| apache -- harmony |
The engineNextBytes function in classlib/modules/security/src/main/java/common/org/apache/harmony/security/provider/crypto/SHA1PRNG_SecureRandomImpl.java in the SecureRandom implementation in Apache Harmony through 6.0M3, as used in the Java Cryptography Architecture (JCA) in Android before 4.4 and other products, when no seed is provided by the user, uses an incorrect offset value, which makes it easier for attackers to defeat cryptographic protection mechanisms by leveraging the resulting PRNG predictability, as exploited in the wild against Bitcoin wallet applications in August 2013. |
2014年04月29日 |
5.0 |
CVE-2013-7372 |
| basespace_ruby_sdk_project -- basespace_ruby_sdk |
The put_call function in the API client (api/api_client.rb) in the BaseSpace Ruby SDK (aka bio-basespace-sdk) gem 0.1.7 for Ruby uses the API_KEY on the command line, which allows remote attackers to obtain sensitive information by listing the processes. |
2014年04月29日 |
5.0 |
CVE-2013-7111 |
| birebin -- birebin.com_app |
The Birebin.com application for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. |
2014年04月25日 |
6.4 |
CVE-2014-2993 |
| bluecoat -- content_analysis_system_software |
The commandline interface in Blue Coat Content Analysis System (CAS) 1.1 before 1.1.4.2 allows remote administrators to execute arbitrary commands via unspecified vectors, related to "command injection." |
2014年04月30日 |
6.5 |
CVE-2014-2565 |
| canonical -- update-manager |
DistUpgrade/DistUpgradeFetcherCore.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x before 1:0.142.23.1, 1:0.150.x before 1:0.150.5.1, and 1:0.152.x before 1:0.152.25.5 on Ubuntu 8.04 through 11.10 does not verify the GPG signature before extracting an upgrade tarball, which allows man-in-the-middle attackers to (1) create or overwrite arbitrary files via a directory traversal attack using a crafted tar file, or (2) bypass authentication via a crafted meta-release file. |
2014年04月27日 |
6.4 |
CVE-2011-3152 |
| canonical -- ubuntu_linux |
The Ubuntu Date and Time Indicator (aka indicator-datetime) 13.10.0+13.10.x before 13.10.0+13.10.20131023.2-0ubuntu1.1 does not properly restrict access to Evolution, which allows local users to bypass the greeter screen restrictions by clicking the date. |
2014年05月01日 |
4.6 |
CVE-2013-7374 |
| cisco -- telepresence_tc_software |
Buffer overflow in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x and 6.0 allows local users to gain privileges by leveraging improper handling of the u-boot compiler flag for internal executable files, aka Bug ID CSCub67693. |
2014年05月02日 |
6.6 |
CVE-2014-2172 |
| cisco -- unified_contact_center_enterprise |
The Document Management component in Cisco Unified Contact Center Express does not properly validate a parameter, which allows remote authenticated users to upload files to arbitrary pathnames via a crafted HTTP request, aka Bug ID CSCun74133. |
2014年04月29日 |
4.0 |
CVE-2014-2180 |
| cisco -- adaptive_security_appliance_software |
Cisco Adaptive Security Appliance (ASA) Software, when DHCPv6 replay is configured, allows remote attackers to cause a denial of service (device reload) via a crafted DHCPv6 packet, aka Bug ID CSCun45520. |
2014年04月29日 |
6.1 |
CVE-2014-2182 |
| cisco -- asr_1001_router |
The L2TP module in Cisco IOS XE 3.10S(.2) and earlier on ASR 1000 routers allows remote authenticated users to cause a denial of service (ESP card reload) via a malformed L2TP packet, aka Bug ID CSCun09973. |
2014年04月29日 |
6.3 |
CVE-2014-2183 |
| cisco -- unified_communications_manager |
The IP Manager Assistant (IPMA) component in Cisco Unified Communications Manager (Unified CM) allows remote attackers to obtain sensitive information via a crafted URL, aka Bug ID CSCun74352. |
2014年04月29日 |
5.0 |
CVE-2014-2184 |
| cisco -- unified_communications_manager |
The Call Detail Records (CDR) Management component in Cisco Unified Communications Manager (Unified CM) allows remote authenticated users to obtain sensitive information by reading extraneous fields in an HTML document, aka Bug ID CSCun74374. |
