|
281311
|
- |
|
bizagi
|
business_process_management_suite
|
SQL injection vulnerability in workflowenginesoa.asmx in Bizagi BPM Suite through 10.4 allows remote authenticated users to execute arbitrary SQL commands via a crafted SOAP request.
|
CWE-89
SQL Injection
|
CVE-2014-2948
|
2024-11-21 11:07 |
2014-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281312
|
- |
|
bizagi
|
business_process_management_suite
|
Cross-site scripting (XSS) vulnerability in Login.aspx in Bizagi BPM Suite before 10.3 allows remote attackers to inject arbitrary web script or HTML via the txtUsername parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2014-2947
|
2024-11-21 11:07 |
2014-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281313
|
- |
|
hanon
|
faceid_f810_firmware faceid faceid_f710_firmware faceid_fk800_firmware faceid_fa007_firmware
|
Hanvon FaceID before 1.007.110 does not require authentication, which allows remote attackers to modify access-control and attendance-tracking data via API commands.
|
CWE-287
Improper Authentication
|
CVE-2014-2938
|
2024-11-21 11:07 |
2014-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281314
|
- |
|
dotonpaper
|
booking_system
|
SQL injection vulnerability in dopbs-backend-forms.php in the Booking System (Booking Calendar) plugin before 1.3 for WordPress allows remote authenticated users to execute arbitrary SQL commands via…
|
CWE-89
SQL Injection
|
CVE-2014-3210
|
2024-11-21 11:07 |
2014-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281315
|
- |
|
fedoraproject google
|
fedora v8 chrome
|
Integer underflow in the LCodeGen::PrepareKeyedOperand function in arm/lithium-codegen-arm.cc in Google V8 before 3.25.28.16, as used in Google Chrome before 35.0.1916.114, allows remote attackers to…
|
CWE-189
Numeric Errors
|
CVE-2014-3152
|
2024-11-21 11:07 |
2014-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281316
|
- |
|
cisco
|
ios
|
The LLDP implementation in Cisco IOS allows remote attackers to cause a denial of service (device reload) via a malformed packet, aka Bug ID CSCum96282.
|
CWE-20
Improper Input Validation
|
CVE-2014-3273
|
2024-11-21 11:07 |
2014-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281317
|
- |
|
cisco
|
ios_xr
|
The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug IDs CSCum85558, CSCum20949, CSCul61849, and CSCul71149.
|
CWE-20
Improper Input Validation
|
CVE-2014-3271
|
2024-11-21 11:07 |
2014-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281318
|
- |
|
cisco
|
ios_xr
|
The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (process hang) via a malformed packet, aka Bug ID CSCul80924.
|
CWE-20
Improper Input Validation
|
CVE-2014-3270
|
2024-11-21 11:07 |
2014-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281319
|
- |
|
cisco
|
ios_xe
|
The SNMP module in Cisco IOS XE 3.5E allows remote authenticated users to cause a denial of service (device reload) by polling frequently, aka Bug ID CSCug65204.
|
CWE-20
Improper Input Validation
|
CVE-2014-3269
|
2024-11-21 11:07 |
2014-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281320
|
- |
|
cisco
|
ios unified_border_element
|
Cisco IOS 15.2(4)M4 on Cisco Unified Border Element (CUBE) devices allows remote attackers to cause a denial of service (input-queue consumption and traffic-processing outage) via crafted RTCP packet…
|
CWE-20
Improper Input Validation
|
CVE-2014-3268
|
2024-11-21 11:07 |
2014-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|