|
277721
|
- |
|
redhat
|
tcpdump
|
Buffer overflow in the ppp_hdlc function in print-ppp.c in tcpdump 4.6.2 and earlier allows remote attackers to cause a denial of service (crash) cia a crafted PPP packet.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9140
|
2024-11-21 11:20 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277722
|
- |
|
debian fedoraproject lsyncd_project
|
debian_linux fedora lsyncd
|
default-rsyncssh.lua in Lsyncd 2.1.5 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a filename.
|
CWE-77
Command Injection
|
CVE-2014-8990
|
2024-11-21 11:20 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277723
|
- |
|
pbboard
|
pbboard
|
SQL injection vulnerability in the CheckEmail function in includes/functions.class.php in PBBoard 3.0.1 before 20141128 allows remote attackers to execute arbitrary SQL commands via the email paramet…
|
CWE-89
SQL Injection
|
CVE-2014-9215
|
2024-11-21 11:20 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277724
|
- |
|
altitude
|
altitude_unified_customer_interaction
|
Multiple cross-site scripting (XSS) vulnerabilities in Altitude uAgent in Altitude uCI (Unified Customer Interaction) 7.5 allow remote attackers to inject arbitrary web script or HTML via (1) an emai…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9212
|
2024-11-21 11:20 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277725
|
- |
|
technicolor
|
td5130_router_firmware
|
Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to execute arbitrary commands via shell metacharacters in the ping field (setobject_ip parameter).
|
CWE-77
Command Injection
|
CVE-2014-9144
|
2024-11-21 11:20 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277726
|
- |
|
technicolor
|
td5130_router_firmware
|
Open redirect vulnerability in Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the failre…
|
CWE-17
Code
|
CVE-2014-9143
|
2024-11-21 11:20 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277727
|
- |
|
technicolor
|
td5130_router_firmware
|
Cross-site scripting (XSS) vulnerability in Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to inject arbitrary web script or HTML via the failrefer parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2014-9142
|
2024-11-21 11:20 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277728
|
- |
|
cminds
|
cm_download_manager
|
Cross-site request forgery (CSRF) vulnerability in the CreativeMinds CM Downloads Manager plugin before 2.0.7 for WordPress allows remote attackers to hijack the authentication of administrators for …
|
CWE-352
Origin Validation Error
|
CVE-2014-9129
|
2024-11-21 11:20 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277729
|
- |
|
websitebaker
|
websitebaker
|
Multiple cross-site scripting (XSS) vulnerabilities in WebsiteBaker 2.8.3 allow remote attackers to inject arbitrary web script or HTML via the (1) QUERY_STRING to wb/admin/admintools/tool.php or (2)…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9243
|
2024-11-21 11:20 |
2014-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277730
|
- |
|
websitebaker
|
websitebaker
|
SQL injection vulnerability in admin/pages/modify.php in WebsiteBaker 2.8.3 allows remote attackers to execute arbitrary SQL commands via the page_id parameter.
|
CWE-89
SQL Injection
|
CVE-2014-9242
|
2024-11-21 11:20 |
2014-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|