2014年04月29日 |
4.0 |
CVE-2014-2185 |
| cisco -- webex_meetings_server |
Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco WebEx Meetings Server allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuj81777. |
2014年04月30日 |
6.8 |
CVE-2014-2186 |
| coreftp -- core_ftp |
Core FTP Server 1.2 before build 515 allows remote attackers to cause a denial of service (reachable assertion and crash) via an AUTH SSL command with malformed data, as demonstrated by pressing the enter key twice. |
2014年05月01日 |
4.3 |
CVE-2014-1441 |
| coreftp -- core_ftp |
Directory traversal vulnerability in Core FTP Server 1.2 before build 515 allows remote authenticated users to determine the existence of arbitrary files via a /../ sequence in an XCRC command. |
2014年05月01日 |
4.0 |
CVE-2014-1442 |
| coreftp -- core_ftp |
Core FTP Server 1.2 before build 515 allows remote authenticated users to obtain sensitive information (password for the previous user) via a USER command with a specific length, possibly related to an out-of-bounds read. |
2014年05月01日 |
4.0 |
CVE-2014-1443 |
| cybozu -- garoon |
Cybozu Garoon 3.0 through 3.7 SP3 allows remote authenticated users to bypass intended access restrictions and delete schedule information via unspecified API calls. |
2014年05月02日 |
6.0 |
CVE-2014-1989 |
| dompdf -- dompdf |
dompdf.php in dompdf before 0.6.1, when DOMPDF_ENABLE_PHP is enabled, allows context-dependent attackers to bypass chroot protections and read arbitrary files via a PHP protocol and wrappers in the input_file parameter, as demonstrated by a php://filter/read=convert.base64-encode/resource in the input_file parameter. |
2014年04月28日 |
4.3 |
CVE-2014-2383 |
| ecava -- integraxor |
Ecava IntegraXor before 4.1.4393 allows remote attackers to read cleartext credentials for administrative accounts via SELECT statements that leverage the guest role. |
2014年04月30日 |
5.0 |
CVE-2014-0786 |
| emc -- rsa_access_manager |
The runtime WS component in the server in EMC RSA Access Manager 6.1.3 before 6.1.3.39, 6.1.4 before 6.1.4.22, 6.2.0 before 6.2.0.11, and 6.2.1 before 6.2.1.03, when INFO logging is enabled, allows local users to discover cleartext passwords by reading log files. |
2014年05月01日 |
6.9 |
CVE-2014-0646 |
| entity_reference_project -- entityreference |
The Entity reference module 7.x-1.x before 7.x-1.1-rc1 for Drupal allows remote attackers to read private nodes titles by leveraging edit permissions to a node that references a private node. |
2014年04月29日 |
4.3 |
CVE-2013-7066 |
| fortinet -- fortiweb |
Cross-site scripting (XSS) vulnerability in FortiGuard FortiWeb before 5.0.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
2014年04月30日 |
4.3 |
CVE-2014-1955 |
| fortinet -- fortiweb |
FortiGuard FortiWeb before 5.0.3 allows remote authenticated users to gain privileges via unspecified vectors. |
2014年04月30日 |
6.5 |
CVE-2014-1957 |
| gnome -- gnome-shell |
js/ui/screenShield.js in GNOME Shell (aka gnome-shell) before 3.8 allows physically proximate attackers to execute arbitrary commands by leveraging an unattended workstation with the keyboard focus on the Activities search. |
2014年04月29日 |
4.6 |
CVE-2013-7220 |
| gnome -- gnome-shell |
The automatic screen lock functionality in GNOME Shell (aka gnome-shell) before 3.10 does not prevent access to the "Enter a Command" dialog, which allows physically proximate attackers to execute arbitrary commands by leveraging an unattended workstation. |
2014年04月29日 |
4.6 |
CVE-2013-7221 |
| gnustep -- base |
Tools/gdomap.c in gdomap in GNUstep Base 1.24.6 and earlier, when run in daemon mode, does not properly handle the file descriptor for the logger, which allows remote attackers to cause a denial of service (abort) via an invalid request. |
2014年04月28日 |
4.3 |
CVE-2014-2980 |
| ibm -- websphere_application_server |
IBM WebSphere Application Server (WAS) 8.x before 8.0.0.9 and 8.5.x before 8.5.5.2 allows remote attackers to read arbitrary files via a crafted URL. |
2014年05月01日 |
4.3 |
CVE-2014-0823 |
| ibm -- websphere_application_server |
