|
281281
|
- |
|
cisco
|
unified_communications_manager
|
SQL injection vulnerability in BulkViewFileContentsAction.java in the Java interface in Cisco Unified Communications Manager (Unified CM) allows remote authenticated users to execute arbitrary SQL co…
|
CWE-89
SQL Injection
|
CVE-2014-3287
|
2024-11-21 11:07 |
2014-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281282
|
- |
|
ibm
|
cics_transaction_server
|
IBM CICS Transaction Server 3.1, 3.2, 4.1, 4.2, and 5.1 on z/OS does not properly implement CEMT transactions, which allows remote authenticated users to cause a denial of service (storage overlay) b…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-3042
|
2024-11-21 11:07 |
2014-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281283
|
- |
|
ibm
|
system_storage_virtualization_engine_ts7700_firmware system_storage_virtualization_engine_ts7700
|
Unspecified vulnerability on the IBM System Storage Virtualization Engine TS7700 allows local users to gain privileges by leveraging the TSSC service-user role to enter a crafted SSH command.
|
NVD-CWE-noinfo
|
CVE-2014-3048
|
2024-11-21 11:07 |
2014-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281284
|
- |
|
ibm
|
spss_modeler
|
IBM SPSS Modeler 16.0 before 16.0.0.1 on UNIX does not properly drop group privileges, which allows local users to bypass intended file-access restrictions by leveraging (1) gid 0 or (2) root's group…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3038
|
2024-11-21 11:07 |
2014-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281285
|
- |
|
ibm
|
api_management
|
Unspecified vulnerability in IBM API Management 3.0.0.0, when basic authentication is used for APIs, allows remote attackers to bypass intended restrictions on topology access, and obtain sensitive i…
|
NVD-CWE-noinfo
|
CVE-2014-3036
|
2024-11-21 11:07 |
2014-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281286
|
- |
|
cisco
|
wireless_lan_controller
|
Cisco Wireless LAN Controller (WLC) devices allow remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a zero value in Cisco Discovery Protocol packet data …
|
CWE-20
Improper Input Validation
|
CVE-2014-3291
|
2024-11-21 11:07 |
2014-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281287
|
- |
|
cisco
|
webex_meetings_server
|
The web framework in Cisco WebEx Meeting Server does not properly restrict the content of reply messages, which allows remote attackers to obtain sensitive information via a crafted URL, aka Bug IDs …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3286
|
2024-11-21 11:07 |
2014-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281288
|
- |
|
cisco
|
unified_communications_domain_manager
|
The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) does not properly implement access control, which allows remote attackers to obtain potentially sensitive user informati…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3281
|
2024-11-21 11:07 |
2014-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281289
|
- |
|
cisco
|
unified_communications_domain_manager
|
The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) does not properly implement access control, which allows remote attackers to enumerate accounts by visiting an unspecifi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3278
|
2024-11-21 11:07 |
2014-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281290
|
- |
|
cisco
|
unified_communications_domain_manager
|
The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier does not properly implement access control, which allows remote authenticated users to obtain potent…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3280
|
2024-11-21 11:07 |
2014-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|