9
    Critical

    CVE-2014-7288

    Last Modified: 3 Feb 2015

    Symantec PGP Universal Server and Encryption Management Server before 3.3.2 MP7 allow remote authenticated administrators to execute arbitrary shell commands via a crafted command line in a database-backup restore action.

    Source:Paul Craig
    Published:1 Feb 2015
    7.2
    High

    CVE-2014-7286

    Last Modified: 3 Feb 2015

    Buffer overflow in AClient in Symantec Deployment Solution 6.9 and earlier on Windows XP and Server 2003 allows local users to gain privileges via unspecified vectors.

    Source:Parvez Anwar
    Published:22 Dec 2014
    6.5
    Medium

    CVE-2014-7285

    Last Modified: 4 Mar 2015

    The management console on the Symantec Web Gateway (SWG) appliance before 5.2.2 allows remote authenticated users to execute arbitrary OS commands by injecting command strings into unspecified PHP scripts.

    Source:Metasploit
    Published:17 Dec 2014
    6.8
    Medium

    CVE-2014-7281

    Last Modified: 14 Oct 2014

    Cross-site request forgery (CSRF) vulnerability in Shenzhen Tenda Technology Tenda A32 Router with firmware 5.07.53_CN allows remote attackers to hijack the authentication of administrators for requests that reboot the device via a request to goform/SysToolReboot.

    Source:zixian
    Published:23 Oct 2014
    4.3
    Medium

    CVE-2014-7280

    Last Modified: 9 Oct 2014

    Cross-site scripting (XSS) vulnerability in the Web UI before 2.3.4 Build #85 for Tenable Nessus 5.x allows remote web servers to inject arbitrary web script or HTML via the server header.

    Source:Frank Lycops
    Published:21 Oct 2014
    9.8
    Critical

    CVE-2014-7279

    Last Modified: 29 Oct 2014

    The Konke Smart Plug K does not require authentication for TELNET sessions, which allows remote attackers to obtain "equipment management authority" via TCP traffic to port 23.

    Source:gamehacker
    Published:23 Mar 2017
    9.1
    Critical

    CVE-2014-7236

    Last Modified: 19 Mar 2015

    Eval injection vulnerability in lib/TWiki/Plugins.pm in TWiki before 6.0.1 allows remote attackers to execute arbitrary Perl code via the debugenableplugins parameter to do/view/Main/WebHome.

    Source:Metasploit
    Published:17 Feb 2020
    10
    Critical

    CVE-2014-7235

    Last Modified: 10 Jan 2017

    htdocs_ari/includes/login.php in the ARI Framework module/Asterisk Recording Interface (ARI) in FreePBX before 2.9.0.9, 2.10.x, and 2.11 before 2.11.1.5 allows remote attackers to execute arbitrary code via the ari_auth cookie, related to the PHP unserialize function, as exploited in the wild in September 2014.

    Source:inj3ctor3
    Published:7 Oct 2014
    7.5
    High

    CVE-2014-7228

    Last Modified: 21 Oct 2014

    Akeeba Restore (restore.php), as used in Joomla! 2.5.4 through 2.5.25, 3.x through 3.2.5, and 3.3.0 through 3.3.4; Akeeba Backup for Joomla! Professional 3.0.0 through 4.0.2; Backup Professional for WordPress 1.0.b1 through 1.1.3; Solo 1.0.b1 through 1.1.2; Admin Tools Core and Professional 2.0.0 through 2.4.4; and CMS Update 1.0.a1 through 1.0.1, when performing a backup or update for an archive, does not delete parameters from $_GET and $_POST when it is cleansing $_REQUEST, but later accesses $_GET and $_POST using the getQueryParam function, which allows remote attackers to bypass encryption and execute arbitrary code via a command message that extracts a crafted archive.

    Source:Metasploit
    Published:3 Nov 2014
    Low

    CVE-2014-7227

    Last Modified: 25 Sept 2014

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, CVE-2014-7187. Reason: This candidate is a duplicate of CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, and CVE-2014-7187. Notes: All CVE users should reference CVE-2014-6271, CVE-2014-6277, CVE-2014-6278, CVE-2014-7169, CVE-2014-7186, and CVE-2014-7187 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:Shaun Colley
    Published:3 Oct 2014
    7.5
    High

    CVE-2014-7226

    Last Modified: 2 Oct 2014

    The file comment feature in Rejetto HTTP File Server (hfs) 2.3c and earlier allows remote attackers to execute arbitrary code by uploading a file with certain invalid UTF-8 byte sequences that are interpreted as executable macro symbols.

