257791
|
- |
|
iodata
|
ts-wlcam\/v_camera_firmware ts-wlcam\/v_camera ts-wptcam_camera_firmware ts-wptcam_camera ts-wlcam_camera_firmware ts-wlcam_camera ts-ptcam\/poe_camera_firmware ts-ptcam\/poe_cam…
|
Per: http://jvn.jp/en/jp/JVN94592501/index.html
"Products Affected
TS-WLCAM firmware version 1.06 and earlier
TS-WLCAM/V firmware version 1.06 and earlier
TS-WPTCAM firmware version 1.0…
|
CWE-287
Improper Authentication
|
CVE-2014-3895
|
2014-07-31 03:48 |
2014-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257792
|
- |
|
cairographics
|
cairo
|
The cairo_image_surface_get_data function in Cairo 1.10.2, as used in GTK+ and Wireshark, allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via a large string.
|
NVD-CWE-Other
|
CVE-2014-5116
|
2014-07-31 02:18 |
2014-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257793
|
- |
|
cairographics
|
cairo
|
<a href="http://cwe.mitre.org/data/definitions/476.html" target="_blank">CWE-476: NULL Pointer Dereference</a>
|
NVD-CWE-Other
|
CVE-2014-5116
|
2014-07-31 02:18 |
2014-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257794
|
- |
|
webidsupport
|
webid
|
WeBid 1.1.1 allows remote attackers to conduct an LDAP injection attack via the (1) js or (2) cat parameter.
|
NVD-CWE-Other
|
CVE-2014-5114
|
2014-07-31 02:02 |
2014-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257795
|
- |
|
webidsupport
|
webid
|
<a href="http://cwe.mitre.org/data/definitions/90.html" target="_blank">CWE-90: Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')</a>
|
NVD-CWE-Other
|
CVE-2014-5114
|
2014-07-31 02:02 |
2014-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257796
|
- |
|
silver-peak
|
vx
|
Cross-site request forgery (CSRF) vulnerability in php/user_account.php in Silver Peak VX through 6.2.4 allows remote attackers to hijack the authentication of administrators for requests that create…
|
CWE-352
Origin Validation Error
|
CVE-2014-2974
|
2014-07-29 23:28 |
2014-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257797
|
- |
|
visualware
|
myconnection_server
|
Multiple cross-site scripting (XSS) vulnerabilities in test.php in Visualware MyConnection Server 9.7i allow remote attackers to inject arbitrary web script or HTML via the (1) testtype, (2) ver, (3)…
|
CWE-79
Cross-site Scripting
|
CVE-2014-5113
|
2014-07-29 23:18 |
2014-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257798
|
- |
|
ol-commerce_project
|
ol-commerce
|
Multiple cross-site scripting (XSS) vulnerabilities in ol-commerce 2.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) a_country parameter in a process action to affiliate…
|
CWE-79
Cross-site Scripting
|
CVE-2014-5105
|
2014-07-29 22:05 |
2014-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257799
|
- |
|
ol-commerce_project
|
ol-commerce
|
Multiple SQL injection vulnerabilities in ol-commerce 2.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) a_country parameter in a process action to affiliate_signup.php, (2) a…
|
CWE-89
SQL Injection
|
CVE-2014-5104
|
2014-07-29 22:04 |
2014-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257800
|
- |
|
mailpoet
|
mailpoet_newsletters
|
Unspecified vulnerability in the MailPoet Newsletters (wysija-newsletters) plugin before 2.6.8 for WordPress has unspecified impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2014-4726
|
2014-07-29 04:21 |
2014-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|