258511
|
- |
|
intel mcafee
|
expressway_cloud_access_360 cloud_identity_manager cloud_single_sign_on
|
Per: https://kc.mcafee.com/corporate/index?page=content&id=SB10066
"Affected Versions:
Intel Expressway Cloud Access 360-SSO 2.1, 2.5
McAfee Cloud Identity Manager 3.0, 3.1, 3.5.1
McAfe…
|
CWE-22
Path Traversal
|
CVE-2014-2536
|
2014-04-1 15:29 |
2014-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258512
|
- |
|
sophos
|
unified_threat_management_software unified_threat_management
|
Memory leak in the TCP stack in the kernel in Sophos UTM before 9.109 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
|
CWE-399
Resource Management Errors
|
CVE-2014-2537
|
2014-04-1 15:29 |
2014-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258513
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox before 28.0.1 on Android processes a file: URL by copying a local file onto the SD card, which allows attackers to obtain sensitive information from the Firefox profile directory via …
|
CWE-200
Information Exposure
|
CVE-2014-1515
|
2014-04-1 15:28 |
2014-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258514
|
- |
|
google
|
chrome
|
Use-after-free vulnerability in the web contents implementation in Google Chrome before 33.0.1750.117 allows remote attackers to cause a denial of service or possibly have unspecified other impact vi…
|
CWE-399
Resource Management Errors
|
CVE-2013-6653
|
2014-04-1 15:26 |
2014-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258515
|
- |
|
google
|
chrome
|
The SVGAnimateElement::calculateAnimatedValue function in core/svg/SVGAnimateElement.cpp in Blink, as used in Google Chrome before 33.0.1750.117, does not properly handle unexpected data types, which…
|
CWE-20
Improper Input Validation
|
CVE-2013-6654
|
2014-04-1 15:26 |
2014-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258516
|
- |
|
google
|
chrome
|
Use-after-free vulnerability in Blink, as used in Google Chrome before 33.0.1750.117, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors relate…
|
CWE-399
Resource Management Errors
|
CVE-2013-6655
|
2014-04-1 15:26 |
2014-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258517
|
- |
|
google
|
chrome
|
The XSSAuditor::init function in core/html/parser/XSSAuditor.cpp in the XSS auditor in Blink, as used in Google Chrome before 33.0.1750.117, processes POST requests by using the body of a redirecting…
|
CWE-200
Information Exposure
|
CVE-2013-6656
|
2014-04-1 15:26 |
2014-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258518
|
- |
|
google
|
chrome
|
core/html/parser/XSSAuditor.cpp in the XSS auditor in Blink, as used in Google Chrome before 33.0.1750.117, inserts the about:blank URL during certain blocking of FORM elements within HTTP requests, …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-6657
|
2014-04-1 15:26 |
2014-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258519
|
- |
|
google
|
chrome
|
Multiple use-after-free vulnerabilities in the layout implementation in Blink, as used in Google Chrome before 33.0.1750.117, allow remote attackers to cause a denial of service or possibly have unsp…
|
CWE-399
Resource Management Errors
|
CVE-2013-6658
|
2014-04-1 15:26 |
2014-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258520
|
- |
|
google
|
chrome
|
The SSLClientSocketNSS::Core::OwnAuthCertHandler function in net/socket/ssl_client_socket_nss.cc in Google Chrome before 33.0.1750.117 does not prevent changes to server X.509 certificates during ren…
|
CWE-310
Cryptographic Issues
|
CVE-2013-6659
|
2014-04-1 15:26 |
2014-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|