    Source:Daniele Linguaglossa
    Published:10 Oct 2014
    6.5
    Medium

    CVE-2014-7222

    Last Modified: 10 Oct 2016

    Buffer overflow in TeamSpeak Client 3.0.14 and earlier allows remote authenticated users to cause a denial of service (application crash) by connecting to a channel with a different client instance, and placing crafted data in the Chat/Server tab with two \\ (backslash) characters, a digit, a \ (backslash) character, and "z" in a series of nested img BBCODE tags.

    Source:SpyEye & Christian Galeon
    Published:8 Jan 2018
    6.5
    Medium

    CVE-2014-7221

    Last Modified: 10 Oct 2016

    TeamSpeak Client 3.0.14 and earlier allows remote authenticated users to cause a denial of service (buffer overflow and application crash) by connecting to a channel with a different client instance, and placing crafted data in the Chat/Server tab containing [img]//http:// substrings.

    Source:SpyEye & Christian Galeon
    Published:8 Jan 2018
    7.2
    High

    CVE-2014-7208

    Last Modified: 23 Dec 2014

    GParted before 0.15.0 allows local users to execute arbitrary commands with root privileges via shell metacharacters in a crafted filesystem label.

    Source:SEC Consult
    Published:19 Dec 2014
    10
    Critical

    CVE-2014-7205

    Last Modified: 2 Nov 2016

    Eval injection vulnerability in the internals.batch function in lib/batch.js in the bassmaster plugin before 1.5.2 for the hapi server framework for Node.js allows remote attackers to execute arbitrary Javascript code via unspecified vectors.

    Source:Metasploit
    Published:8 Oct 2014
    7.5
    High

    CVE-2014-7201

    Last Modified: 13 Oct 2017

    Multiple SQL injection vulnerabilities in the search function in pi1/class.tx_dmmjobcontrol_pi1.php in the JobControl (dmmjobcontrol) extension 2.14.0 and earlier for TYPO3 allow remote attackers to execute arbitrary SQL commands via the (1) education, (2) region, or (3) sector fields, as demonstrated by the tx_dmmjobcontrol_pi1[search][sector][] parameter to jobs/.

    Source:Adler Freiheit
    Published:10 Oct 2014
    4.3
    Medium

    CVE-2014-7200

    Last Modified: 13 Oct 2017

    Cross-site scripting (XSS) vulnerability in pi1/class.tx_dmmjobcontrol_pi1.php in the JobControl (dmmjobcontrol) extension 2.14.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via the tx_dmmjobcontrol_pi1[search][keyword] parameter to jobs/.

    Source:Adler Freiheit
    Published:10 Oct 2014
    Low

    CVE-2014-7196

    Last Modified: 22 Jan 2018

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-7169. Reason: This candidate is a duplicate of CVE-2014-7169. A typo caused the wrong ID to be used. Notes: All CVE users should reference CVE-2014-7169 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:Metasploit
    Published:15 Feb 2015
    10
    Critical

    CVE-2014-7192

    Last Modified: 16 Jul 2014

    Eval injection vulnerability in index.js in the syntax-error package before 1.1.1 for Node.js 0.10.x, as used in IBM Rational Application Developer and other products, allows remote attackers to execute arbitrary code via a crafted file.

    Source:Cal Leeming
    Published:11 Dec 2014
    6.8
    Medium

    CVE-2014-7190

    Last Modified: 29 Sept 2014

    Multiple cross-site request forgery (CSRF) vulnerabilities in Openfiler 2.99.1 allow remote attackers to hijack the authentication of administrators for requests that (1) shutdown or (2) reboot the server via a request to admin/system_shutdown.html.

    Source:Dolev Farhi
    Published:30 Sept 2014
    10
    Critical

    CVE-2014-7187

    Last Modified: 15 Nov 2017

    Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via deeply nested for loops, aka the "word_lineno" issue.

    Source:fdiskyou
    Published:26 Sept 2014
    10
    Critical

    CVE-2014-7186

    Last Modified: 15 Nov 2017

    The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted use of here documents, aka the "redir_stack" issue.

    Source:fdiskyou
    Published:25 Sept 2014
    9.3
    Critical

    CVE-2014-7178

    Last Modified: 5 May 2015

    Enalean Tuleap before 7.5.99.6 allows remote attackers to execute arbitrary commands via the User-Agent header, which is provided to the passthru PHP function.

