256711
|
- |
|
mcafee
|
network_data_loss_prevention
|
Unspecified vulnerability in McAfee Network Data Loss Prevention (NDLP) before 9.3 allows remote attackers to obtain sensitive information, affect integrity, or cause a denial of service via unknown …
|
NVD-CWE-noinfo
|
CVE-2014-8530
|
2014-10-31 00:24 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256712
|
- |
|
mcafee
|
network_data_loss_prevention
|
Cross-site scripting (XSS) vulnerability in McAfee Network Data Loss Prevention (NDLP) before 9.3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-352
Origin Validation Error
|
CVE-2014-8521
|
2014-10-31 00:23 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256713
|
- |
|
mcafee
|
network_data_loss_prevention
|
The MySQL database in McAfee Network Data Loss Prevention (NDLP) before 9.3 does not require a password, which makes it easier for remote attackers to obtain access.
|
CWE-287
Improper Authentication
|
CVE-2014-8522
|
2014-10-31 00:18 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256714
|
- |
|
mcafee
|
network_data_loss_prevention
|
Cross-site request forgery (CSRF) vulnerability in McAfee Network Data Loss Prevention (NDLP) before 9.3 allows remote attackers to hijack the authentication of unspecified victims via unknown vector…
|
CWE-352
Origin Validation Error
|
CVE-2014-8523
|
2014-10-31 00:17 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256715
|
- |
|
mcafee
|
network_data_loss_prevention
|
McAfee Network Data Loss Prevention (NDLP) before 9.3 does not disable the autocomplete setting for the password and other fields, which allows remote attackers to obtain sensitive information via un…
|
CWE-200
Information Exposure
|
CVE-2014-8524
|
2014-10-31 00:16 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256716
|
- |
|
mcafee
|
network_data_loss_prevention
|
Unspecified vulnerability in McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to read arbitrary files via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2014-8519
|
2014-10-30 23:45 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256717
|
- |
|
mcafee
|
network_data_loss_prevention
|
Unspecified vulnerability in the login form in McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to cause a denial of service via a crafted value in the domain field.
|
NVD-CWE-noinfo
|
CVE-2014-8534
|
2014-10-30 23:44 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256718
|
- |
|
mcafee
|
network_data_loss_prevention
|
McAfee Network Data Loss Prevention (NDLP) before 9.2.2 allows local users to bypass intended restriction on unspecified functionality via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2014-8535
|
2014-10-30 23:41 |
2014-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256719
|
- |
|
python-gnupg_project
|
python-gnupg
|
The shell_quote function in python-gnupg 0.3.5 does not properly quote strings, which allows context-dependent attackers to execute arbitrary code via shell metacharacters in unspecified vectors, as …
|
CWE-20
Improper Input Validation
|
CVE-2014-1927
|
2014-10-29 10:22 |
2014-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256720
|
- |
|
cobbler_project
|
cobbler
|
The set_mgmt_parameters function in item.py in cobbler before 2.2.2 allows context-dependent attackers to execute arbitrary code via vectors related to the use of the yaml.load function instead of th…
|
CWE-20
Improper Input Validation
|
CVE-2011-4953
|
2014-10-29 10:17 |
2014-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|