|
283921
|
- |
|
fujitsu
|
regza_phone_t-01d arrows_tab_lte_f-01d f-12c arrows_kiss_f-03d
|
FUJITSU F-12C, ARROWS Tab LTE F-01D, ARROWS Kiss F-03D, and REGZA Phone T-01D for Android allows local users to execute arbitrary commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2014-7253
|
2024-11-21 11:16 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283922
|
- |
|
disney_interactive fujitsu sharp lg
|
disney_mobile arrows_tab_lte_f-01d softbank_102sh regza_phone_t-01d arrows_x_lte_f-05d prada_phone_l-02d
|
Multiple unspecified vulnerabilities in the Syslink driver for Texas Instruments OMAP mobile processor, as used on NTT DOCOMO ARROWS Tab LTE F-01D, ARROWS X LTE F-05D, Disney Mobile on docomo F-08D, …
|
NVD-CWE-noinfo
|
CVE-2014-7252
|
2024-11-21 11:16 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283923
|
- |
|
lg
|
l-04d l-09c l-03e
|
LG Electronics Mobile WiFi router L-09C, L-03E, and L-04D does not restrict access to the web administration interface, which allows remote attackers to obtain sensitive information via unspecified v…
|
CWE-200
Information Exposure
|
CVE-2014-7243
|
2024-11-21 11:16 |
2014-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283924
|
- |
|
springshare
|
libcal
|
Multiple cross-site scripting (XSS) vulnerabilities in api_events.php in Springshare LibCal 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) m or (2) cid parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2014-7291
|
2024-11-21 11:16 |
2014-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283925
|
- |
|
enalean
|
tuleap
|
Enalean Tuleap before 7.5.99.6 allows remote attackers to execute arbitrary commands via the User-Agent header, which is provided to the passthru PHP function.
|
CWE-20
Improper Input Validation
|
CVE-2014-7178
|
2024-11-21 11:16 |
2014-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283926
|
- |
|
oracle canonical squid-cache
|
solaris ubuntu_linux squid
|
The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (crash) via a crafted (1) ICMP or (2) ICMP6 packet size.
|
CWE-20
Improper Input Validation
|
CVE-2014-7142
|
2024-11-21 11:16 |
2014-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283927
|
- |
|
squid-cache
|
squid
|
The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and crash) via a crafted type in an (1) ICMP or (2) ICMP6…
|
CWE-19
Data Processing Errors
|
CVE-2014-7141
|
2024-11-21 11:16 |
2014-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283928
|
- |
|
justsystems
|
ichitaro ichitaro_pro
|
Unspecified vulnerability in JustSystems Ichitaro 2008 through 2011; Ichitaro Government 6, 7, 2008, 2009, and 2010; Ichitaro Pro; Ichitaro Pro 2; Ichitaro 2011 Sou; Ichitaro 2012 Shou; Ichitaro 2013…
|
CWE-19
Data Processing Errors
|
CVE-2014-7247
|
2024-11-21 11:16 |
2014-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283929
|
- |
|
dolibarr
|
dolibarr
|
Multiple SQL injection vulnerabilities in Dolibarr ERP/CRM before 3.6.1 allow remote authenticated users to execute arbitrary SQL commands via the (1) contactid parameter in an addcontact action, (2)…
|
CWE-89
SQL Injection
|
CVE-2014-7137
|
2024-11-21 11:16 |
2014-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283930
|
- |
|
tibco
|
silver_fabric_enabler spotfire_deployment_kit spotfire_web_player
|
Spotfire Web Player Engine in TIBCO Spotfire Web Player 6.0.x before 6.0.2 and 6.5.x before 6.5.2, Spotfire Deployment Kit 6.0.x before 6.0.2 and 6.5.x before 6.5.2, and Silver Fabric Enabler for Spo…
|
CWE-200
Information Exposure
|
CVE-2014-7195
|
2024-11-21 11:16 |
2014-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|