258951
|
- |
|
redhat
|
jboss_operations_network
|
Red Hat JBoss Operations Network (JON) before 2.4.2 and 3.0.x before 3.0.1 allows remote attackers to hijack agent sessions via an agent registration request without a security token.
|
CWE-287
Improper Authentication
|
CVE-2012-0062
|
2014-02-15 03:46 |
2014-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258952
|
- |
|
redhat
|
jboss_operations_network
|
Red Hat JBoss Operations Network (JON) before 2.4.2 and 3.0.x before 3.0.1 does not check the JON agent key, which allows remote attackers to spoof the identity of arbitrary agents via the registered…
|
CWE-20
Improper Input Validation
|
CVE-2012-0052
|
2014-02-15 03:44 |
2014-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258953
|
- |
|
matrikonopc
|
scada_dnp3_opc_server
|
MatrikonOPC SCADA DNP3 OPC Server 1.2.2.0 and earlier allows remote attackers to cause a denial of service (infinite loop) via a malformed DNP3 packet.
|
CWE-20
Improper Input Validation
|
CVE-2013-2829
|
2014-02-15 02:48 |
2014-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258954
|
- |
|
blackberry
|
blackberry_enterprise_service blackberry_universal_device_service enterprise_server enterprise_server_express
|
BlackBerry Enterprise Service 10 before 10.2.1, Universal Device Service 6, Enterprise Server Express for Domino through 5.0.4, Enterprise Server Express for Exchange through 5.0.4, Enterprise Server…
|
CWE-255
Credentials Management
|
CVE-2014-1467
|
2014-02-15 02:34 |
2014-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258955
|
- |
|
cisco
|
unified_communications_manager
|
The bulk administration interface in Cisco Unified Communications Manager (UCM) 10.0(1) and earlier allows remote attackers to bypass authentication and read arbitrary files by using an unspecified p…
|
CWE-20
Improper Input Validation
|
CVE-2014-0724
|
2014-02-14 02:13 |
2014-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258956
|
- |
|
cisco
|
unified_communications_manager
|
Cisco Unified Communications Manager (UCM) does not require authentication for reading WAR files, which allows remote attackers to obtain sensitive information via unspecified access to a "file stora…
|
CWE-287
Improper Authentication
|
CVE-2014-0725
|
2014-02-13 23:11 |
2014-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258957
|
- |
|
cisco
|
unified_communications_manager
|
The log4jinit web application in Cisco Unified Communications Manager (UCM) does not properly validate authentication, which allows remote attackers to cause a denial of service (performance degradat…
|
CWE-287
Improper Authentication
|
CVE-2014-0722
|
2014-02-13 23:08 |
2014-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258958
|
- |
|
extended_module_player_project
|
extended_module_player
|
Buffer overflow in the get_dsmp function in loaders/masi_load.c in libxmp before 4.1.0 allows remote attackers to execute arbitrary code via a crafted MASI file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-1980
|
2014-02-12 23:09 |
2014-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258959
|
- |
|
i-doit
|
i-doit
|
Multiple cross-site scripting (XSS) vulnerabilities in synetics i-doit open 0.9.9-7, i-doit pro 1.0 and earlier, and i-doit pro 1.0.2 when the 'sanitize user input' flag is not enabled, allow remote …
|
CWE-79
Cross-site Scripting
|
CVE-2013-1413
|
2014-02-12 22:55 |
2014-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258960
|
- |
|
fortinet
|
fortios
|
Cross-site scripting (XSS) vulnerability in firewall/schedule/recurrdlg in Fortinet FortiOS 5.0.5 allows remote attackers to inject arbitrary web script or HTML via the mkey parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2013-7182
|
2014-02-12 13:50 |
2014-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|