258191
|
- |
|
cisco
|
telepresence_system_software tandberg_2000_mxp tandberg_550_mxp tandberg_770_mxp tandberg_880_mxp tandberg_990_mxp telepresence_system_1000_mxp telepresence_system_1700_mxp te…
|
Per: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140430-mxp
" Vulnerable Products
The following products running a version of Cisco TelePresence System MXP Series…
|
CWE-20
Improper Input Validation
|
CVE-2014-2156
|
2014-05-3 00:49 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258192
|
- |
|
cybozu
|
garoon
|
Cybozu Garoon 3.0 through 3.7 SP3 allows remote authenticated users to bypass intended access restrictions and delete schedule information via unspecified API calls.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1989
|
2014-05-3 00:35 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258193
|
- |
|
cybozu
|
garoon
|
The Phone Messages feature in Cybozu Garoon 2.0.0 through 3.7 SP2 allows remote authenticated users to cause a denial of service (resource consumption) via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2014-1988
|
2014-05-3 00:32 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258194
|
- |
|
coreftp
|
core_ftp
|
Core FTP Server 1.2 before build 515 allows remote authenticated users to obtain sensitive information (password for the previous user) via a USER command with a specific length, possibly related to …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1443
|
2014-05-3 00:21 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258195
|
- |
|
coreftp
|
core_ftp
|
Directory traversal vulnerability in Core FTP Server 1.2 before build 515 allows remote authenticated users to determine the existence of arbitrary files via a /../ sequence in an XCRC command.
|
CWE-22
Path Traversal
|
CVE-2014-1442
|
2014-05-3 00:19 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258196
|
- |
|
coreftp
|
core_ftp
|
Core FTP Server 1.2 before build 515 allows remote attackers to cause a denial of service (reachable assertion and crash) via an AUTH SSL command with malformed data, as demonstrated by pressing the …
|
CWE-362
Race Condition
|
CVE-2014-1441
|
2014-05-3 00:11 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258197
|
- |
|
transifex
|
transifex
|
Transifex command-line client before 0.10 does not validate X.509 certificates for data transfer connections, which allows man-in-the-middle attackers to spoof a Transifex server via an arbitrary cer…
|
CWE-20
Improper Input Validation
|
CVE-2013-7110
|
2014-05-2 23:52 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258198
|
- |
|
transifex
|
transifex
|
Transifex command-line client before 0.9 does not validate X.509 certificates, which allows man-in-the-middle attackers to spoof a Transifex server via an arbitrary certificate.
|
CWE-20
Improper Input Validation
|
CVE-2013-2073
|
2014-05-2 23:49 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258199
|
- |
|
emc
|
rsa_access_manager
|
The runtime WS component in the server in EMC RSA Access Manager 6.1.3 before 6.1.3.39, 6.1.4 before 6.1.4.22, 6.2.0 before 6.2.0.11, and 6.2.1 before 6.2.1.03, when INFO logging is enabled, allows l…
|
CWE-310
Cryptographic Issues
|
CVE-2014-0646
|
2014-05-2 22:49 |
2014-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258200
|
- |
|
tibco
|
slingshot vault managed_file_transfer_command_center managed_file_transfer_internet_server
|
TIBCO Managed File Transfer Internet Server before 7.2.2, Managed File Transfer Command Center before 7.2.2, Slingshot before 1.9.1, and Vault before 1.0.1 allow remote attackers to obtain sensitive …
|
CWE-200
Information Exposure
|
CVE-2014-2545
|
2014-05-2 04:15 |
2014-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|