The Administrative Console in IBM WebSphere Application Server (WAS) 8.x before 8.0.0.9 and 8.5.x before 8.5.5.2 allows remote authenticated users to obtain sensitive information via a crafted request. |
2014年05月01日 |
4.0 |
CVE-2014-0857 |
| ibm -- websphere_application_server |
The web-server plugin in IBM WebSphere Application Server (WAS) 7.x before 7.0.0.33, 8.x before 8.0.0.9, and 8.5.x before 8.5.5.2, when POST retries are enabled, allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors. |
2014年05月01日 |
5.0 |
CVE-2014-0859 |
| ibm -- websphere_application_server |
IBM WebSphere Application Server (WAS) Liberty Profile 8.5.x before 8.5.5.2 allows remote attackers to obtain sensitive information via a crafted request. |
2014年05月01日 |
4.3 |
CVE-2014-0896 |
| igniterealtime -- smack |
The ServerTrustManager component in the Ignite Realtime Smack XMPP API before 4.0.0-rc1 does not verify basicConstraints and nameConstraints in X.509 certificate chains from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate chain. |
2014年04月30日 |
5.8 |
CVE-2014-0363 |
| igniterealtime -- smack |
The ParseRoster component in the Ignite Realtime Smack XMPP API before 4.0.0-rc1 does not verify the from attribute of a roster-query IQ stanza, which allows remote attackers to spoof IQ responses via a crafted attribute. |
2014年04月30日 |
5.0 |
CVE-2014-0364 |
| invitation_project -- invitation |
The Invitation module 7.x-2.x for Drupal does not properly check permissions, which allows remote attackers to obtain sensitive information via unspecified default views. |
2014年04月29日 |
5.0 |
CVE-2013-7063 |
| joachim_noreiko -- flag_module |
Cross-site scripting (XSS) vulnerability in the admin page in the Flag module 7.x-3.x before 7.x-3.1 for Drupal allows remote authenticated users with the "Administer flags" permission to inject arbitrary web script or HTML via the flag name. |
2014年04月27日 |
4.3 |
CVE-2013-4336 |
| linux -- linux_kernel |
Off-by-one error in the bpf_jit_compile function in arch/x86/net/bpf_jit_comp.c in the Linux kernel before 3.1.8, when BPF JIT is enabled, allows local users to cause a denial of service (system crash) or possibly gain privileges via a long jump after a conditional jump. |
2014年04月26日 |
4.6 |
CVE-2014-2889 |
| litech -- router_advertisement_daemon |
Directory traversal vulnerability in device-linux.c in the router advertisement daemon (radvd) before 1.8.2 allows local users to overwrite arbitrary files, and remote attackers to overwrite certain files, via a .. (dot dot) in an interface name. NOTE: this can be leveraged with a symlink to overwrite arbitrary files. |
2014年04月27日 |
6.4 |
CVE-2011-3602 |
| litech -- router_advertisement_daemon |
The router advertisement daemon (radvd) before 1.8.2 does not properly handle errors in the privsep_init function, which causes the radvd daemon to run as root and has an unspecified impact. |
2014年04月27日 |
4.4 |
CVE-2011-3603 |
| malcolm_nooning -- pirpc |
The PlRPC module, possibly 0.2020 and earlier, for Perl uses the Storable module, which allows remote attackers to execute arbitrary code via a crafted request, which is not properly handled when it is deserialized. |
2014年04月29日 |
6.8 |
CVE-2013-7284 |
| mediawiki -- mediawiki |
Cross-site scripting (XSS) vulnerability in includes/actions/InfoAction.php in MediaWiki before 1.21.9 and 1.22.x before 1.22.6 allows remote attackers to inject arbitrary web script or HTML via the sort key in an info action. |
2014年04月29日 |
4.3 |
CVE-2014-2853 |
| misli -- misli.com_app |
The Misli.com application for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. |
2014年04月25日 |
6.4 |
CVE-2014-2992 |
| mozilla -- firefox |
maintenservice_installer.exe in the Maintenance Service Installer in Mozilla Firefox before 29.0 and Firefox ESR 24.x before 24.5 on Windows allows local users to gain privileges by placing a Trojan horse DLL file into a temporary directory at an unspecified point in the update process. |
2014年04月30日 |
6.9 |
CVE-2014-1520 |
| mozilla -- firefox |
