258501
|
- |
|
alliedtelesis
|
img646bd_firmware img646bd at-rg634a_firmware at-rg634a img624a_firmware img624a img616lh_firmware img616lh
|
The administrative interface in Allied Telesis AT-RG634A ADSL Broadband router 3.3+, iMG624A firmware 3.5, iMG616LH firmware 2.4, and iMG646BD firmware 3.5 allows remote attackers to gain privileges …
|
CWE-78 CWE-287
OS Command Improper Authentication
|
CVE-2014-1982
|
2014-04-1 02:57 |
2014-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258502
|
- |
|
mozilla
|
firefox
|
The saltProfileName function in base/GeckoProfileDirectories.java in Mozilla Firefox through 28.0.1 on Android relies on Android's weak approach to seeding the Math.random function, which makes it ea…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1516
|
2014-04-1 02:33 |
2014-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258503
|
- |
|
symantec
|
liveupdate_administrator
|
The forgotten-password feature in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x before 2.3.2.110 allows remote attackers to reset arbitrary passwords by providin…
|
CWE-255
Credentials Management
|
CVE-2014-1644
|
2014-04-1 01:40 |
2014-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258504
|
- |
|
symantec
|
liveupdate_administrator
|
SQL injection vulnerability in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x before 2.3.2.110 allows remote attackers to execute arbitrary SQL commands via unspe…
|
CWE-89
SQL Injection
|
CVE-2014-1645
|
2014-04-1 01:27 |
2014-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258505
|
- |
|
cisco
|
ios
|
The packet driver in Cisco IOS allows remote attackers to cause a denial of service (device reload) via a series of (1) Virtual Switching Systems (VSS) or (2) Bidirectional Forwarding Detection (BFD)…
|
CWE-399
Resource Management Errors
|
CVE-2014-2131
|
2014-04-1 01:07 |
2014-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258506
|
- |
|
cisco
|
ios ios_xe
|
Cisco IOS 12.2 and 15.0 through 15.3 and IOS XE 3.2 through 3.7 before 3.7.5S and 3.8 through 3.10 before 3.10.1S allow remote attackers to cause a denial of service (device reload) via a malformed I…
|
CWE-20
Improper Input Validation
|
CVE-2014-2108
|
2014-03-28 22:49 |
2014-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258507
|
- |
|
cisco
|
ios
|
Cisco IOS 12.2 and 15.0 through 15.3, when used with the Kailash FPGA before 2.6 on RSP720-3C-10GE and RSP720-3CXL-10GE devices, allows remote attackers to cause a denial of service (route switch pro…
|
CWE-20
Improper Input Validation
|
CVE-2014-2107
|
2014-03-28 22:41 |
2014-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258508
|
- |
|
cisco
|
ios ios_xe
|
Cisco IOS 15.3M before 15.3(3)M2 and IOS XE 3.10.xS before 3.10.2S allow remote attackers to cause a denial of service (device reload) via crafted SIP messages, aka Bug ID CSCug45898.
|
CWE-20
Improper Input Validation
|
CVE-2014-2106
|
2014-03-28 22:30 |
2014-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258509
|
- |
|
cisco
|
ios ios_xe
|
Per: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140326-sip
"The following Cisco IOS Software and Cisco IOS XE Software releases are affected by this vulnerabilit…
|
CWE-20
Improper Input Validation
|
CVE-2014-2106
|
2014-03-28 22:30 |
2014-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258510
|
- |
|
nuance
|
pdf_reader
|
Heap-based buffer overflow in PDFCore8.dll in Nuance PDF Reader before 8.1 allows remote attackers to execute arbitrary code via crafted font table directory values in a TTF file, related to naming t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0732
|
2014-03-28 03:09 |
2014-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|