256741
|
- |
|
oracle
|
database_server
|
Unspecified vulnerability in the Java VM component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrit…
|
NVD-CWE-noinfo
|
CVE-2014-6560
|
2014-10-24 16:28 |
2014-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256742
|
- |
|
oracle
|
database_server
|
Unspecified vulnerability in the Java VM component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via unkno…
|
NVD-CWE-noinfo
|
CVE-2014-6563
|
2014-10-24 16:28 |
2014-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256743
|
- |
|
bellyhoodcom_project
|
bellyhoodcom
|
The bellyhoodcom (aka com.tapatalk.bellyhoodcom) application 3.4.23 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obta…
|
CWE-310
Cryptographic Issues
|
CVE-2014-6646
|
2014-10-24 16:28 |
2014-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256744
|
- |
|
apple
|
iphone_os
|
The history-clearing feature in Safari in Apple iOS before 7 does not clear the back/forward history of an open tab, which allows physically proximate attackers to obtain sensitive information by lev…
|
CWE-200
Information Exposure
|
CVE-2013-5150
|
2014-10-24 15:57 |
2013-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256745
|
- |
|
libreoffice sun
|
libreoffice openoffice.org
|
oowriter in OpenOffice.org 3.3.0 and LibreOffice before 3.4.3 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted DOC file that triggers an out-of-bounds read in …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-2713
|
2014-10-24 15:19 |
2011-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256746
|
- |
|
ibm
|
websphere_application_server
|
The JAX-RPC WS-Security runtime in the Web Services Security component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.23 and 7.0 before 7.0.0.3, when APAR PK41002 is installed, does not p…
|
CWE-20
Improper Input Validation
|
CVE-2009-1172
|
2014-10-24 14:37 |
2009-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256747
|
- |
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.3 uses weak permissions (777) for files associated with unspecified "interim fixes," which allows attackers to modify files that would not have…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-1173
|
2014-10-24 14:37 |
2009-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256748
|
- |
|
calender_base_project
|
calender_base
|
The Calendar Base (cal) extension before 1.5.9 and 1.6.x before 1.6.1 for TYPO3 allows remote attackers to cause a denial of service (resource consumption) via vectors related to the PHP PCRE library.
|
CWE-399
Resource Management Errors
|
CVE-2014-8325
|
2014-10-24 00:51 |
2014-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256749
|
- |
|
seeddms
|
seeddms
|
Unrestricted file upload vulnerability in op/op.AddFile2.php in SeedDMS (formerly LetoDMS and MyDMS) before 4.3.4 allows remote attackers to execute arbitrary code by uploading a file with an executa…
|
CWE-20
Improper Input Validation
|
CVE-2014-2278
|
2014-10-24 00:42 |
2014-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256750
|
- |
|
redhat
|
virtual_desktop_service_manager
|
VDSM allows remote attackers to cause a denial of service (connection blocking) by keeping an SSL connection open.
|
CWE-310
Cryptographic Issues
|
CVE-2014-7968
|
2014-10-23 23:39 |
2014-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|