|
280901
|
- |
|
mantisbt
|
mantisbt
|
Cross-site scripting (XSS) vulnerability in admin/copy_field.php in MantisBT before 1.2.18 allows remote attackers to inject arbitrary web script or HTML via the dest_id field.
|
CWE-79
Cross-site Scripting
|
CVE-2014-9281
|
2024-11-21 11:20 |
2014-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280902
|
- |
|
unrtf_project
|
unrtf
|
UnRTF allows remote attackers to cause a denial of service (out-of-bounds memory access and crash) and possibly execute arbitrary code via a crafted RTF file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9275
|
2024-11-21 11:20 |
2014-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280903
|
- |
|
unrtf_project fedoraproject mageia_project debian
|
unrtf fedora mageia debian_linux
|
UnRTF allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code as demonstrated by a file containing the string "{\cb-999999999".
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9274
|
2024-11-21 11:20 |
2014-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280904
|
- |
|
xen opensuse
|
xen opensuse
|
Xen 4.4.x and earlier, when using a large number of VCPUs, does not properly handle read and write locks, which allows local x86 guest users to cause a denial of service (write denial or NMI watchdog…
|
CWE-17
Code
|
CVE-2014-9066
|
2024-11-21 11:20 |
2014-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280905
|
- |
|
xen opensuse
|
xen opensuse
|
common/spinlock.c in Xen 4.4.x and earlier does not properly handle read and write locks, which allows local x86 guest users to cause a denial of service (write denial or NMI watchdog timeout and hos…
|
CWE-17
Code
|
CVE-2014-9065
|
2024-11-21 11:20 |
2014-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280906
|
- |
|
tp-link
|
tl-wr740n_firmware tl-wr740n
|
TP-Link TL-WR740N 4 with firmware 3.17.0 Build 140520, 3.16.6 Build 130529, and 3.16.4 Build 130205 allows remote attackers to cause a denial of service (httpd crash) via vectors involving a "new" va…
|
CWE-19
Data Processing Errors
|
CVE-2014-9350
|
2024-11-21 11:20 |
2014-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280907
|
- |
|
robotstats
|
robotstats
|
Multiple cross-site scripting (XSS) vulnerabilities in admin/robots.lib.php in RobotStats 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) nom or (2) user_agent parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9349
|
2024-11-21 11:20 |
2014-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280908
|
- |
|
robotstats
|
robotstats
|
SQL injection vulnerability in the formulaireRobot function in admin/robots.lib.php in RobotStats 1.0 allows remote attackers to execute arbitrary SQL commands via the robot parameter to admin/robots…
|
CWE-89
SQL Injection
|
CVE-2014-9348
|
2024-11-21 11:20 |
2014-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280909
|
- |
|
phpmyrecipes_project
|
phpmyrecipes
|
SQL injection vulnerability in dosearch.php in phpMyRecipes 1.2.2 allows remote attackers to execute arbitrary SQL commands via the words_exact parameter.
|
CWE-89
SQL Injection
|
CVE-2014-9347
|
2024-11-21 11:20 |
2014-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280910
|
- |
|
hierarchical_select_project
|
hierarchical_select
|
Multiple cross-site scripting (XSS) vulnerabilities in the Hierarchical Select module 6.x-3.x before 6.x-3.9 for Drupal allow remote authenticated users with certain permissions to inject arbitrary w…
|
CWE-79
Cross-site Scripting
|
CVE-2014-9346
|
2024-11-21 11:20 |
2014-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|