258271
|
- |
|
open-xchange
|
open-xchange_appsuite
|
The E-Mail autoconfiguration feature in Open-Xchange AppSuite before 7.2.2-rev20, 7.4.1 before 7.4.1-rev11, and 7.4.2 before 7.4.2-rev13 places a password in a GET request, which allows remote attack…
|
CWE-200
Information Exposure
|
CVE-2014-2392
|
2014-04-25 03:29 |
2014-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258272
|
- |
|
open-xchange
|
open-xchange_appsuite
|
The password recovery service in Open-Xchange AppSuite before 7.2.2-rev20, 7.4.1 before 7.4.1-rev11, and 7.4.2 before 7.4.2-rev13 makes an improper decision about the sensitivity of a string represen…
|
CWE-200
Information Exposure
|
CVE-2014-2391
|
2014-04-25 03:27 |
2014-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258273
|
- |
|
symantec
|
pgp_desktop encryption_desktop
|
Symantec PGP Desktop 10.0.x through 10.2.x and Encryption Desktop Professional 10.3.x before 10.3.2 MP1 do not properly perform block-data moves, which allows remote attackers to cause a denial of se…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1647
|
2014-04-25 03:06 |
2014-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258274
|
- |
|
symantec
|
encryption_desktop pgp_desktop
|
Symantec PGP Desktop 10.0.x through 10.2.x and Encryption Desktop Professional 10.3.x before 10.3.2 MP1 do not properly perform memory copies, which allows remote attackers to cause a denial of servi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1646
|
2014-04-25 03:00 |
2014-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258275
|
- |
|
oracle
|
peoplesoft_products
|
Unspecified vulnerability in the PeopleSoft Enterprise HRMS Talent Acquisition Manager component in Oracle PeopleSoft Products 9.0, 9.1, and 9.2 allows remote authenticated users to affect confidenti…
|
NVD-CWE-noinfo
|
CVE-2014-2449
|
2014-04-25 02:59 |
2014-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258276
|
- |
|
apple
|
mac_os_x
|
The kernel in Apple OS X through 10.9.2 places a kernel pointer into an XNU object data structure accessible from user space, which makes it easier for local users to bypass the ASLR protection mecha…
|
CWE-200
Information Exposure
|
CVE-2014-1322
|
2014-04-24 22:56 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258277
|
- |
|
apple
|
mac_os_x
|
Power Management in Apple OS X 10.9.x through 10.9.2 allows physically proximate attackers to bypass an intended transition into the locked-screen state by touching (1) a key or (2) the trackpad duri…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1321
|
2014-04-24 22:52 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258278
|
- |
|
apple
|
mac_os_x
|
WindowServer in Apple OS X through 10.9.2 does not prevent session creation by a sandboxed application, which allows attackers to bypass the sandbox protection mechanism and execute arbitrary code vi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1314
|
2014-04-24 20:24 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258279
|
- |
|
mediawiki
|
mediawiki
|
includes/specials/SpecialChangePassword.php in MediaWiki before 1.19.14, 1.20.x and 1.21.x before 1.21.8, and 1.22.x before 1.22.5 does not properly handle a correctly authenticated but unintended lo…
|
CWE-287
Improper Authentication
|
CVE-2014-2665
|
2014-04-24 14:06 |
2014-04-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258280
|
- |
|
lyesoft
|
andexplorer
|
Directory traversal vulnerability in the LYSESOFT AndExplorer application before 20140403 and AndExplorerPro application before 20140405 for Android allows attackers to overwrite or create arbitrary …
|
CWE-22
Path Traversal
|
CVE-2014-1974
|
2014-04-24 14:05 |
2014-04-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|