|
281901
|
7.5 |
HIGH
Network
|
gamera_project
|
gamera
|
Gamera before 3.4.1 insecurely creates temporary files.
|
CWE-20
Improper Input Validation
|
CVE-2014-1937
|
2024-11-21 11:05 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281902
|
7.5 |
HIGH
Network
|
rc_project debian
|
rc debian_linux
|
rc before 1.7.1-5 insecurely creates temporary files.
|
CWE-20
Improper Input Validation
|
CVE-2014-1936
|
2024-11-21 11:05 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281903
|
5.3 |
MEDIUM
Network
|
9base_project debian
|
9base debian_linux
|
9base 1:6-6 and 1:6-7 insecurely creates temporary files which results in predictable filenames.
|
CWE-20
Improper Input Validation
|
CVE-2014-1935
|
2024-11-21 11:05 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281904
|
5.5 |
MEDIUM
Local
|
x_file_explorer_project debian
|
x_file_explorer debian_linux
|
X File Explorer (aka xfe) might allow local users to bypass intended access restrictions and gain access to arbitrary files by leveraging failure to use directory masks when creating files on Samba a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-2079
|
2024-11-21 11:05 |
2018-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281905
|
7.8 |
HIGH
Local
|
enlightenment
|
enlightenment
|
Enlightenment before 0.17.6 might allow local users to gain privileges via vectors involving the gdb method.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1846
|
2024-11-21 11:05 |
2018-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281906
|
7.8 |
HIGH
Local
|
enlightenment
|
enlightenment
|
An unspecified setuid root helper in Enlightenment before 0.17.6 allows local users to gain privileges by leveraging failure to properly sanitize the environment.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1845
|
2024-11-21 11:05 |
2018-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281907
|
7.5 |
HIGH
Network
|
eshtery.she7ata
|
eshtery_cms
|
Absolute path traversal vulnerability in Eshtery CMS allows remote attackers to read arbitrary files via a full pathname in the file parameter to FileManager.aspx.
|
CWE-22
Path Traversal
|
CVE-2014-2069
|
2024-11-21 11:05 |
2018-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281908
|
5.3 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
The backend in Open-Xchange (OX) AppSuite 7.4.2 before 7.4.2-rev9 allows remote attackers to obtain sensitive information about user email addresses in opportunistic circumstances by leveraging a fai…
|
CWE-200
Information Exposure
|
CVE-2014-2078
|
2024-11-21 11:05 |
2018-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281909
|
9.8 |
CRITICAL
Network
|
3ds
|
catia
|
Stack-based buffer overflow in Dassault Systemes CATIA V5-6R2013 allows remote attackers to execute arbitrary code via a crafted packet, related to "CATV5_Backbone_Bus."
|
CWE-787
Out-of-bounds Write
|
CVE-2014-2073
|
2024-11-21 11:05 |
2018-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
281910
|
8.8 |
HIGH
Network
|
opendocman
|
opendocman
|
OpenDocMan 1.2.7 and earlier does not properly validate allowed actions, which allows remote authenticated users to bypass an intended access restrictions and assign administrative privileges to them…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1946
|
2024-11-21 11:05 |
2018-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|