CVE Feed

    Dashboard / CVE

    6.2
    Medium

    CVE-2014-3248

    Last Modified: 12 Apr 2025

    Untrusted search path vulnerability in Puppet Enterprise 2.8 before 2.8.7, Puppet before 2.7.26 and 3.x before 3.6.2, Facter 1.6.x and 2.x before 2.0.2, Hiera before 1.3.4, and Mcollective before 2.5.2, when running with Ruby 1.9.1 or earlier, allows local users to gain privileges via a Trojan horse file in the current working directory, as demonstrated using (1) rubygems/defaults/operating_system.rb, (2) Win32API.rb, (3) Win32API.so, (4) safe_yaml.rb, (5) safe_yaml/deep.rb, or (6) safe_yaml/deep.so; or (7) operatingsystem.rb, (8) operatingsystem.so, (9) osfamily.rb, or (10) osfamily.so in puppet/confine.

    Published: 10 Jun 2014
    6.5
    Medium

    CVE-2014-3250

    Last Modified: 20 Apr 2025

    The default vhost configuration file in Puppet before 3.6.2 does not include the SSLCARevocationCheck directive, which might allow remote attackers to obtain sensitive information via a revoked certificate when a Puppet master runs with Apache 2.4.

    Published: 10 Jun 2014
    7.8
    High

    CVE-2014-9914

    Last Modified: 20 Apr 2025

    Race condition in the ip4_datagram_release_cb function in net/ipv4/datagram.c in the Linux kernel before 3.15.2 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging incorrect expectations about locking during multithreaded access to internal data structures for IPv4 UDP sockets.

    Published: 10 Jun 2014
    5
    Medium

    CVE-2014-4004

    Last Modified: 12 Apr 2025

    The (1) Structures and (2) Project-Oriented Procurement components in SAP Project System has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.

    Published: 9 Jun 2014
    7.5
    High

    CVE-2014-4003

    Last Modified: 12 Apr 2025

    The System Landscape Directory (SLD) in SAP NetWeaver allows remote attackers to modify information via vectors related to adding a system.

    Published: 9 Jun 2014
    5
    Medium

    CVE-2014-4010

    Last Modified: 12 Apr 2025

    SAP Transaction Data Pool has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.

    Published: 9 Jun 2014
    5
    Medium

    CVE-2014-4005

    Last Modified: 12 Apr 2025

    SAP Brazil add-on has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.

    Published: 9 Jun 2014
    5
    Medium

    CVE-2014-4006

    Last Modified: 12 Apr 2025

    The SAP Trader's and Scheduler's Workbench (TSW) for SAP Oil & Gas has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.

    Published: 9 Jun 2014
    5
    Medium

    CVE-2014-4007

    Last Modified: 12 Apr 2025

    The SAP Upgrade tools for ABAP has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.

    Published: 9 Jun 2014
    5
    Medium

    CVE-2014-4008

    Last Modified: 12 Apr 2025

    SAP Web Services Tool (CA-WUI-WST) has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.

    Published: 9 Jun 2014
    5
    Medium

    CVE-2014-4009

    Last Modified: 12 Apr 2025

    SAP CCMS Monitoring (BC-CCM-MON) has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.

    Published: 9 Jun 2014
    5
    Medium

    CVE-2014-4011

    Last Modified: 12 Apr 2025

    SAP Capacity Leveling has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.

    Published: 9 Jun 2014
    5
    Medium

    CVE-2014-4012

    Last Modified: 12 Apr 2025

    SAP Open Hub Service has hardcoded credentials, which makes it easier for remote attackers to obtain access via unspecified vectors.

    Published: 9 Jun 2014
    2.1
    Low

    CVE-2013-2562

    Last Modified: 12 Apr 2025

    Mambo CMS 4.6.5 stores the MySQL database password in cleartext in the document root, which allows local users to obtain sensitive information via unspecified vectors.

    Published: 9 Jun 2014
    4.3
    Medium

    CVE-2013-4595

    Last Modified: 12 Apr 2025

    The Secure Pages module 6.x-2.x before 6.x-2.0 for Drupal does not properly match URLs, which causes HTTP to be used instead of HTTPS and makes it easier for remote attackers to obtain sensitive information via a crafted web page.

    Published: 9 Jun 2014
    4
    Medium

    CVE-2013-4597

    Last Modified: 12 Apr 2025

    The Revisioning module 7.x-1.x before 7.x-1.6 for Drupal does not properly check node access permissions for content marked unpublished by the Scheduled module, which allows remote authenticated users to obtain sensitive information via unspecified vectors.

    Published: 9 Jun 2014
    4.3
    Medium

    CVE-2013-4599

    Last Modified: 12 Apr 2025

    The Misery module 6.x-2.x before 6.x-2.5 and 7.x-2.x before 7.x-2.2 for Drupal, when the "delay misery" configuration is set to a high value, allows remote attackers to cause a denial of service (process consumption) via multiple requests.

