|
285161
|
- |
|
juniper
|
ive_os
|
Cross-site scripting (XSS) vulnerability in the Pulse Collaboration (Secure Meeting) user pages in Juniper Junos Pulse Secure Access Service (aka SSL VPN) with IVE OS before 7.1r18, 7.3 before 7.3r10…
|
CWE-79
Cross-site Scripting
|
CVE-2014-2291
|
2024-11-21 11:06 |
2014-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285162
|
- |
|
proxmox
|
mail_gateway
|
Multiple cross-site scripting (XSS) vulnerabilities in Proxmox Mail Gateway before 3.1-5829 allow remote attackers to inject arbitrary web script or HTML via the (1) state parameter to objects/who/in…
|
CWE-79
Cross-site Scripting
|
CVE-2014-2325
|
2024-11-21 11:06 |
2014-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285163
|
- |
|
powerarchiver
|
powerarchiver
|
The Encrypt Files feature in ConeXware PowerArchiver before 14.02.05 uses legacy ZIP encryption even if the AES 256-bit selection is chosen, which makes it easier for context-dependent attackers to o…
|
CWE-310
Cryptographic Issues
|
CVE-2014-2319
|
2024-11-21 11:06 |
2014-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285164
|
- |
|
modx
|
modx_revolution
|
SQL injection vulnerability in modx.class.php in MODX Revolution 2.0.0 before 2.2.13 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2014-2311
|
2024-11-21 11:06 |
2014-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285165
|
- |
|
zte
|
f460 f660
|
web_shell_cmd.gch on ZTE F460 and F660 cable modems allows remote attackers to obtain administrative access via sendcmd requests, as demonstrated by using "set TelnetCfg" commands to enable a TELNET …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-2321
|
2024-11-21 11:06 |
2014-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285166
|
- |
|
linux opensuse suse
|
linux_kernel opensuse linux_enterprise_server
|
The ip6_route_add function in net/ipv6/route.c in the Linux kernel through 3.13.6 does not properly count the addition of routes, which allows remote attackers to cause a denial of service (memory co…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-2309
|
2024-11-21 11:06 |
2014-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285167
|
- |
|
wireshark
|
wireshark
|
Buffer overflow in the mpeg_read function in wiretap/mpeg.c in the MPEG parser in Wireshark 1.8.x before 1.8.13 and 1.10.x before 1.10.6 allows remote attackers to execute arbitrary code or cause a d…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-2299
|
2024-11-21 11:06 |
2014-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285168
|
- |
|
atcom
|
netvolution
|
SQL injection vulnerability in ATCOM Netvolution 3 allows remote attackers to execute arbitrary SQL commands via the m parameter.
|
CWE-89
SQL Injection
|
CVE-2014-2318
|
2024-11-21 11:06 |
2014-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285169
|
- |
|
opendocman
|
opendocman
|
SQL injection vulnerability in ajax_udf.php in OpenDocMan before 1.2.7.2 allows remote attackers to execute arbitrary SQL commands via the table parameter. NOTE: some of these details are obtained f…
|
CWE-89
SQL Injection
|
CVE-2014-2317
|
2024-11-21 11:06 |
2014-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285170
|
- |
|
zemanta
|
search_everything
|
SQL injection vulnerability in se_search_default in the Search Everything plugin before 7.0.3 for WordPress allows remote attackers to execute arbitrary SQL commands via the s parameter to index.php.…
|
CWE-89
SQL Injection
|
CVE-2014-2316
|
2024-11-21 11:06 |
2014-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|