|
282951
|
- |
|
microsoft
|
office_compatibility_pack word
|
Array index error in Microsoft Word 2007 SP3, Word 2010 SP2, and Office Compatibility Pack SP3 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Invalid Index Remo…
|
CWE-94
Code Injection
|
CVE-2014-6356
|
2024-11-21 11:14 |
2014-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282952
|
- |
|
microsoft
|
windows_rt windows_server_2012 windows_8.1 windows_server_2008 windows_7 windows_server_2003 windows_rt_8.1 windows_vista windows_8
|
The Graphics Component in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows…
|
CWE-200
Information Exposure
|
CVE-2014-6355
|
2024-11-21 11:14 |
2014-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282953
|
- |
|
microsoft
|
exchange_server
|
Outlook Web App (OWA) in Microsoft Exchange Server 2013 SP1 and Cumulative Update 6 does not properly validate redirection tokens, which allows remote attackers to redirect users to arbitrary web sit…
|
CWE-20
Improper Input Validation
|
CVE-2014-6336
|
2024-11-21 11:14 |
2014-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282954
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulne…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-6330
|
2024-11-21 11:14 |
2014-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282955
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vuln…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-6329
|
2024-11-21 11:14 |
2014-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282956
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 8 through 11 allows remote attackers to bypass the XSS filter via a crafted attribute of an element in an HTML document, aka "Internet Explorer XSS Filter Bypass Vulnerabi…
|
CWE-20
Improper Input Validation
|
CVE-2014-6328
|
2024-11-21 11:14 |
2014-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282957
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vuln…
|
CWE-20
Improper Input Validation
|
CVE-2014-6327
|
2024-11-21 11:14 |
2014-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282958
|
- |
|
microsoft
|
exchange_server
|
Cross-site scripting (XSS) vulnerability in Microsoft Exchange Server 2013 SP1 and Cumulative Update 6 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "OWA XSS V…
|
CWE-79
Cross-site Scripting
|
CVE-2014-6326
|
2024-11-21 11:14 |
2014-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282959
|
- |
|
microsoft
|
exchange_server
|
Cross-site scripting (XSS) vulnerability in Microsoft Exchange Server 2013 SP1 and Cumulative Update 6 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "OWA XSS V…
|
CWE-79
Cross-site Scripting
|
CVE-2014-6325
|
2024-11-21 11:14 |
2014-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
282960
|
- |
|
microsoft
|
exchange_server
|
Outlook Web App (OWA) in Microsoft Exchange Server 2007 SP3, 2010 SP3, and 2013 SP1 and Cumulative Update 6 does not properly validate tokens in requests, which allows remote attackers to spoof the o…
|
CWE-284
Improper Access Control
|
CVE-2014-6319
|
2024-11-21 11:14 |
2014-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|