|
280901
|
- |
|
fujitsu
|
arrows_me_f-11d
|
Unspecified vulnerability in ARROWS Me F-11D allows physically proximate attackers to read or modify flash memory via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2014-7254
|
2024-11-21 11:16 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280902
|
- |
|
fujitsu
|
regza_phone_t-01d arrows_tab_lte_f-01d f-12c arrows_kiss_f-03d
|
FUJITSU F-12C, ARROWS Tab LTE F-01D, ARROWS Kiss F-03D, and REGZA Phone T-01D for Android allows local users to execute arbitrary commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2014-7253
|
2024-11-21 11:16 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280903
|
- |
|
disney_interactive fujitsu sharp lg
|
disney_mobile arrows_tab_lte_f-01d softbank_102sh regza_phone_t-01d arrows_x_lte_f-05d prada_phone_l-02d
|
Multiple unspecified vulnerabilities in the Syslink driver for Texas Instruments OMAP mobile processor, as used on NTT DOCOMO ARROWS Tab LTE F-01D, ARROWS X LTE F-05D, Disney Mobile on docomo F-08D, …
|
NVD-CWE-noinfo
|
CVE-2014-7252
|
2024-11-21 11:16 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280904
|
- |
|
lg
|
l-04d l-09c l-03e
|
LG Electronics Mobile WiFi router L-09C, L-03E, and L-04D does not restrict access to the web administration interface, which allows remote attackers to obtain sensitive information via unspecified v…
|
CWE-200
Information Exposure
|
CVE-2014-7243
|
2024-11-21 11:16 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280905
|
- |
|
springshare
|
libcal
|
Multiple cross-site scripting (XSS) vulnerabilities in api_events.php in Springshare LibCal 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) m or (2) cid parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2014-7291
|
2024-11-21 11:16 |
2014-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280906
|
- |
|
enalean
|
tuleap
|
Enalean Tuleap before 7.5.99.6 allows remote attackers to execute arbitrary commands via the User-Agent header, which is provided to the passthru PHP function.
|
CWE-20
Improper Input Validation
|
CVE-2014-7178
|
2024-11-21 11:16 |
2014-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280907
|
- |
|
oracle canonical squid-cache
|
solaris ubuntu_linux squid
|
The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (crash) via a crafted (1) ICMP or (2) ICMP6 packet size.
|
CWE-20
Improper Input Validation
|
CVE-2014-7142
|
2024-11-21 11:16 |
2014-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280908
|
- |
|
squid-cache
|
squid
|
The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and crash) via a crafted type in an (1) ICMP or (2) ICMP6…
|
CWE-19
Data Processing Errors
|
CVE-2014-7141
|
2024-11-21 11:16 |
2014-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280909
|
- |
|
justsystems
|
ichitaro ichitaro_pro
|
Unspecified vulnerability in JustSystems Ichitaro 2008 through 2011; Ichitaro Government 6, 7, 2008, 2009, and 2010; Ichitaro Pro; Ichitaro Pro 2; Ichitaro 2011 Sou; Ichitaro 2012 Shou; Ichitaro 2013…
|
CWE-19
Data Processing Errors
|
CVE-2014-7247
|
2024-11-21 11:16 |
2014-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280910
|
- |
|
dolibarr
|
dolibarr
|
Multiple SQL injection vulnerabilities in Dolibarr ERP/CRM before 3.6.1 allow remote authenticated users to execute arbitrary SQL commands via the (1) contactid parameter in an addcontact action, (2)…
|
CWE-89
SQL Injection
|
CVE-2014-7137
|
2024-11-21 11:16 |
2014-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|