|
279961
|
- |
|
jexperts
|
channel_platform
|
JExperts Channel Platform 5.0.33_CCB allows remote authenticated users to bypass access restrictions via crafted action and key parameters.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8558
|
2024-11-21 11:19 |
2014-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279962
|
- |
|
sonicwall
|
analyzer global_management_system uma_em5000
|
The ViewPoint web application in Dell SonicWALL Global Management System (GMS) before 7.2 SP2, SonicWALL Analyzer before 7.2 SP2, and SonicWALL UMA before 7.2 SP2 allows remote authenticated users to…
|
CWE-20
Improper Input Validation
|
CVE-2014-8420
|
2024-11-21 11:19 |
2014-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279963
|
- |
|
polarssl
|
polarssl
|
PolarSSL 1.3.8 does not properly negotiate the signature algorithm to use, which allows remote attackers to conduct downgrade attacks via unspecified vectors.
|
CWE-310
Cryptographic Issues
|
CVE-2014-8627
|
2024-11-21 11:19 |
2014-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279964
|
- |
|
digium
|
certified_asterisk asterisk
|
The DB dialplan function in Asterisk Open Source 1.8.x before 1.8.32, 11.x before 11.1.4.1, 12.x before 12.7.1, and 13.x before 13.0.1 and Certified Asterisk 1.8 before 1.8.28-cert8 and 11.6 before 1…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8418
|
2024-11-21 11:19 |
2014-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279965
|
- |
|
digium
|
asterisk certified_asterisk
|
ConfBridge in Asterisk 11.x before 11.14.1, 12.x before 12.7.1, and 13.x before 13.0.1 and Certified Asterisk 11.6 before 11.6-cert8 allows remote authenticated users to (1) gain privileges via vecto…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8417
|
2024-11-21 11:19 |
2014-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279966
|
- |
|
digium
|
asterisk
|
Use-after-free vulnerability in the PJSIP channel driver in Asterisk Open Source 12.x before 12.7.1 and 13.x before 13.0.1, when using the res_pjsip_refer module, allows remote attackers to cause a d…
|
CWE-20
Improper Input Validation
|
CVE-2014-8416
|
2024-11-21 11:19 |
2014-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279967
|
- |
|
digium
|
asterisk
|
Race condition in the chan_pjsip channel driver in Asterisk Open Source 12.x before 12.7.1 and 13.x before 13.0.1 allows remote attackers to cause a denial of service (assertion failure and crash) vi…
|
CWE-20
Improper Input Validation
|
CVE-2014-8415
|
2024-11-21 11:19 |
2014-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279968
|
- |
|
digium
|
asterisk certified_asterisk
|
ConfBridge in Asterisk 11.x before 11.14.1 and Certified Asterisk 11.6 before 11.6-cert8 does not properly handle state changes, which allows remote attackers to cause a denial of service (channel ha…
|
CWE-399
Resource Management Errors
|
CVE-2014-8414
|
2024-11-21 11:19 |
2014-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279969
|
- |
|
digium
|
asterisk
|
The res_pjsip_acl module in Asterisk Open Source 12.x before 12.7.1 and 13.x before 13.0.1 does not properly create and load ACLs defined in pjsip.conf at startup, which allows remote attackers to by…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8413
|
2024-11-21 11:19 |
2014-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279970
|
- |
|
digium
|
certified_asterisk asterisk
|
The (1) VoIP channel drivers, (2) DUNDi, and (3) Asterisk Manager Interface (AMI) in Asterisk Open Source 1.8.x before 1.8.32.1, 11.x before 11.14.1, 12.x before 12.7.1, and 13.x before 13.0.1 and Ce…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8412
|
2024-11-21 11:19 |
2014-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|