258671
|
- |
|
umi-cms
|
umi.cms
|
Cross-site request forgery (CSRF) vulnerability in Umisoft UMI.CMS before 2.9 build 21905 allows remote attackers to hijack the authentication of administrators for requests that add administrator ac…
|
CWE-352
Origin Validation Error
|
CVE-2013-2754
|
2014-03-12 09:47 |
2014-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258672
|
- |
|
catfish_project
|
catfish
|
Untrusted search path vulnerability in Catfish through 0.4.0.3 allows local users to gain privileges via a Trojan horse catfish.py in the current working directory.
|
NVD-CWE-Other
|
CVE-2014-2093
|
2014-03-12 01:57 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258673
|
- |
|
catfish_project
|
catfish
|
Per: http://cwe.mitre.org/data/definitions/426.html
"CWE-426: Untrusted Search Path"
|
NVD-CWE-Other
|
CVE-2014-2093
|
2014-03-12 01:57 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258674
|
- |
|
catfish_project
|
catfish
|
Untrusted search path vulnerability in Catfish 0.6.0 through 1.0.0 allows local users to gain privileges via a Trojan horse bin/catfish.py under the current working directory.
|
NVD-CWE-Other
|
CVE-2014-2096
|
2014-03-12 01:57 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258675
|
- |
|
catfish_project
|
catfish
|
Per: http://cwe.mitre.org/data/definitions/426.html
"CWE-426: Untrusted Search Path"
|
NVD-CWE-Other
|
CVE-2014-2096
|
2014-03-12 01:57 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258676
|
- |
|
catfish_project
|
catfish
|
Untrusted search path vulnerability in Catfish 0.6.0 through 1.0.0, when a Fedora package such as 0.8.2-1 is not used, allows local users to gain privileges via a Trojan horse bin/catfish.pyc under t…
|
NVD-CWE-Other
|
CVE-2014-2095
|
2014-03-12 01:56 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258677
|
- |
|
catfish_project
|
catfish
|
Per: http://cwe.mitre.org/data/definitions/426.html
"CWE-426: Untrusted Search Path"
|
NVD-CWE-Other
|
CVE-2014-2095
|
2014-03-12 01:56 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258678
|
- |
|
catfish_project
|
catfish
|
Untrusted search path vulnerability in Catfish through 0.4.0.3, when a Fedora package such as 0.4.0.2-2 is not used, allows local users to gain privileges via a Trojan horse catfish.pyc in the curren…
|
NVD-CWE-Other
|
CVE-2014-2094
|
2014-03-12 01:55 |
2014-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258679
|
- |
|
imagecms
|
imagecms
|
Cross-site request forgery (CSRF) vulnerability in ImageCMS before 4.2 allows remote attackers to hijack the authentication of administrators for requests that conduct SQL injection attacks via the q…
|
CWE-352
Origin Validation Error
|
CVE-2013-7334
|
2014-03-12 01:30 |
2014-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258680
|
- |
|
zte
|
f460 f660
|
web_shell_cmd.gch on ZTE F460 and F660 cable modems allows remote attackers to obtain administrative access via sendcmd requests, as demonstrated by using "set TelnetCfg" commands to enable a TELNET …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-2321
|
2014-03-12 01:22 |
2014-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|