|
279741
|
7.5 |
HIGH
Network
|
sap
|
hybris
|
Directory traversal vulnerability in hybris Commerce software suite 5.0.3.3 and earlier, 5.0.0.3 and earlier, 5.0.4.4 and earlier, 5.1.0.1 and earlier, 5.1.1.2 and earlier, 5.2.0.3 and earlier, and 5…
|
CWE-22
Path Traversal
|
CVE-2014-8871
|
2024-11-21 11:19 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279742
|
6.1 |
MEDIUM
Network
|
cit-e-net
|
cit-e-access
|
Multiple cross-site scripting (XSS) vulnerabilities in Cit-e-Net Cit-e-Access 6.
|
CWE-79
Cross-site Scripting
|
CVE-2014-8753
|
2024-11-21 11:19 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279743
|
9.8 |
CRITICAL
Network
|
barracuda
|
load_balancer
|
Privilege escalation vulnerability in Barracuda Load Balancer 5.0.0.015 via the use of an improperly protected SSH key.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8428
|
2024-11-21 11:19 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279744
|
9.8 |
CRITICAL
Network
|
barracuda
|
load_balancer
|
Hard coded weak credentials in Barracuda Load Balancer 5.0.0.015.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2014-8426
|
2024-11-21 11:19 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279745
|
8.8 |
HIGH
Network
|
ibm
|
curam_social_program_management
|
IBM Curam Social Program Management 6.0 SP2 before EP26, 6.0.4 before 6.0.4.5iFix10 and 6.0.5 before 6.0.5.6 allows remote authenticated users to load arbitrary Java classes via unspecified vectors.
|
CWE-77
Command Injection
|
CVE-2014-8903
|
2024-11-21 11:19 |
2017-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279746
|
9.8 |
CRITICAL
Network
|
seagate
|
business_nas_firmware
|
Seagate Business NAS devices with firmware before 2015.00322 allow remote attackers to execute arbitrary code with root privileges by leveraging use of a static encryption key to create session token…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2014-8687
|
2024-11-21 11:19 |
2017-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279747
|
6.2 |
MEDIUM
Local
|
imagemagick
|
imagemagick
|
The JPEG decoder in ImageMagick before 6.8.9-9 allows local users to cause a denial of service (out-of-bounds memory access and crash).
|
CWE-125
Out-of-bounds Read
|
CVE-2014-8716
|
2024-11-21 11:19 |
2017-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279748
|
5.5 |
MEDIUM
Local
|
imagemagick
|
imagemagick
|
DCM decode in ImageMagick before 6.8.9-9 allows remote attackers to cause a denial of service (out-of-bounds read).
|
CWE-125
Out-of-bounds Read
|
CVE-2014-8562
|
2024-11-21 11:19 |
2017-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279749
|
7.5 |
HIGH
Network
|
huawei
|
ac6605_firmware acu_firmware s_series_firmware s5300_firmware s5700_firmware s6700_firmware s6300_firmware s7700_firmware s9700_firmware s9300_firmware s9300e_firmware
|
Huawei AC6605 with software V200R001C00; AC6605 with software V200R002C00; ACU with software V200R001C00; ACU with software V200R002C00; S2300, S3300, S2700, S3700 with software V100R006C05 and earli…
|
CWE-20
Improper Input Validation
|
CVE-2014-8572
|
2024-11-21 11:19 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279750
|
3.3 |
LOW
Local
|
huawei
|
ascend_p6_edge-u00_firmware ascend_p6_edge-t00_firmware ascend_p6_edge-c00_firmware
|
Apps on Huawei Ascend P6 mobile phones with software EDGE-U00 V100R001C17B508SP01 and earlier versions before V100R001C17B508SP02; EDGE-T00 V100R001C01B508SP01 and earlier versions before V100R001C01…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8571
|
2024-11-21 11:19 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|