|
280131
|
6.1 |
MEDIUM
Network
|
videowhisper
|
webcam
|
Cross-site scripting (XSS) vulnerability in vwrooms/js/jsor-jcarousel/examples/special_textscroller.php in the VideoWhisper Webcam plugins for Drupal 7.x allows remote attackers to inject arbitrary w…
|
CWE-79
Cross-site Scripting
|
CVE-2014-8338
|
2024-11-21 11:18 |
2020-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280132
|
9.8 |
CRITICAL
Network
|
aircrack-ng
|
aircrack-ng
|
Stack-based buffer overflow in the tcp_test function in aireplay-ng.c in Aircrack-ng before 1.2 RC 1 allows remote attackers to execute arbitrary code via a crafted length parameter value.
|
CWE-787
Out-of-bounds Write
|
CVE-2014-8322
|
2024-11-21 11:18 |
2020-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280133
|
7.8 |
HIGH
Local
|
aircrack-ng
|
aircrack-ng
|
Stack-based buffer overflow in the gps_tracker function in airodump-ng.c in Aircrack-ng before 1.2 RC 1 allows local users to execute arbitrary code or gain privileges via unspecified vectors.
|
CWE-787
Out-of-bounds Write
|
CVE-2014-8321
|
2024-11-21 11:18 |
2020-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280134
|
7.8 |
HIGH
Local
|
unzip_project redhat
|
unzip enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_server_tus
|
Heap-based buffer overflow in the test_compr_eb function in Info-ZIP UnZip 6.0 and earlier allows remote attackers to execute arbitrary code via a crafted zip file in the -t command argument to the u…
|
CWE-787
Out-of-bounds Write
|
CVE-2014-8140
|
2024-11-21 11:18 |
2020-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280135
|
7.8 |
HIGH
Local
|
unzip_project redhat
|
unzip enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_server_tus
|
Heap-based buffer overflow in the CRC32 verification in Info-ZIP UnZip 6.0 and earlier allows remote attackers to execute arbitrary code via a crafted zip file in the -t command argument to the unzip…
|
CWE-787
Out-of-bounds Write
|
CVE-2014-8139
|
2024-11-21 11:18 |
2020-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280136
|
8.8 |
HIGH
Network
|
wisc
|
htcondor
|
The scheduler in HTCondor before 8.2.6 allows remote authenticated users to execute arbitrary code.
|
CWE-20
Improper Input Validation
|
CVE-2014-8126
|
2024-11-21 11:18 |
2020-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280137
|
4.3 |
MEDIUM
Network
|
postgresql debian
|
postgresql debian_linux
|
PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 allows remote authenticated users to obtain sensitive column values by triggering constr…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2014-8161
|
2024-11-21 11:18 |
2020-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280138
|
7.8 |
HIGH
Local
|
redhat debian bsd_mailx_project
|
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_server_tus debian_linux bsd…
|
BSD mailx 8.1.2 and earlier allows remote attackers to execute arbitrary commands via a crafted email address.
|
CWE-74
Injection
|
CVE-2014-7844
|
2024-11-21 11:18 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280139
|
9.8 |
CRITICAL
Network
|
helpdezk
|
helpdezk
|
Unrestricted file upload vulnerability in includes/classes/uploadify-v2.1.4/uploadify.php in HelpDEZk 1.0.1 and earlier allows remote attackers to execute arbitrary code by uploading a file with an e…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2014-8337
|
2024-11-21 11:18 |
2020-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280140
|
7.5 |
HIGH
Network
|
openldap debian
|
openldap debian_linux
|
An off-by-one error leading to a crash was discovered in openldap 2.4 when processing DNS SRV messages. If slapd was configured to use the dnssrv backend, an attacker could crash the service with cra…
|
CWE-193
Off-by-one Error
|
CVE-2014-8182
|
2024-11-21 11:18 |
2020-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|