    Source:Portcullis
    Published:28 Nov 2014
    4
    Medium

    CVE-2014-7177

    Last Modified: 2 Nov 2017

    XML External Entity vulnerability in Enalean Tuleap 7.2 and earlier allows remote authenticated users to read arbitrary files via a crafted xml document in a create action to plugins/tracker/.

    Source:Portcullis
    Published:31 Oct 2014
    6.5
    Medium

    CVE-2014-7176

    Last Modified: 2 Nov 2017

    SQL injection vulnerability in Enalean Tuleap before 7.5.99.4 allows remote authenticated users to execute arbitrary SQL commands via the lobal_txt parameter to plugins/docman.

    Source:Portcullis
    Published:4 Nov 2014
    9.8
    Critical

    CVE-2014-7169

    Last Modified: 25 Sept 2014

    GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271.

    Source:Shaun Colley
    Published:24 Sept 2014
    6.5
    Medium

    CVE-2014-7153

    Last Modified: 2 Sept 2014

    SQL injection vulnerability in the editgallery function in admin/gallery_func.php in the Huge-IT Image Gallery plugin 1.0.1 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the removeslide parameter to wp-admin/admin.php.

    Source:Claudio Viviani
    Published:22 Sept 2014
    7.5
    High

    CVE-2014-7146

    Last Modified: 8 Jun 2018

    The XmlImportExport plugin in MantisBT 1.2.17 and earlier allows remote attackers to execute arbitrary PHP code via a crafted (1) description field or (2) issuelink attribute in an XML file, which is not properly handled when executing the preg_replace function with the e modifier.

    Source:Metasploit
    Published:18 Nov 2014
    7.5
    High

    CVE-2014-7140

    Last Modified: 6 Nov 2014

    Unspecified vulnerability in the management interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.x before 10.1-129.11 and 10.5 before 10.5-50.10 allows remote attackers to execute arbitrary code via unknown vectors.

    Source:Metasploit
    Published:21 Oct 2014
    5.4
    Medium

    CVE-2014-6721

    Last Modified: 12 Apr 2025

    The Pharmaguideline (aka com.pharmaguideline) application 1.2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

    Published:26 Sept 2014
    4.3
    Medium

    CVE-2014-6619

    Last Modified: 24 Sept 2014

    Multiple cross-site scripting (XSS) vulnerabilities in register-exec.php in Restaurant Script (PizzaInn_Project) 1.0.0 allow remote attackers to inject arbitrary web script or HTML via the (1) fname, (2) lname, or (3) login parameter.

    Source:Kenneth F. Belva
    Published:30 Sept 2014
    7.5
    High

    CVE-2014-6607

    Last Modified: 24 Sept 2014

    M/Monit 3.3.2 and earlier does not verify the original password before changing passwords, which allows remote attackers to change the password of other users and gain privileges via the fullname and password parameters, a different vulnerability than CVE-2014-6409.

    Source:Dolev Farhi
    Published:6 Oct 2014
    7.6
    High

    CVE-2014-6598

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the Oracle Communications Diameter Signaling Router component in Oracle Communications Applications 3.x, 4.x, and 5.0 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Signaling - DPI.

    Published:21 Jan 2015
    4
    Medium

    CVE-2014-6593

    Last Modified: 5 Nov 2015

    Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit 27.8.4 and 28.3.4 allows remote attackers to affect confidentiality and integrity via vectors related to JSSE.

    Source:Ramon de C Valle
    Published:20 Jan 2015
    6.8
    Medium

    CVE-2014-6577

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the XML Developer's Kit for C component in Oracle Database Server 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via unknown vectors. NOTE: the previous information is from the January 2015 CPU. Oracle has not commented on the original researcher's claim that this is an XML external entity (XXE) vulnerability in the XML parser, which allows attackers to conduct internal port scanning, perform SSRF attacks, or cause a denial of service via a crafted (1) http: or (2) ftp: URI.

    Published:21 Jan 2015
    7.5
    High

    CVE-2014-6446

    Last Modified: 9 Oct 2014

    The Infusionsoft Gravity Forms plugin 1.5.3 through 1.5.10 for WordPress does not properly restrict access, which allows remote attackers to upload arbitrary files and execute arbitrary PHP code via a request to utilities/code_generator.php.

    Source:Metasploit
    Published:26 Sept 2014
    9.8
    Critical

    CVE-2014-6437

    Last Modified: 15 Nov 2017

    Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices allow remote attackers to obtain sensitive device configuration information via vectors involving the ROM file.