Heap-based buffer overflow in the read_u32 function in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG image. |
2014年04月30日 |
4.3 |
CVE-2014-1523 |
| mozilla -- firefox |
The XrayWrapper implementation in Mozilla Firefox before 29.0 and SeaMonkey before 2.26 allows user-assisted remote attackers to bypass intended access restrictions via a crafted web site that is visited in the debugger, leading to unwrapping operations and calls to DOM methods on the unwrapped objects. |
2014年04月30日 |
5.8 |
CVE-2014-1526 |
| mozilla -- firefox |
Mozilla Firefox before 29.0 on Android allows remote attackers to spoof the address bar via crafted _javascript_ code that uses DOM events to prevent the reemergence of the actual address bar after scrolling has taken it off of the screen. |
2014年04月30日 |
5.0 |
CVE-2014-1527 |
| mozilla -- firefox |
The docshell implementation in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to trigger the loading of a URL with a spoofed baseURI property, and conduct cross-site scripting (XSS) attacks, via a crafted web site that performs history navigation. |
2014年04月30日 |
4.3 |
CVE-2014-1530 |
| neo4j -- neo4j |
Multiple cross-site request forgery (CSRF) vulnerabilities in Neo4J 1.9.2 allow remote attackers to hijack the authentication of administrators for requests that execute arbitrary code, as demonstrated by a request to (1) db/data/ext/GremlinPlugin/graphdb/execute_script or (2) db/manage/server/console/. |
2014年04月29日 |
4.3 |
CVE-2013-7259 |
| net-snmp -- net-snmp |
The perl_trapd_handler function in perl/TrapReceiver/TrapReceiver.xs in Net-SNMP 5.7.3.pre3 and earlier, when using certain Perl versions, allows remote attackers to cause a denial of service (snmptrapd crash) via an empty community string in an SNMP trap, which triggers a NULL pointer dereference within the newSVpv function in Perl. |
2014年04月27日 |
4.3 |
CVE-2014-2285 |
| openjpeg -- openjpeg |
OpenJPEG 1.5.1 allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based out-of-bounds read. |
2014年04月27日 |
5.0 |
CVE-2013-6053 |
| openjpeg -- openjpeg |
OpenJPEG 1.5.1 allows remote attackers to cause a denial of service via unspecified vectors that trigger NULL pointer dereferences, division-by-zero, and other errors. |
2014年04月27日 |
6.4 |
CVE-2013-6887 |
| openstack -- icehouse |
The Sheepdog backend in OpenStack Image Registry and Delivery Service (Glance) 2013.2 before 2013年2月4日 and icehouse before icehouse-rc2 allows remote authenticated users with permission to insert or modify an image to execute arbitrary commands via a crafted location. |
2014年04月27日 |
6.0 |
CVE-2014-0162 |
| organic_groups_project -- organic_groups |
The Organic Groups (OG) module 7.x-2.x before 7.x-2.3 for Drupal allows remote attackers to bypass access restriction and post to arbitrary groups via a group audience field, as demonstrated by the og_group_ref field. |
2014年04月29日 |
5.8 |
CVE-2013-7065 |
| organic_groups_project -- organic_groups |
The Organic Groups (OG) module 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users to bypass group restrictions on nodes with all groups set to optional input via an empty group field. |
2014年04月29日 |
4.9 |
CVE-2013-7068 |
| papercut -- papercut_mf |
Unspecified vulnerability in Papercut MF and NG before 14.1 (Build 26983) allows attacker to cause a denial of service via unknown vectors. |
2014年04月28日 |
5.0 |
CVE-2014-2658 |
| php-fusion -- php-fusion |
Multiple cross-site scripting (XSS) vulnerabilities in PHP-Fusion before 7.02.06 allow remote attackers to inject arbitrary web script or HTML via the (1) highlight parameter to forum/viewthread.php; or remote authenticated users with certain permissions to inject arbitrary web script or HTML via the (2) user_list or (3) user_types parameter to messages.php; (4) message parameter to infusions/shoutbox_panel/shoutbox_admin.php; (5) message parameter to administration/news.php; (6) panel_list parameter to administration/panel_editor.php; (7) HTTP User Agent string to administration/phpinfo.php; (8) "__BBCODE__" parameter to administration/bbcodes.php; errorMessage parameter to (9) article_cats.php, (10) download_cats.php, (11) news_cats.php, or (12) weblink_cats.php in administration/, when error is 3; or (13) body or (14) body2 parameter to administration/articles.php. |
