|
279271
|
- |
|
linux redhat suse opensuse fedoraproject debian canonical
|
linux_kernel enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_aus enterprise_linux_server_eus enterprise_linux_eus enterprise_linux_…
|
The vdso_addr function in arch/x86/vdso/vma.c in the Linux kernel through 3.18.2 does not properly choose memory locations for the vDSO area, which makes it easier for local users to bypass the ASLR …
|
NVD-CWE-noinfo
|
CVE-2014-9585
|
2024-11-21 11:21 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279272
|
- |
|
tp-link
|
tl-wr840n_firmware
|
Cross-site request forgery (CSRF) vulnerability in the administration console in TP-Link TL-WR840N (V1) router with firmware before 3.13.27 build 141120 allows remote attackers to hijack the authenti…
|
CWE-352
Origin Validation Error
|
CVE-2014-9510
|
2024-11-21 11:21 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279273
|
- |
|
school_administration_project
|
school_administration
|
Cross-site scripting (XSS) vulnerability in the School Administration module 7.x-1.x before 7.x-1.8 for Drupal allows remote authenticated users with permission to create or edit a class node to inje…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9505
|
2024-11-21 11:21 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279274
|
- |
|
poll_chart_block_project
|
poll_chart_block
|
Cross-site scripting (XSS) vulnerability in the Poll Chart Block module 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a poll node titl…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9501
|
2024-11-21 11:21 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279275
|
- |
|
linux redhat suse opensuse debian canonical oracle
|
linux_kernel enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_aus enterprise_linux_server_eus enterprise_linux_eus enterprise_linux_…
|
The parse_rock_ridge_inode_internal function in fs/isofs/rock.c in the Linux kernel before 3.18.2 does not validate a length value in the Extensions Reference (ER) System Use Field, which allows loca…
|
CWE-20
Improper Input Validation
|
CVE-2014-9584
|
2024-11-21 11:21 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279276
|
- |
|
linux redhat opensuse fedoraproject debian canonical
|
linux_kernel enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_server_tus ope…
|
Race condition in the key_gc_unused_keys function in security/keys/gc.c in the Linux kernel through 3.18.2 allows local users to cause a denial of service (memory corruption or panic) or possibly hav…
|
CWE-362
Race Condition
|
CVE-2014-9529
|
2024-11-21 11:21 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279277
|
- |
|
moip_project
|
moip
|
Cross-site scripting (XSS) vulnerability in the Moip module 7.x-1.x before 7.x-1.4 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors to the notificatio…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9500
|
2024-11-21 11:21 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279278
|
- |
|
godwin\'s_law_project
|
godwin\'s_law
|
Cross-site scripting (XSS) vulnerability in the Godwin's Law module before 7.x-1.1 for Drupal, when using the dblog module, allows remote authenticated users to inject arbitrary web script or HTML vi…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9499
|
2024-11-21 11:21 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279279
|
- |
|
webform_invitation_project
|
webform_invitation
|
Cross-site scripting (XSS) vulnerability in the Webform Invitation module 7.x-1.x before 7.x-1.3 and 7.x-2.x before 7.x-2.4 for Drupal allows remote authenticated users with the Webform: Create new c…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9498
|
2024-11-21 11:21 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279280
|
- |
|
t-mobile asus
|
tm-ac1900 wrt_firmware
|
common.c in infosvr in ASUS WRT firmware 3.0.0.4.376_1071, 3.0.0.376.2524-g0013f52, and other versions, as used in RT-AC66U, RT-N66U, and other routers, does not properly check the MAC address for a …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-9583
|
2024-11-21 11:21 |
2015-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|