257991
|
- |
|
google
|
picasa
|
Integer underflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to execute arbitrary code via a crafted JPEG tag that triggers a heap-based buffer overflow, as dem…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-5349
|
2014-04-25 22:38 |
2014-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257992
|
- |
|
google
|
picasa
|
Integer overflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to execute arbitrary code via a long TIFF tag that triggers a heap-based buffer overflow, as demonst…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-5357
|
2014-04-25 22:38 |
2014-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257993
|
- |
|
cisco
|
ios
|
Cisco IOS before 15.3(2)S allows remote attackers to bypass interface ACL restrictions in opportunistic circumstances by sending IPv6 packets in an unspecified scenario in which expected packet drops…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3946
|
2014-04-25 03:38 |
2014-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257994
|
- |
|
open-xchange
|
open-xchange_appsuite
|
Cross-site scripting (XSS) vulnerability in Open-Xchange AppSuite 7.4.1 before 7.4.1-rev11 and 7.4.2 before 7.4.2-rev13 allows remote attackers to inject arbitrary web script or HTML via a Drive file…
|
CWE-79
Cross-site Scripting
|
CVE-2014-2393
|
2014-04-25 03:32 |
2014-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257995
|
- |
|
open-xchange
|
open-xchange_appsuite
|
The E-Mail autoconfiguration feature in Open-Xchange AppSuite before 7.2.2-rev20, 7.4.1 before 7.4.1-rev11, and 7.4.2 before 7.4.2-rev13 places a password in a GET request, which allows remote attack…
|
CWE-200
Information Exposure
|
CVE-2014-2392
|
2014-04-25 03:29 |
2014-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257996
|
- |
|
open-xchange
|
open-xchange_appsuite
|
The password recovery service in Open-Xchange AppSuite before 7.2.2-rev20, 7.4.1 before 7.4.1-rev11, and 7.4.2 before 7.4.2-rev13 makes an improper decision about the sensitivity of a string represen…
|
CWE-200
Information Exposure
|
CVE-2014-2391
|
2014-04-25 03:27 |
2014-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257997
|
- |
|
symantec
|
pgp_desktop encryption_desktop
|
Symantec PGP Desktop 10.0.x through 10.2.x and Encryption Desktop Professional 10.3.x before 10.3.2 MP1 do not properly perform block-data moves, which allows remote attackers to cause a denial of se…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1647
|
2014-04-25 03:06 |
2014-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257998
|
- |
|
symantec
|
encryption_desktop pgp_desktop
|
Symantec PGP Desktop 10.0.x through 10.2.x and Encryption Desktop Professional 10.3.x before 10.3.2 MP1 do not properly perform memory copies, which allows remote attackers to cause a denial of servi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1646
|
2014-04-25 03:00 |
2014-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257999
|
- |
|
oracle
|
peoplesoft_products
|
Unspecified vulnerability in the PeopleSoft Enterprise HRMS Talent Acquisition Manager component in Oracle PeopleSoft Products 9.0, 9.1, and 9.2 allows remote authenticated users to affect confidenti…
|
NVD-CWE-noinfo
|
CVE-2014-2449
|
2014-04-25 02:59 |
2014-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258000
|
- |
|
apple
|
mac_os_x
|
The kernel in Apple OS X through 10.9.2 places a kernel pointer into an XNU object data structure accessible from user space, which makes it easier for local users to bypass the ASLR protection mecha…
|
CWE-200
Information Exposure
|
CVE-2014-1322
|
2014-04-24 22:56 |
2014-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|