|
285001
|
- |
|
emc
|
connectrix_manager
|
The FileUploadController servlet in EMC Connectrix Manager Converged Network Edition (CMCNE) before 12.1.5 does not properly restrict additions to the Connectrix Manager repository, which allows remo…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-2276
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285002
|
- |
|
cisco
|
ios catalyst_6500
|
Cisco IOS 15.1(2)SY3 and earlier, when used with Supervisor Engine 2T (aka Sup2T) on Catalyst 6500 devices, allows remote attackers to cause a denial of service (device crash) via crafted multicast p…
|
CWE-399
Resource Management Errors
|
CVE-2014-2124
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285003
|
- |
|
cisco
|
ironport_asyncos content_security_management_appliance email_security_appliance_firmware
|
The End User Safelist/Blocklist (aka SLBL) service in Cisco AsyncOS Software for Email Security Appliance (ESA) before 7.6.3-023 and 8.x before 8.0.1-023 and Cisco Content Security Management Applian…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-2119
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285004
|
- |
|
seeddms
|
seeddms
|
Cross-site scripting (XSS) vulnerability in the search feature in SeedDMS (formerly LetoDMS and MyDMS) before 4.3.4 allows remote attackers to inject arbitrary web script or HTML via the query parame…
|
CWE-79
Cross-site Scripting
|
CVE-2014-2280
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285005
|
- |
|
cmsimple
|
cmsimple_classic
|
Cross-site scripting (XSS) vulnerability in whizzywig/wb.php in CMSimple Classic 3.54 and earlier, possibly as downloaded before February 26, 2014, allows remote attackers to inject arbitrary web scr…
|
CWE-79
Cross-site Scripting
|
CVE-2014-2219
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285006
|
- |
|
open-xchange
|
open-xchange_appsuite
|
Cross-site scripting (XSS) vulnerability in the frontend in Open-Xchange (OX) AppSuite 7.4.1 before 7.4.1-rev10 and 7.4.2 before 7.4.2-rev8 allows remote attackers to inject arbitrary web script or H…
|
CWE-79
Cross-site Scripting
|
CVE-2014-2077
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285007
|
- |
|
pivotal_software
|
spring_framework
|
Cross-site scripting (XSS) vulnerability in web/servlet/tags/form/FormTag.java in Spring MVC in Spring Framework 3.0.0 before 3.2.8 and 4.0.0 before 4.0.2 allows remote attackers to inject arbitrary …
|
CWE-79
Cross-site Scripting
|
CVE-2014-1904
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285008
|
- |
|
silexlabs
|
silex
|
Cross-site scripting (XSS) vulnerability in Silex before 2.0.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-1971
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285009
|
- |
|
estrongs
|
es_file_explorer
|
Directory traversal vulnerability in the ES File Explorer File Manager application before 3.0.4 for Android allows remote attackers to overwrite or create arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2014-1970
|
2024-11-21 11:05 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285010
|
- |
|
nttdocomo
|
spmode_mail_android
|
The NTT DOCOMO sp mode mail application 5900 through 6300 for Android 4.0.x and 6000 through 6620 for Android 4.1 through 4.4 allows remote attackers to execute arbitrary Java methods via Deco-mail e…
|
CWE-94
Code Injection
|
CVE-2014-1979
|
2024-11-21 11:05 |
2014-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|