|
280301
|
- |
|
freebsd netbsd
|
freebsd netbsd
|
The HZ module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via a crafted argument to the…
|
NVD-CWE-Other
|
CVE-2014-3951
|
2024-11-21 11:09 |
2014-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280302
|
- |
|
kk-osk
|
advance-flow advance-flow_forms
|
SQL injection vulnerability in OSK Advance-Flow 4.41 and earlier and Advance-Flow Forms 4.41 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2014-3906
|
2024-11-21 11:09 |
2014-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280303
|
- |
|
jayj
|
cakifo
|
Cross-site scripting (XSS) vulnerability in the Cakifo theme 1.x before 1.6.2 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via crafted Exif data.
|
CWE-79
Cross-site Scripting
|
CVE-2014-3903
|
2024-11-21 11:09 |
2014-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280304
|
- |
|
tenfourzero
|
shutter
|
Cross-site scripting (XSS) vulnerability in tenfourzero Shutter 0.1.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-3905
|
2024-11-21 11:09 |
2014-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280305
|
- |
|
tenfourzero
|
shutter
|
SQL injection vulnerability in lib/admin.php in tenfourzero Shutter 0.1.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2014-3904
|
2024-11-21 11:09 |
2014-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280306
|
- |
|
piwigo
|
piwigo
|
Cross-site scripting (XSS) vulnerability in admin/picture_modify.php in the photo-edit subsystem in Piwigo 2.6.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the ass…
|
CWE-79
Cross-site Scripting
|
CVE-2014-3900
|
2024-11-21 11:09 |
2014-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280307
|
- |
|
cyberagent
|
ameba
|
The CyberAgent Ameba application 3.x and 4.x before 4.5.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensiti…
|
CWE-310
Cryptographic Issues
|
CVE-2014-3902
|
2024-11-21 11:09 |
2014-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280308
|
- |
|
fujitsu
|
serverview_operations_manager
|
Cross-site scripting (XSS) vulnerability in Fujitsu ServerView Operations Manager 5.00.09 through 6.30.05 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-3898
|
2024-11-21 11:09 |
2014-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280309
|
- |
|
raritan
|
dominion_kx_ii-101_firmware
|
Raritan Japan Dominion KX2-101 switches before 2 allow remote attackers to cause a denial of service (device hang) via a crafted packet.
|
NVD-CWE-noinfo
|
CVE-2014-3901
|
2024-11-21 11:09 |
2014-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280310
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corrupti…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-4067
|
2024-11-21 11:09 |
2014-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|