CVE Feed

    Dashboard / CVE

    2.1
    Low

    CVE-2014-3851

    Last Modified: 12 Apr 2025

    usr/lib/cgi-bin/create_passwd_file.py in Pyplate 0.08 uses world-readable permissions for passwd.db, which allows local users to obtain the administrator password by reading this file.

    Published: 7 Aug 2014
    5
    Medium

    CVE-2014-3852

    Last Modified: 12 Apr 2025

    Pyplate 0.08 does not include the HTTPOnly flag in a Set-Cookie header for the id cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.

    Published: 7 Aug 2014
    5
    Medium

    CVE-2014-3853

    Last Modified: 12 Apr 2025

    Pyplate 0.08 does not set the secure flag for the id cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.

    Published: 7 Aug 2014
    6.8
    Medium

    CVE-2014-3854

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in admin/addScript.py in Pyplate 0.08 allows remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the title parameter.

    Published: 7 Aug 2014
    5
    Medium

    CVE-2014-3855

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in download.py in Pyplate 0.08 allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.

    Published: 7 Aug 2014
    4.3
    Medium

    CVE-2014-5188

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in doemailpassword.tml in Lyris ListManager (LM) 8.95a allows remote attackers to inject arbitrary web script or HTML via the EmailAddr parameter.

    Published: 7 Aug 2014
    7.5
    High

    CVE-2014-5189

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in lib/optin/optin_page.php in the Lead Octopus plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 7 Aug 2014
    4.3
    Medium

    CVE-2014-5190

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in captcha-secureimage/test/index.php in the SI CAPTCHA Anti-Spam plugin 2.7.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.

    Published: 7 Aug 2014
    4.3
    Medium

    CVE-2014-5191

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Preview plugin before 4.4.3 in CKEditor allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 7 Aug 2014
    7.5
    High

    CVE-2014-5192

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in admin/admin.php in Sphider 1.3.6 allows remote attackers to execute arbitrary SQL commands via the filter parameter.

    Published: 7 Aug 2014
    8.5
    High

    CVE-2014-4345

    Last Modified: 12 Apr 2025

    Off-by-one error in the krb5_encode_krbsecretkey function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) 1.6.x through 1.11.x before 1.11.6 and 1.12.x before 1.12.2 allows remote authenticated users to cause a denial of service (buffer overflow) or possibly execute arbitrary code via a series of "cpw -keepold" commands.

    Published: 7 Aug 2014
    5
    Medium

    CVE-2014-3562

    Last Modified: 12 Apr 2025

    Red Hat Directory Server 8 and 389 Directory Server, when debugging is enabled, allows remote attackers to obtain sensitive replicated metadata by searching the directory.

    Published: 7 Aug 2014
    5
    Medium

    CVE-2014-6425

    Last Modified: 12 Apr 2025

    The (1) get_quoted_string and (2) get_unquoted_string functions in epan/dissectors/packet-cups.c in the CUPS dissector in Wireshark 1.12.x before 1.12.1 allow remote attackers to cause a denial of service (buffer over-read and application crash) via a CUPS packet that lacks a trailing '\0' character.

    Published: 7 Aug 2014
    7.5
    High

    CVE-2015-2328

    Last Modified: 12 Apr 2025

    PCRE before 8.36 mishandles the /((?(R)a|(?1)))+/ pattern and related patterns with certain recursion, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.

    Published: 7 Aug 2014
    6.5
    Medium

    CVE-2014-5184

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the stripshow-storylines page in the stripShow plugin 2.5.2 for WordPress allows remote authenticated administrators to execute arbitrary SQL commands via the story parameter in an edit action to wp-admin/admin.php.

    Published: 6 Aug 2014
    6
    Medium

    CVE-2014-5185

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the Quartz plugin 1.01.1 for WordPress allows remote authenticated users with Contributor privileges to execute arbitrary SQL commands via the quote parameter in an edit action in the quartz/quote_form.php page to wp-admin/edit.php.

    Published: 6 Aug 2014
    7.5
    High

    CVE-2012-6653

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the All Video Gallery (all-video-gallery) plugin before 1.2.0 for WordPress has unspecified impact and attack vectors.

    Published: 6 Aug 2014
    6.8
    Medium

    CVE-2014-0479

    Last Modified: 12 Apr 2025

    reportbug before 6.4.4+deb7u1 and 6.5.x before 6.5.0+nmu1 allows remote attackers to execute arbitrary commands via vectors related to compare_versions and reportbug/checkversions.py.

    Published: 6 Aug 2014
    6.5
    Medium

    CVE-2014-5186

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the All Video Gallery (all-video-gallery) plugin 1.2 for WordPress allows remote authenticated administrators to execute arbitrary SQL commands via the id parameter in an edit action in the allvideogallery_videos page to wp-admin/admin.php.

    Published: 6 Aug 2014
    6.9
    Medium

    CVE-2014-3434

    Last Modified: 12 Apr 2025

    Buffer overflow in the sysplant driver in Symantec Endpoint Protection (SEP) Client 11.x and 12.x before 12.1 RU4 MP1b, and Small Business Edition before SEP 12.1, allows local users to execute arbitrary code via a long argument to a 0x00222084 IOCTL call.