    Published: 9 Jun 2014
    5
    Medium

    CVE-2013-5760

    Last Modified: 12 Apr 2025

    QNAP Photo Station before firmware 4.0.3 build0912 allows remote attackers to list OS user accounts via a request to photo/p/api/list.php.

    Published: 9 Jun 2014
    5
    Medium

    CVE-2013-2564

    Last Modified: 12 Apr 2025

    Mambo CMS 4.6.5 allows remote attackers to cause a denial of service (memory and bandwidth consumption) by uploading a crafted file.

    Published: 9 Jun 2014
    7.5
    High

    CVE-2013-3081

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the checkEmailFormat function in plugins/jojo_core/classes/Jojo.php in Jojo before 1.2.2 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header to /articles/test/.

    Published: 9 Jun 2014
    4.3
    Medium

    CVE-2013-3082

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in plugins/jojo_core/forgot_password.php in Jojo before 1.2.2 allows remote attackers to inject arbitrary web script or HTML via the search parameter to forgot-password/.

    Published: 9 Jun 2014
    2.1
    Low

    CVE-2013-6223

    Last Modified: 12 Apr 2025

    LiveZilla before 5.1.1.0 stores the admin Base64 encoded username and password in a 1click file, which allows local users to obtain access by reading the file.

    Published: 9 Jun 2014
    7.5
    High

    CVE-2013-7323

    Last Modified: 12 Apr 2025

    python-gnupg before 0.3.5 allows context-dependent attackers to execute arbitrary commands via shell metacharacters in unspecified vectors.

    Published: 9 Jun 2014
    7.5
    High

    CVE-2013-1756

    Last Modified: 12 Apr 2025

    The Dragonfly gem 0.7 before 0.8.6 and 0.9.x before 0.9.13 for Ruby, when used with Ruby on Rails, allows remote attackers to execute arbitrary code via a crafted request.

    Published: 9 Jun 2014
    4
    Medium

    CVE-2013-1973

    Last Modified: 12 Apr 2025

    The autocomplete callback in Autocomplete Widgets for Text and Number Fields (autocomplete_widgets) module 6.x-1.x before 6.x-1.4 and 7.x-1.x before 7.x-1.0-rc1 does not properly handle node permissions, which allows remote authenticated users to obtain sensitive field values via unspecified vectors.

    Published: 9 Jun 2014
    2.1
    Low

    CVE-2013-2563

    Last Modified: 12 Apr 2025

    Mambo CMS 4.6.5 uses world-readable permissions on configuration.php, which allows local users to obtain the admin password hash by reading the file.

    Published: 9 Jun 2014
    6
    Medium

    CVE-2014-0929

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in the Profiles component in IBM Connections through 3.0.1.1 CR3 allows remote authenticated users to hijack the authentication of arbitrary users for requests that trigger follow actions.

    Published: 8 Jun 2014
    4.3
    Medium

    CVE-2014-3036

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in IBM API Management 3.0.0.0, when basic authentication is used for APIs, allows remote attackers to bypass intended restrictions on topology access, and obtain sensitive information, via unknown vectors.

    Published: 8 Jun 2014
    6
    Medium

    CVE-2014-3048

    Last Modified: 12 Apr 2025

    Unspecified vulnerability on the IBM System Storage Virtualization Engine TS7700 allows local users to gain privileges by leveraging the TSSC service-user role to enter a crafted SSH command.

    Published: 8 Jun 2014
    4.3
    Medium

    CVE-2014-0936

    Last Modified: 12 Apr 2025

    IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by sniffing the network.

    Published: 8 Jun 2014
    3.6
    Low

    CVE-2014-3038

    Last Modified: 12 Apr 2025

    IBM SPSS Modeler 16.0 before 16.0.0.1 on UNIX does not properly drop group privileges, which allows local users to bypass intended file-access restrictions by leveraging (1) gid 0 or (2) root's group memberships.

    Published: 8 Jun 2014
    6.9
    Medium

    CVE-2014-3977

    Last Modified: 12 Apr 2025

    libodm.a in IBM AIX 6.1 and 7.1, and VIOS 2.2.x, allows local users to overwrite arbitrary files via a symlink attack on a temporary file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-2179.

    Published: 8 Jun 2014
    3.3
    Low

    CVE-2014-3982

    Last Modified: 12 Apr 2025

    include/tests_webservers in Lynis before 1.5.5 on AIX allows local users to overwrite arbitrary files via a symlink attack on a /tmp/lynis.##### file.

    Published: 8 Jun 2014
    3.3
    Low

    CVE-2014-3986

    Last Modified: 12 Apr 2025

    include/tests_webservers in Lynis before 1.5.5 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/lynis.*.unsorted file with an easily determined name.

