|
280841
|
- |
|
apache
|
http_server
|
Memory leak in the winnt_accept function in server/mpm/winnt/child.c in the WinNT MPM in the Apache HTTP Server 2.4.x before 2.4.10 on Windows, when the default AcceptFilter is enabled, allows remote…
|
CWE-399
Resource Management Errors
|
CVE-2014-3523
|
2024-11-21 11:08 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280842
|
- |
|
debian freedesktop mageia_project opensuse
|
debian_linux dbus mageia opensuse
|
dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6 allows local users to cause a denial of service (disconnect) via a certain sequence of crafted messages that cause the dbus-daemon to forward a message…
|
CWE-20
Improper Input Validation
|
CVE-2014-3533
|
2024-11-21 11:08 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280843
|
- |
|
freedesktop opensuse debian mageia oracle
|
dbus opensuse debian_linux mageia solaris
|
dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6, when running on Linux 2.6.37-rc4 or later, allows local users to cause a denial of service (system-bus disconnect of other services or applications) b…
|
CWE-20
Improper Input Validation
|
CVE-2014-3532
|
2024-11-21 11:08 |
2014-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280844
|
- |
|
reportico
|
php_report_designer
|
Directory traversal vulnerability in Reportico PHP Report Designer before 4.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the xmlin parameter.
|
CWE-22
Path Traversal
|
CVE-2014-3777
|
2024-11-21 11:08 |
2014-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280845
|
- |
|
yealink
|
voip_phone_firmware
|
CRLF injection vulnerability in Yealink VoIP Phones with firmware 28.72.0.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the model paramete…
|
NVD-CWE-Other
|
CVE-2014-3427
|
2024-11-21 11:08 |
2014-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280846
|
- |
|
infoblox
|
netmri
|
Infoblox NetMRI before 6.8.5 has a default password of admin for the "root" MySQL database account, which makes it easier for local users to obtain access via unspecified vectors.
|
CWE-255
Credentials Management
|
CVE-2014-3419
|
2024-11-21 11:08 |
2014-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280847
|
- |
|
infoblox
|
netmri
|
config/userAdmin/login.tdf in Infoblox NetMRI before 6.8.5 allows remote attackers to execute arbitrary commands via shell metacharacters in the skipjackUsername parameter.
|
CWE-78
OS Command
|
CVE-2014-3418
|
2024-11-21 11:08 |
2014-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280848
|
- |
|
juniper
|
junos srx100 srx110 srx1400 srx210 srx220 srx240 srx3400 srx3600 srx550 srx5600 srx5800 srx650
|
Juniper Junos 11.4 before 11.4R8, 12.1 before 12.1R5, 12.1X44 before 12.1X44-D20, 12.1X45 before 12.1X45-D15, 12.1X46 before 12.1X46-D10, and 12.1X47 before 12.1X47-D10 on SRX Series devices, allows …
|
CWE-20
Improper Input Validation
|
CVE-2014-3822
|
2024-11-21 11:08 |
2014-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280849
|
- |
|
juniper
|
junos
|
Cross-site scripting (XSS) vulnerability in SRX Web Authentication (webauth) in Juniper Junos 11.4 before 11.4R11, 12.1X44 before 12.1X44-D34, 12.1X45 before 12.1X45-D25, 12.1X46 before 12.1X46-D20, …
|
CWE-79
Cross-site Scripting
|
CVE-2014-3821
|
2024-11-21 11:08 |
2014-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280850
|
- |
|
juniper
|
junos
|
Juniper Junos 11.4 before 11.4R12, 12.1 before 12.1R10, 12.1X44 before 12.1X44-D35, 12.1X45 before 12.1X45-D25, 12.1X46 before 12.1X46-D20, 12.1X47 before 12.1X47-D10, 12.2 before 12.2R8, 12.3 before…
|
CWE-20
Improper Input Validation
|
CVE-2014-3819
|
2024-11-21 11:08 |
2014-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|