|
282651
|
9.8 |
CRITICAL
Network
|
mozilla fedoraproject opensuse suse debian canonical redhat
|
seamonkey firefox firefox_esr thunderbird fedora opensuse suse_linux_enterprise_software_development_kit suse_linux_enterprise_desktop suse_linux_enterprise_server debian_l…
|
Use-after-free vulnerability in the imgRequestProxy function in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 allows remote attackers t…
|
CWE-416
Use After Free
|
CVE-2014-1486
|
2024-11-21 11:04 |
2014-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282652
|
8.8 |
HIGH
Network
|
mozilla canonical debian redhat fedoraproject opensuse suse
|
seamonkey firefox firefox_esr thunderbird ubuntu_linux debian_linux enterprise_linux_server enterprise_linux_server_eus enterprise_linux_workstation enterprise_linux_server…
|
RasterImage.cpp in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 does not prevent access to discarded data, which allows remote attacke…
|
CWE-787
Out-of-bounds Write
|
CVE-2014-1482
|
2024-11-21 11:04 |
2014-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282653
|
7.5 |
HIGH
Network
|
mozilla fedoraproject opensuse suse redhat debian canonical
|
seamonkey firefox firefox_esr thunderbird fedora opensuse suse_linux_enterprise_software_development_kit suse_linux_enterprise_desktop suse_linux_enterprise_server enterpri…
|
Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 allow remote attackers to bypass intended restrictions on window objects by leveraging in…
|
NVD-CWE-noinfo
|
CVE-2014-1481
|
2024-11-21 11:04 |
2014-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282654
|
7.5 |
HIGH
Network
|
mozilla canonical debian redhat fedoraproject opensuse suse
|
seamonkey firefox firefox_esr thunderbird ubuntu_linux debian_linux enterprise_linux_server enterprise_linux_server_eus enterprise_linux_workstation enterprise_linux_server…
|
The System Only Wrapper (SOW) implementation in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 does not prevent certain cloning operatio…
|
NVD-CWE-noinfo
|
CVE-2014-1479
|
2024-11-21 11:04 |
2014-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282655
|
- |
|
mozilla canonical opensuse oracle
|
seamonkey firefox ubuntu_linux opensuse solaris
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allow remote attackers to cause a denial of service (memory corruption and applicat…
|
CWE-787
Out-of-bounds Write
|
CVE-2014-1478
|
2024-11-21 11:04 |
2014-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282656
|
- |
|
hiphop_virtual_machine_for_php_project
|
hiphop_virtual_machine_for_php
|
The libxml_disable_entity_loader function in runtime/ext/ext_simplexml.cpp in HipHop Virtual Machine for PHP (HHVM) before 2.4.0 and 2.3.x before 2.3.3 does not properly disable a certain libxml hand…
|
NVD-CWE-Other
|
CVE-2014-1439
|
2024-11-21 11:04 |
2014-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282657
|
9.8 |
CRITICAL
Network
|
mozilla canonical debian redhat fedoraproject opensuse suse
|
seamonkey firefox firefox_esr thunderbird ubuntu_linux debian_linux enterprise_linux_server enterprise_linux_server_eus enterprise_linux_workstation enterprise_linux_server…
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 allow remote attackers to c…
|
NVD-CWE-noinfo
|
CVE-2014-1477
|
2024-11-21 11:04 |
2014-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282658
|
- |
|
easyxdm
|
easyxdm
|
Cross-site scripting (XSS) vulnerability in name.html in easyXDM before 2.4.19 allows remote attackers to inject arbitrary web script or HTML via the location.hash value.
|
CWE-79
Cross-site Scripting
|
CVE-2014-1403
|
2024-11-21 11:04 |
2014-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282659
|
- |
|
fortinet
|
fortiweb
|
Cross-site scripting (XSS) vulnerability in the web administration interface in FortiGuard FortiWeb 5.0.3 and earlier allows remote authenticated administrators to inject arbitrary web script or HTML…
|
CWE-79
Cross-site Scripting
|
CVE-2014-1458
|
2024-11-21 11:04 |
2014-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282660
|
- |
|
otrs
|
otrs
|
Multiple cross-site request forgery (CSRF) vulnerabilities in (1) CustomerPreferences.pm, (2) CustomerTicketMessage.pm, (3) CustomerTicketProcess.pm, and (4) CustomerTicketZoom.pm in Kernel/Modules/ …
|
CWE-352
Origin Validation Error
|
CVE-2014-1694
|
2024-11-21 11:04 |
2014-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|