|
281001
|
7.5 |
HIGH
Network
|
huawei
|
s9300_firmware s3300_firmware s2300_firmware s5300_firmware s6300_firmware
|
Huawei S9300 with software before V100R006SPH013 and S2300,S3300,S5300,S6300 with software before V100R006SPH010 support Y.1731 and therefore have the Y.1731 vulnerability in processing special packe…
|
CWE-19
Data Processing Errors
|
CVE-2014-3223
|
2024-11-21 11:07 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281002
|
7.0 |
HIGH
Local
|
huawei
|
espace_meeting
|
In Huawei eSpace Meeting with software V100R001C03SPC201 and the earlier versions, attackers that obtain the permissions assigned to common users can elevate privileges to access and set specific key…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3222
|
2024-11-21 11:07 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281003
|
7.5 |
HIGH
Network
|
huawei
|
quidway_s5300_firmware quidway_s5700_firmware quidway_s6300_firmware quidway_s6700_firmware quidway_s7700_firmware quidway_s9300_firmware quidway_s9700_firmware
|
Huawei Quidway S9700 V200R003C00SPC500, Quidway S9300 V200R003C00SPC500, Quidway S7700 V200R003C00SPC500, Quidway S6700 V200R003C00SPC300, Quidway S6300 V200R003C00SPC300, Quidway S5700 V200R003C00SP…
|
CWE-399
Resource Management Errors
|
CVE-2014-3224
|
2024-11-21 11:07 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281004
|
7.5 |
HIGH
Network
|
huawei
|
eudemon8000e_firmware
|
Huawei Eudemon8000E firewall with software V200R001C01SPC800 and earlier versions allows users to log in to the device using Telnet or SSH. When an attacker sends to the device a mass of TCP packets …
|
CWE-399
Resource Management Errors
|
CVE-2014-3221
|
2024-11-21 11:07 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281005
|
7.5 |
HIGH
Adjacent
|
pacom
|
1000_ccu_gms rtu_gms
|
Pacom 1000 CCU and RTU GMS devices allow remote attackers to spoof the controller-to-base data stream by leveraging improper use of cryptography.
|
CWE-310
Cryptographic Issues
|
CVE-2014-3260
|
2024-11-21 11:07 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281006
|
- |
|
ok_web_server_project
|
ok_web_server
|
Cross-site scripting (XSS) vulnerability in libahttp/err.c in OkCupid OKWS (OK Web Server) allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to a non-existent page, whi…
|
CWE-79
Cross-site Scripting
|
CVE-2014-3148
|
2024-11-21 11:07 |
2015-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281007
|
- |
|
debian
|
cifs-utils
|
Stack-based buffer overflow in cifskey.c or cifscreds.c in cifs-utils before 6.4, as used in pam_cifscreds, allows remote attackers to have unspecified impact via unknown vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-2830
|
2024-11-21 11:07 |
2015-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281008
|
- |
|
cisco
|
prime_security_manager
|
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Prime Security Manager (PRSM) 9.2(.1-2) and earlier allow remote attackers to inject arbitrary web script or HTML via crafted input to the…
|
CWE-79
Cross-site Scripting
|
CVE-2014-3365
|
2024-11-21 11:07 |
2015-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281009
|
- |
|
ibm
|
tivoli_netcool\/omnibus
|
Cross-site scripting (XSS) vulnerability in the Web GUI in IBM Tivoli Netcool/OMNIbus 7.3.0 before 7.3.0.6, 7.3.1 before 7.3.1.7, and 7.4.0 before 7.4.0.3 allows remote authenticated users to inject …
|
CWE-79
Cross-site Scripting
|
CVE-2014-3032
|
2024-11-21 11:07 |
2015-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281010
|
- |
|
ibm
|
sas_raid_module_firmware sas_connectivity_module_firmware
|
IBM BladeCenter SAS Connectivity Module (aka NSSM) and SAS RAID Module (aka RSSM) before 1.3.3.006 allow remote attackers to obtain blade and storage-pool access via a TELNET session.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3019
|
2024-11-21 11:07 |
2015-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|