    Published: 6 Aug 2014
    6.5
    Medium

    CVE-2014-5180

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the videos page in the HDW Player Plugin (hdw-player-video-player-video-gallery) 2.4.2 for WordPress allows remote authenticated administrators to execute arbitrary SQL commands via the id parameter in the edit action to wp-admin/admin.php.

    Published: 6 Aug 2014
    5
    Medium

    CVE-2014-5181

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in lastfm-proxy.php in the Last.fm Rotation (lastfm-rotation) plugin 1.0 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the snode parameter.

    Published: 6 Aug 2014
    6
    Medium

    CVE-2014-5182

    Last Modified: 12 Apr 2025

    Multiple SQL injection vulnerabilities in the yawpp plugin 1.2 for WordPress allow remote authenticated users with Contributor privileges to execute arbitrary SQL commands via vectors related to (1) admin_functions.php or (2) admin_update.php, as demonstrated by the id parameter in the update action to wp-admin/admin.php.

    Published: 6 Aug 2014
    6.5
    Medium

    CVE-2014-5183

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in includes/mode-edit.php in the Simple Retail Menus (simple-retail-menus) plugin before 4.1 for WordPress allows remote authenticated editors to execute arbitrary SQL commands via the targetmenu parameter in an edit action to wp-admin/admin.php.

    Published: 6 Aug 2014
    5
    Medium

    CVE-2014-5187

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in the Tom M8te (tom-m8te) plugin 1.5.3 for WordPress allows remote attackers to read arbitrary files via the file parameter to tom-download-file.php.

    Published: 6 Aug 2014
    7.5
    High

    CVE-2014-5082

    Last Modified: 12 Apr 2025

    Multiple SQL injection vulnerabilities in admin/admin.php in Sphider 1.3.6 and earlier, Sphider Pro, and Sphider-plus allow remote attackers to execute arbitrary SQL commands via the (1) site_id or (2) url parameter.

    Published: 6 Aug 2014
    4.3
    Medium

    CVE-2014-5088

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Status2k allows remote attackers to inject arbitrary web script or HTML via the username to login.php.

    Published: 6 Aug 2014
    4.3
    Medium

    CVE-2014-5178

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Easy File Sharing (EFS) Web Server 6.8 allow remote authenticated users to inject arbitrary web script or HTML via the content parameter when (1) creating a topic or (2) posting an answer. NOTE: some of these details are obtained from third party information.

    Published: 6 Aug 2014
    7.5
    High

    CVE-2014-5089

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in admin/options/logs.php in Status2k allows remote authenticated administrators to execute arbitrary SQL commands via the log parameter.

    Published: 6 Aug 2014
    6.5
    Medium

    CVE-2014-5090

    Last Modified: 12 Apr 2025

    admin/options/logs.php in Status2k allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in the Location field in Add Logs in the Admin Panel.

    Published: 6 Aug 2014
    4.3
    Medium

    CVE-2014-5179

    Last Modified: 12 Apr 2025

    The freelinking module for Drupal, as used in the Freelinking for Case Tracker module, does not properly check access permissions for (1) nodes or (2) users, which allows remote attackers to obtain sensitive information via a crafted link.

    Published: 6 Aug 2014
    5.5
    Medium

    CVE-2014-3464

    Last Modified: 12 Apr 2025

    The EJB invocation handler implementation in Red Hat JBossWS, as used in JBoss Enterprise Application Platform (EAP) 6.2.0 and 6.3.0, does not properly enforce the method level restrictions for outbound messages, which allows remote authenticated users to access otherwise restricted JAX-WS handlers by leveraging permissions to the EJB class. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-2133.

    Published: 6 Aug 2014
    4.9
    Medium

    CVE-2014-3472

    Last Modified: 12 Apr 2025

    The isCallerInRole function in SimpleSecurityManager in JBoss Application Server (AS) 7, as used in Red Hat JBoss Enterprise Application Platform (JBEAP) 6.3.0, does not properly check caller roles, which allows remote authenticated users to bypass access restrictions via unspecified vectors.

    Published: 6 Aug 2014
    5
    Medium

    CVE-2014-3506

    Last Modified: 12 Apr 2025

    d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (memory consumption) via crafted DTLS handshake messages that trigger memory allocations corresponding to large length values.

    Published: 6 Aug 2014
    6.8
    Medium

    CVE-2014-3509

    Last Modified: 12 Apr 2025

    Race condition in the ssl_parse_serverhello_tlsext function in t1_lib.c in OpenSSL 1.0.0 before 1.0.0n and 1.0.1 before 1.0.1i, when multithreading and session resumption are used, allows remote SSL servers to cause a denial of service (memory overwrite and client application crash) or possibly have unspecified other impact by sending Elliptic Curve (EC) Supported Point Formats Extension data.