    Source:Eric Fajardo
    Published:12 Jan 2018
    9.8
    Critical

    CVE-2014-6436

    Last Modified: 25 Jan 2016

    Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices improperly manage sessions, which allows remote attackers to bypass authentication in opportunistic circumstances and execute arbitrary commands with administrator privileges by leveraging an existing web portal login.

    Source:Eric Fajardo
    Published:12 Jan 2018
    7.5
    High

    CVE-2014-6435

    Last Modified: 25 Jan 2016

    cgi-bin/AZ_Retrain.cgi in Aztech ADSL DSL5018EN (1T1R), DSL705E, and DSL705EU devices does not check for authentication, which allows remote attackers to cause a denial of service (WAN connectivity reset) via a direct request.

    Source:Federick Joe P Fajardo
    Published:12 Jan 2018
    6.1
    Medium

    CVE-2014-6420

    Last Modified: 20 Sept 2014

    Cross-site scripting (XSS) vulnerability in Livefyre LiveComments 3.0 allows remote attackers to inject arbitrary web script or HTML via the name of an uploaded picture.

    Source:Brij Kishore Mishra
    Published:27 Dec 2019
    6.8
    Medium

    CVE-2014-6409

    Last Modified: 24 Sept 2014

    Cross-site request forgery (CSRF) vulnerability in M/Monit 3.3.2 and earlier allows remote attackers to hijack the authentication of administrators for requests that change user passwords via the fullname and password parameters to /admin/users/update.

    Source:Dolev Farhi
    Published:6 Oct 2014
    7.5
    High

    CVE-2014-6395

    Last Modified: 19 Dec 2014

    Heap-based buffer overflow in the dissector_postgresql function in dissectors/ec_postgresql.c in Ettercap before 0.8.1 allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted password length value that is inconsistent with the actual length of the password.

    Source:Nick Sampanis
    Published:19 Dec 2014
    7.5
    High

    CVE-2014-6389

    Last Modified: 10 Oct 2016

    backup.php in PHPCompta/NOALYSS before 6.7.2 allows remote attackers to execute arbitrary commands via shell metacharacters in the d parameter.

    Source:Portcullis
    Published:6 Oct 2014
    9.3
    Critical

    CVE-2014-6363

    Last Modified: 10 May 2017

    vbscript.dll in Microsoft VBScript 5.6 through 5.8, as used with Internet Explorer 6 through 11 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability."

    Source:Skylined
    Published:11 Dec 2014
    7.8
    High

    CVE-2014-6352

    Last Modified: 12 Nov 2014

    Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow remote attackers to execute arbitrary code via a crafted OLE object, as exploited in the wild in October 2014 with a crafted PowerPoint document.

    Source:Abhishek Lyall
    Published:22 Oct 2014
    8.8
    High

    CVE-2014-6332

    Last Modified: 10 Oct 2016

    OleAut32.dll in OLE in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows remote attackers to execute arbitrary code via a crafted web site, as demonstrated by an array-redimensioning attempt that triggers improper handling of a size value in the SafeArrayDimen function, aka "Windows OLE Automation Array Remote Code Execution Vulnerability."

    Source:Naser Farhadi
    Published:11 Nov 2014
    8.8
    High

    CVE-2014-6324

    Last Modified: 10 Oct 2016

    The Kerberos Key Distribution Center (KDC) in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 allows remote authenticated domain users to obtain domain administrator privileges via a forged signature in a ticket, as exploited in the wild in November 2014, aka "Kerberos Checksum Vulnerability."

    Source:Sylvain Monne
    Published:18 Nov 2014
    4.3
    Medium

    CVE-2014-6312

    Last Modified: 25 Sept 2014

    Cross-site request forgery (CSRF) vulnerability in the Login Widget With Shortcode (login-sidebar-widget) plugin before 3.2.1 for WordPress allows remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the custom_style_afo parameter on the login_widget_afo page to wp-admin/options-general.php.

    Source:dxw
    Published:15 Oct 2014
    5
    Medium

    CVE-2014-6308

    Last Modified: 24 Oct 2016

    Directory traversal vulnerability in OSClass before 3.4.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter in a render action to oc-admin/index.php.

    Source:Netsparker
    Published:20 Oct 2014
    9.8
    Critical

    CVE-2014-6287

    Last Modified: 12 Sept 2016

    The findMacroMarker function in parserLib.pas in Rejetto HTTP File Server (aks HFS or HttpFileServer) 2.3x before 2.3c allows remote attackers to execute arbitrary programs via a %00 sequence in a search action.

    Source:Metasploit
    Published:7 Oct 2014