258581
|
- |
|
videolan
|
vlc_media_player
|
VideoLAN VLC Media Player before 2.0.7 allows remote attackers to cause a denial of service (memory consumption) via a crafted playlist file.
|
CWE-399
Resource Management Errors
|
CVE-2013-7340
|
2014-03-25 07:47 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258582
|
- |
|
owncloud
|
owncloud
|
Unspecified vulnerability in core/settings.php in ownCloud before 4.0.12 and 4.5.x before 4.5.6 allows remote authenticated users to execute arbitrary PHP code via unknown vectors. NOTE: this issue …
|
NVD-CWE-noinfo
|
CVE-2013-7344
|
2014-03-25 07:28 |
2014-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258583
|
- |
|
owncloud
|
owncloud
|
Multiple cross-site scripting (XSS) vulnerabilities in ownCloud before 6.0.2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2014-2057
|
2014-03-25 07:16 |
2014-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258584
|
- |
|
mcafee
|
cloud_single_sign_on
|
Cross-site scripting (XSS) vulnerability in the login audit form in McAfee Cloud Single Sign On (SSO) allows remote attackers to inject arbitrary web script or HTML via a crafted password.
|
CWE-79
Cross-site Scripting
|
CVE-2014-2586
|
2014-03-25 07:15 |
2014-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258585
|
- |
|
owncloud
|
owncloud
|
ownCloud before 5.0.15 and 6.x before 6.0.2, when the file_external app is enabled, allows remote authenticated users to mount the local filesystem in the user's ownCloud via the mount configuration.
|
CWE-20
Improper Input Validation
|
CVE-2014-2585
|
2014-03-25 02:10 |
2014-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258586
|
- |
|
owncloud
|
owncloud
|
Unspecified vulnerability in core/ajax/translations.php in ownCloud before 4.0.12 and 4.5.x before 4.5.6 allows remote authenticated users to execute arbitrary PHP code via unknown vectors. NOTE: th…
|
NVD-CWE-noinfo
|
CVE-2013-0303
|
2014-03-25 01:38 |
2014-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258587
|
- |
|
flowplayer
|
flowplayer_html5
|
Cross-site scripting (XSS) vulnerability in flowplayer.swf in the Flash fallback feature in Flowplayer HTML5 5.4.3 allows remote attackers to inject arbitrary web script or HTML by using URL encoding…
|
CWE-79
Cross-site Scripting
|
CVE-2013-7343
|
2014-03-25 00:16 |
2014-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258588
|
- |
|
flowplayer
|
flowplayer_html5
|
Cross-site scripting (XSS) vulnerability in flowplayer.swf in the Flash fallback feature in Flowplayer HTML5 5.4.1 allows remote attackers to inject arbitrary web script or HTML via the callback para…
|
CWE-79
Cross-site Scripting
|
CVE-2013-7342
|
2014-03-25 00:14 |
2014-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258589
|
- |
|
estrongs
|
es_file_explorer
|
Directory traversal vulnerability in the ES File Explorer File Manager application before 3.0.4 for Android allows remote attackers to overwrite or create arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2014-1970
|
2014-03-21 02:12 |
2014-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258590
|
- |
|
estrongs
|
es_file_explorer
|
The EStrongs ES File Explorer application 1.6.0.2 through 1.6.1.1 for Android does not properly restrict access, which allows remote attackers to read arbitrary files via vectors involving an unspeci…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0322
|
2014-03-21 02:09 |
2012-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|