|
277921
|
- |
|
ibm
|
notes_traveler_companion
|
The IBM Notes Traveler Companion application 1.0 and 1.1 before 201411010515 for Window Phone, as distributed in IBM Notes Traveler 9.0.1, does not properly restrict the number of executions of the a…
|
CWE-200
Information Exposure
|
CVE-2014-8921
|
2024-11-21 11:19 |
2015-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277922
|
- |
|
kony
|
enterprise_mobile_management
|
Kony Management (aka Enterprise Mobile Management or EMM) 1.2 and earlier allows remote authenticated users to read (1) arbitrary messages via the messageId parameter to selfservice/managedevice/getM…
|
CWE-200
Information Exposure
|
CVE-2014-8487
|
2024-11-21 11:19 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277923
|
- |
|
exponentcms
|
exponent_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Exponent CMS before 2.1.4 patch 6, 2.2.x before 2.2.3 patch 9, and 2.3.x before 2.3.1 patch 4 allow remote attackers to inject arbitrary web scr…
|
CWE-79
Cross-site Scripting
|
CVE-2014-8690
|
2024-11-21 11:19 |
2015-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277924
|
- |
|
lg
|
on-screen_phone
|
LG On-Screen Phone (OSP) before 4.3.010 allows remote attackers to bypass authorization via a crafted request.
|
CWE-284
Improper Access Control
|
CVE-2014-8757
|
2024-11-21 11:19 |
2015-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277925
|
- |
|
ibm
|
content_navigator
|
Cross-site scripting (XSS) vulnerability in IBM Content Navigator 2.0.0 and 2.0.1 before 2.0.1.2 FP002 IF003 and 2.0.3 before 2.0.3.2 FP002 allows remote attackers to inject arbitrary web script or H…
|
CWE-79
Cross-site Scripting
|
CVE-2014-8911
|
2024-11-21 11:19 |
2015-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277926
|
- |
|
ibm
|
websphere_portal
|
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.0.x through 7.0.0.2 CF29, 8.0.0.x before 8.0.0.1 CF15, and 8.5.0 befor…
|
CWE-79
Cross-site Scripting
|
CVE-2014-8909
|
2024-11-21 11:19 |
2015-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277927
|
- |
|
cloudera
|
cloudera_manager
|
Cloudera Manager 5.2.0, 5.2.1, and 5.3.0 stores the LDAP bind password in plaintext in unspecified world-readable files under /etc/hadoop, which allows local users to obtain this password.
|
CWE-200
Information Exposure
|
CVE-2014-8733
|
2024-11-21 11:19 |
2015-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277928
|
- |
|
pexip
|
pexip_infinity
|
Pexip Infinity before 8 uses the same SSH host keys across different customers' installations, which allows man-in-the-middle attackers to spoof Management and Conferencing Nodes by leveraging these …
|
CWE-254
7PK - Security Features
|
CVE-2014-8779
|
2024-11-21 11:19 |
2015-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277929
|
- |
|
freebsd
|
freebsd
|
The sctp module in FreeBSD 10.1 before p5, 10.0 before p17, 9.3 before p9, and 8.4 before p23 allows remote attackers to cause a denial of service (NULL pointer dereference and kernel panic) via a cr…
|
NVD-CWE-Other
|
CVE-2014-8613
|
2024-11-21 11:19 |
2015-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277930
|
- |
|
freebsd
|
freebsd
|
Multiple array index errors in the Stream Control Transmission Protocol (SCTP) module in FreeBSD 10.1 before p5, 10.0 before p17, 9.3 before p9, and 8.4 before p23 allow local users to (1) gain privi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8612
|
2024-11-21 11:19 |
2015-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|