2014年04月29日 |
4.3 |
CVE-2013-1804 |
| php-fusion -- php-fusion |
Multiple directory traversal vulnerabilities in PHP-Fusion before 7.02.06 allow remote authenticated users to include and execute arbitrary files via a .. (dot dot) in the (1) user_theme parameter to maincore.php; or remote authenticated administrators to delete arbitrary files via the (2) enable parameter to administration/user_fields.php or (3) file parameter to administration/db_backup.php. |
2014年04月30日 |
6.5 |
CVE-2013-1806 |
| php-fusion -- php-fusion |
PHP-Fusion before 7.02.06 stores backup files with predictable filenames in an unrestricted directory under the web document root, which might allow remote attackers to obtain sensitive information via a direct request to the backup file in administration/db_backups/. |
2014年04月30日 |
5.0 |
CVE-2013-1807 |
| pocoproject -- poco_c++_libraries |
The Poco::Net::X509Certificate::verify method in the NetSSL library in POCO C++ Libraries before 1.4.6p4 allows man-in-the-middle attackers to spoof SSL servers via crafted DNS PTR records that are requested during comparison of a server name to a wildcard domain name in an X.509 certificate. |
2014年04月25日 |
6.4 |
CVE-2014-0350 |
| redhat -- enterprise_mrg |
Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, uses the DES-based crypt function to hash passwords, which makes it easier for attackers to obtain sensitive information via a brute-force attack. |
2014年04月30日 |
5.0 |
CVE-2013-6445 |
| sap -- netweaver_software_lifecycle_manager |
The Java Server Pages in the Software Lifecycle Manager (SLM) in SAP NetWeaver allows remote attackers to obtain sensitive information via a crafted request, related to SAP Solution Manager 7.1. |
2014年04月30日 |
5.0 |
CVE-2014-3129 |
| sap -- netweaver_abap_application_server |
The ABAP Help documentation and translation tools (BC-DOC-HLP) in Basis in SAP Netweaver ABAP Application Server does not properly restrict access, which allows local users to gain privileges and execute ABAP instructions via crafted help messages. |
2014年04月30日 |
4.6 |
CVE-2014-3130 |
| sap -- profile_maintenance |
SAP Profile Maintenance does not properly restrict access, which allows remote authenticated users to obtain sensitive information via an unspecified RFC function, related to SAP Solution Manager 7.1. |
2014年04月30日 |
4.0 |
CVE-2014-3131 |
| sap -- background_processing |
SAP Background Processing does not properly restrict access, which allows remote authenticated users to obtain sensitive information via an unspecified RFC function, related to SAP Solution Manager 7.1. |
2014年04月30日 |
4.0 |
CVE-2014-3132 |
| sap -- netweaver_java_application_server |
SAP Netweaver Java Application Server does not properly restrict access, which allows remote attackers to obtain the list of SAP systems registered on an SLD via an unspecified webdynpro, related to SystemSelection. |
2014年04月30日 |
5.0 |
CVE-2014-3133 |
| sap -- businessobjects |
Cross-site scripting (XSS) vulnerability in the InfoView application in SAP BusinessObjects allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
2014年04月30日 |
4.3 |
CVE-2014-3134 |
| simplemachines -- simple_machines_forum |
Simple Machines Forum (SMF) before 1.1.19 and 2.x before 2.0.6 allows remote attackers to conduct clickjacking attacks via an X-Frame-Options header. |
2014年04月29日 |
4.3 |
CVE-2013-7234 |
| southrivertech -- titan_ftp_server |
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to copy an arbitrary user's home folder via a Move action with a .. (dot dot) in the src parameter. |
2014年04月29日 |
5.0 |
CVE-2014-1841 |
| southrivertech -- titan_ftp_server |
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to list all usernames via a Go action with a .. (dot dot) in the search-bar value. |
2014年04月29日 |
5.0 |
CVE-2014-1842 |
