, and application crash) by injecting in…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-4342
|
2024-11-21 11:10 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280008
|
- |
|
citrix
|
netscaler_access_gateway_firmware netscaler_access_gateway netscaler_application_delivery_controller_firmware netscaler_application_delivery_controller
|
Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway (formerly Access Gateway Enterprise Edition) before 9.3-62.4 and 10.x before 10.1-126.12 allows attackers to obtain sensit…
|
CWE-200
Information Exposure
|
CVE-2014-4347
|
2024-11-21 11:10 |
2014-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280009
|
- |
|
citrix
|
netscaler_application_delivery_controller_firmware netscaler_application_delivery_controller netscaler_access_gateway_firmware netscaler_access_gateway
|
Cross-site scripting (XSS) vulnerability in administration user interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway (formerly Access Gateway Enterprise Edition) …
|
CWE-79
Cross-site Scripting
|
CVE-2014-4346
|
2024-11-21 11:10 |
2014-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280010
|
- |
|
binarymoon
|
timthumb wordthumb
|
TimThumb 2.8.13 and WordThumb 1.07, when Webshot (aka Webshots) is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in the src parameter.
|
CWE-94
Code Injection
|
CVE-2014-4663
|
2024-11-21 11:10 |
2014-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|