    Published: 6 Aug 2014
    4.3
    Medium

    CVE-2014-3508

    Last Modified: 12 Apr 2025

    The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process stack memory by reading output from X509_name_oneline, X509_name_print_ex, and unspecified other functions.

    Published: 6 Aug 2014
    4.3
    Medium

    CVE-2014-3510

    Last Modified: 12 Apr 2025

    The ssl3_send_client_key_exchange function in s3_clnt.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote DTLS servers to cause a denial of service (NULL pointer dereference and client application crash) via a crafted handshake message in conjunction with a (1) anonymous DH or (2) anonymous ECDH ciphersuite.

    Published: 6 Aug 2014
    4.3
    Medium

    CVE-2014-3616

    Last Modified: 12 Apr 2025

    nginx 0.5.6 through 1.7.4, when using the same shared ssl_session_cache or ssl_session_ticket_key for multiple servers, can reuse a cached SSL session for an unrelated context, which allows remote attackers with certain privileges to conduct "virtual host confusion" attacks.

    Published: 6 Aug 2014
    4.3
    Medium

    CVE-2014-7144

    Last Modified: 12 Apr 2025

    OpenStack keystonemiddleware (formerly python-keystoneclient) 0.x before 0.11.0 and 1.x before 1.2.0 disables certification verification when the "insecure" option is set in a paste configuration (paste.ini) file regardless of the value, which allows remote attackers to conduct man-in-the-middle attacks via a crafted certificate.

    Published: 6 Aug 2014
    5
    Medium

    CVE-2014-7191

    Last Modified: 12 Apr 2025

    The qs module before 1.0.0 in Node.js does not call the compact function for array data, which allows remote attackers to cause a denial of service (memory consumption) by using a large index value to create a sparse array.

    Published: 6 Aug 2014
    5
    Medium

    CVE-2014-3505

    Last Modified: 12 Apr 2025

    Double free vulnerability in d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (application crash) via crafted DTLS packets that trigger an error condition.

    Published: 6 Aug 2014
    5
    Medium

    CVE-2014-3507

    Last Modified: 12 Apr 2025

    Memory leak in d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (memory consumption) via zero-length DTLS fragments that trigger improper handling of the return value of a certain insert function.

    Published: 6 Aug 2014
    4.3
    Medium

    CVE-2014-3511

    Last Modified: 12 Apr 2025

    The ssl23_get_client_hello function in s23_srvr.c in OpenSSL 1.0.1 before 1.0.1i allows man-in-the-middle attackers to force the use of TLS 1.0 by triggering ClientHello message fragmentation in communication between a client and server that both support later TLS versions, related to a "protocol downgrade" issue.

    Published: 6 Aug 2014
    7.5
    High

    CVE-2014-3512

    Last Modified: 12 Apr 2025

    Multiple buffer overflows in crypto/srp/srp_lib.c in the SRP implementation in OpenSSL 1.0.1 before 1.0.1i allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an invalid SRP (1) g, (2) A, or (3) B parameter.

    Published: 6 Aug 2014
    4.3
    Medium

    CVE-2014-5139

    Last Modified: 12 Apr 2025

    The ssl_set_client_disabled function in t1_lib.c in OpenSSL 1.0.1 before 1.0.1i allows remote SSL servers to cause a denial of service (NULL pointer dereference and client application crash) via a ServerHello message that includes an SRP ciphersuite without the required negotiation of that ciphersuite with the client.

    Published: 6 Aug 2014
    6.8
    Medium

    CVE-2014-3556

    Last Modified: 12 Apr 2025

    The STARTTLS implementation in mail/ngx_mail_smtp_handler.c in the SMTP proxy in nginx 1.5.x and 1.6.x before 1.6.1 and 1.7.x before 1.7.4 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411.

    Published: 5 Aug 2014
    6.8
    Medium

    CVE-2014-5075

    Last Modified: 12 Apr 2025

    The Ignite Realtime Smack XMPP API 4.x before 4.0.2, and 3.x and 2.x when a custom SSLContext is used, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

    Published: 5 Aug 2014
    5
    Medium

    CVE-2014-6269

    Last Modified: 12 Apr 2025

    Multiple integer overflows in the http_request_forward_body function in proto_http.c in HAProxy 1.5-dev23 before 1.5.4 allow remote attackers to cause a denial of service (crash) via a large stream of data, which triggers a buffer overflow and an out-of-bounds read.

    Published: 5 Aug 2014
    3.5
    Low

    CVE-2014-3559

    Last Modified: 12 Apr 2025

    The oVirt storage backend in Red Hat Enterprise Virtualization 3.4 does not wipe memory snapshots when deleting a VM, even when wipe-after-delete (WAD) is configured for the VM's disk, which allows remote authenticated users with certain credentials to read portions of the deleted VM's memory and obtain sensitive information via an uninitialized storage volume.

    Published: 4 Aug 2014
    4
    Medium

    CVE-2013-5756

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in Yealink VoIP Phone SIP-T38G allows remote authenticated users to read arbitrary files via a .. (dot dot) in the page parameter to cgi-bin/cgiServer.exx.

    Published: 3 Aug 2014