| southrivertech -- titan_ftp_server |
Directory traversal vulnerability in the web interface in Titan FTP Server before 10.40 build 1829 allows remote attackers to obtain the property information of an arbitrary home folder via a Properties action with a .. (dot dot) in the src parameter. |
2014年04月29日 |
5.0 |
CVE-2014-1843 |
| tibco -- managed_file_transfer_command_center |
TIBCO Managed File Transfer Internet Server before 7.2.2, Managed File Transfer Command Center before 7.2.2, Slingshot before 1.9.1, and Vault before 1.0.1 allow remote attackers to obtain sensitive information via a crafted HTTP request. |
2014年04月30日 |
5.0 |
CVE-2014-2545 |
| transifex -- transifex |
Transifex command-line client before 0.9 does not validate X.509 certificates, which allows man-in-the-middle attackers to spoof a Transifex server via an arbitrary certificate. |
2014年05月01日 |
4.3 |
CVE-2013-2073 |
| transifex -- transifex |
Transifex command-line client before 0.10 does not validate X.509 certificates for data transfer connections, which allows man-in-the-middle attackers to spoof a Transifex server via an arbitrary certificate. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-2073. |
2014年05月01日 |
4.3 |
CVE-2013-7110 |
| ubercart -- ubercart |
Session fixation vulnerability in the Ubercart module 6.x-2.x before 6.x-2.13 and 7.x-3.x before 7.x-3.6 for Drupal, when the "Log in new customers after checkout" option is enabled, allows remote attackers to hijack web sessions by leveraging knowledge of the original session ID. |
2014年04月29日 |
6.8 |
CVE-2013-7302 |
| vbulletin -- vbulletin |
Multiple cross-site scripting (XSS) vulnerabilities in vBulletin 5.1.1 Alpha 9 allow remote attackers to inject arbitrary web script or HTML via (1) the PATH_INFO to privatemessage/new/, (2) the folderid parameter to a private message in privatemessage/view, (3) a fragment indicator to /help, or (4) the view parameter to a topic, as demonstrated by a request to forum/anunturi-importante/rst-power/67030-rst-admin-restore. |
2014年04月30日 |
4.3 |
CVE-2014-3135 |
| videowhisper -- videowhisper |
Multiple cross-site scripting (XSS) vulnerabilities in vwrooms\templates\logout.tpl.php in the VideoWhisper Webcam plugins for Drupal 7.x allow remote attackers to inject arbitrary web script or HTML via the (1) module or (2) message parameter to index.php. |
2014年04月28日 |
4.3 |
CVE-2014-2715 |
| xen -- xen |
The vgic_distr_mmio_write function in the virtual guest interrupt controller (GIC) distributor (arch/arm/vgic.c) in Xen 4.4.x, when running on an ARM system, allows local guest users to cause a denial of service (NULL pointer dereference and host crash) via unspecified vectors. |
2014年04月28日 |
5.5 |
CVE-2014-2986 |
| xerox -- docushare |
SQL injection vulnerability in Xerox DocuShare before 6.53 Patch 6 Hotfix 2, 6.6.1 Update 1before Hotfix 24, and 6.6.1 Update 2 before Hotfix 3 allows remote authenticated users to execute arbitrary SQL commands via the PATH_INFO to /docushare/dsweb/ResultBackgroundJobMultiple/. NOTE: some of these details are obtained from third party information. |
2014年05月01日 |
6.5 |
CVE-2014-3138 |
| zarafa -- zarafa |
The ValidateUserLogon function in provider/libserver/ECSession.cpp in Zarafa 5.00 before 7.1.8 beta2 allows remote attackers to cause a denial of service (crash) via vectors related to "a NULL pointer of the username." |
2014年04月28日 |
5.0 |
CVE-2014-0037 |
| zarafa -- zarafa |
The ValidateUserLogon function in provider/libserver/ECSession.cpp in Zarafa 7.1.8, 6.20.0, and earlier, when using certain build conditions, allows remote attackers to cause a denial of service (crash) via vectors related to "a NULL pointer of the password." |
2014年04月28日 |
5.0 |
CVE-2014-0079 |
| zlib -- pigz |
Race condition in pigz before 2.2.5 uses permissions derived from the umask when compressing a file before setting that file's permissions to match those of the original file, which might allow local users to bypass intended access permissions while compression is occurring. |
2014年04月27日 |
4.4 |
CVE-2013-0296 |