|
281871
|
- |
|
powerarchiver
|
powerarchiver
|
The Encrypt Files feature in ConeXware PowerArchiver before 14.02.05 uses legacy ZIP encryption even if the AES 256-bit selection is chosen, which makes it easier for context-dependent attackers to o…
|
CWE-310
Cryptographic Issues
|
CVE-2014-2319
|
2024-11-21 11:06 |
2014-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281872
|
- |
|
modx
|
modx_revolution
|
SQL injection vulnerability in modx.class.php in MODX Revolution 2.0.0 before 2.2.13 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2014-2311
|
2024-11-21 11:06 |
2014-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281873
|
- |
|
zte
|
f460 f660
|
web_shell_cmd.gch on ZTE F460 and F660 cable modems allows remote attackers to obtain administrative access via sendcmd requests, as demonstrated by using "set TelnetCfg" commands to enable a TELNET …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-2321
|
2024-11-21 11:06 |
2014-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281874
|
- |
|
linux opensuse suse
|
linux_kernel opensuse linux_enterprise_server
|
The ip6_route_add function in net/ipv6/route.c in the Linux kernel through 3.13.6 does not properly count the addition of routes, which allows remote attackers to cause a denial of service (memory co…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-2309
|
2024-11-21 11:06 |
2014-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281875
|
- |
|
wireshark
|
wireshark
|
Buffer overflow in the mpeg_read function in wiretap/mpeg.c in the MPEG parser in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 allows remote attackers to execute arbitrary code or cause a d…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-2299
|
2024-11-21 11:06 |
2014-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281876
|
- |
|
atcom
|
netvolution
|
SQL injection vulnerability in ATCOM Netvolution 3 allows remote attackers to execute arbitrary SQL commands via the m parameter.
|
CWE-89
SQL Injection
|
CVE-2014-2318
|
2024-11-21 11:06 |
2014-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281877
|
- |
|
opendocman
|
opendocman
|
SQL injection vulnerability in ajax_udf.php in OpenDocMan before 1.2.7.2 allows remote attackers to execute arbitrary SQL commands via the table parameter. NOTE: some of these details are obtained f…
|
CWE-89
SQL Injection
|
CVE-2014-2317
|
2024-11-21 11:06 |
2014-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281878
|
- |
|
zemanta
|
search_everything
|
SQL injection vulnerability in se_search_default in the Search Everything plugin before 7.0.3 for WordPress allows remote attackers to execute arbitrary SQL commands via the s parameter to index.php.…
|
CWE-89
SQL Injection
|
CVE-2014-2316
|
2024-11-21 11:06 |
2014-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281879
|
- |
|
atlassian
|
jira
|
Directory traversal vulnerability in the Issue Collector plugin in Atlassian JIRA before 6.0.4 allows remote attackers to create arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2014-2314
|
2024-11-21 11:06 |
2014-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281880
|
- |
|
shinephp
|
thank_you_counter_button
|
Multiple cross-site scripting (XSS) vulnerabilities in the Thank You Counter Button plugin 1.8.7 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) thanks_caption…
|
CWE-79
Cross-site Scripting
|
CVE-2014-2315
|
2024-11-21 11:06 |
2014-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|