258691
|
- |
|
apple
|
quicktime
|
Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted dref atom in a movie file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1247
|
2014-03-11 02:37 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258692
|
- |
|
apple
|
quicktime
|
Apple QuickTime before 7.7.5 does not properly perform a byte-swapping operation, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds memory access and…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1250
|
2014-03-11 02:37 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258693
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Buffer overflow in File Bookmark in Apple OS X before 10.9.2 allows attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted filename.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1259
|
2014-03-11 02:37 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258694
|
- |
|
apple
|
mac_os_x
|
QuickLook in Apple OS X through 10.8.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Microsoft Office document.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1260
|
2014-03-11 02:36 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258695
|
- |
|
apple
|
mac_os_x
|
Finder in Apple OS X before 10.9.2 does not ensure ACL integrity after the viewing of file ACL information, which allows local users to bypass intended access restrictions in opportunistic circumstan…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1264
|
2014-03-11 02:32 |
2014-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258696
|
- |
|
google
|
android
|
Android 3.0 through 4.1.x on Disney Mobile, eAccess, KDDI, NTT DOCOMO, SoftBank, and other devices does not properly implement the WebView class, which allows remote attackers to execute arbitrary me…
|
CWE-20
Improper Input Validation
|
CVE-2013-4710
|
2014-03-11 02:25 |
2014-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258697
|
- |
|
atlassian
|
jira
|
Directory traversal vulnerability in the Importers plugin in Atlassian JIRA before 6.0.5 allows remote attackers to create arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2014-2313
|
2014-03-11 01:38 |
2014-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258698
|
- |
|
atlassian
|
jira
|
Per: https://confluence.atlassian.com/display/JIRA/JIRA+Security+Advisory+2014-02-26
"Issue 2: Path traversal in JIRA Importers plugin (Windows only)"
|
CWE-22
Path Traversal
|
CVE-2014-2313
|
2014-03-11 01:38 |
2014-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258699
|
- |
|
opendocman
|
opendocman
|
SQL injection vulnerability in ajax_udf.php in OpenDocMan before 1.2.7.2 allows remote attackers to execute arbitrary SQL commands via the table parameter. NOTE: some of these details are obtained f…
|
CWE-89
SQL Injection
|
CVE-2014-2317
|
2014-03-11 01:25 |
2014-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258700
|
- |
|
opendocman
|
opendocman
|
SQL injection vulnerability in ajax_udf.php in OpenDocMan before 1.2.7.2 allows remote attackers to execute arbitrary SQL commands via the add_value parameter.
|
CWE-89
SQL Injection
|
CVE-2014-1945
|
2014-03-11 01:24 |
2014-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|