    Published: 8 Jun 2014
    6
    Medium

    CVE-2014-0961

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in IBM Tivoli Identity Manager (ITIM) 5.0 before 5.0.0.15 and 5.1 before 5.1.0.15 and IBM Security Identity Manager (ISIM) 6.0 before 6.0.0.2 allows remote authenticated users to hijack the authentication of arbitrary users for requests that insert XSS sequences.

    Published: 8 Jun 2014
    5.7
    Medium

    CVE-2014-3291

    Last Modified: 12 Apr 2025

    Cisco Wireless LAN Controller (WLC) devices allow remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a zero value in Cisco Discovery Protocol packet data that is not properly handled during SNMP polling, aka Bug ID CSCuo12321.

    Published: 8 Jun 2014
    5
    Medium

    CVE-2014-3278

    Last Modified: 12 Apr 2025

    The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) does not properly implement access control, which allows remote attackers to enumerate accounts by visiting an unspecified BVSMWeb web page, aka Bug IDs CSCun39619 and CSCun45572.

    Published: 8 Jun 2014
    5
    Medium

    CVE-2014-3281

    Last Modified: 12 Apr 2025

    The web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) does not properly implement access control, which allows remote attackers to obtain potentially sensitive user information by visiting an unspecified BVSMWeb web page, aka Bug IDs CSCun46071 and CSCun46101.

    Published: 8 Jun 2014
    5
    Medium

    CVE-2014-3286

    Last Modified: 12 Apr 2025

    The web framework in Cisco WebEx Meeting Server does not properly restrict the content of reply messages, which allows remote attackers to obtain sensitive information via a crafted URL, aka Bug IDs CSCuj81685, CSCuj81688, CSCuj81665, CSCuj81744, and CSCuj81661.

    Published: 8 Jun 2014
    8.5
    High

    CVE-2014-2506

    Last Modified: 12 Apr 2025

    EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P14, 7.0 before P15, and 7.1 before P05 allows remote authenticated users to obtain super-user privileges for system-object creation, and bypass intended restrictions on data access and server actions, via unspecified vectors.

    Published: 8 Jun 2014
    8.5
    High

    CVE-2014-2507

    Last Modified: 12 Apr 2025

    EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P14, 7.0 before P15, and 7.1 before P05 allows remote authenticated users to execute arbitrary commands via shell metacharacters in arguments to unspecified methods.

    Published: 8 Jun 2014
    7.5
    High

    CVE-2014-2508

    Last Modified: 12 Apr 2025

    EMC Documentum Content Server before 6.7 SP1 P28, 6.7 SP2 before P14, 7.0 before P15, and 7.1 before P05 allows remote authenticated users to conduct Documentum Query Language (DQL) injection attacks and bypass intended restrictions on database actions via vectors involving DQL hints.

    Published: 8 Jun 2014
    9.8
    Critical

    CVE-2014-9912

    Last Modified: 12 Apr 2025

    The get_icu_disp_value_src_php function in ext/intl/locale/locale_methods.c in PHP before 5.3.29, 5.4.x before 5.4.30, and 5.5.x before 5.5.14 does not properly restrict calls to the ICU uresbund.cpp component, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a locale_get_display_name call with a long first argument.

    Published: 8 Jun 2014
    2.6
    Low

    CVE-2014-3966

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Special:PasswordReset in MediaWiki before 1.19.16, 1.21.x before 1.21.10, and 1.22.x before 1.22.7, when wgRawHtml is enabled, allows remote attackers to inject arbitrary web script or HTML via an invalid username.

    Published: 6 Jun 2014
    10
    Critical

    CVE-2014-3984

    Last Modified: 12 Apr 2025

    Multiple unspecified vulnerabilities in Libav before 0.8.12 allow remote attackers to have unknown impact and vectors.

    Published: 6 Jun 2014
    5.8
    Medium

    CVE-2012-5583

    Last Modified: 12 Apr 2025

    phpCAS before 1.3.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.

    Published: 6 Jun 2014
    5
    Medium

    CVE-2013-4724

    Last Modified: 12 Apr 2025

    DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, does not include the HTTPOnly flag in a Set-Cookie header for an unspecified cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.

    Published: 6 Jun 2014
    5
    Medium

    CVE-2013-4725

    Last Modified: 12 Apr 2025

    DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, does not set the secure flag for an unspecified cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.

    Published: 6 Jun 2014
    5
    Medium

    CVE-2013-4727

    Last Modified: 12 Apr 2025

    DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, allows remote attackers to obtain sensitive information via a request to Admin/top.aspx.

    Published: 6 Jun 2014
    5
    Medium

    CVE-2013-4728

    Last Modified: 12 Apr 2025

    DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions, allows remote attackers to obtain sensitive information via a .. (dot dot) in the "l" parameter, which reveals the installation path in an error message.

    Published: 6 Jun 2014