7.5
    High

    CVE-2014-4334

    Last Modified: 10 Oct 2016

    Stack-based buffer overflow in Ubisoft Rayman Legends before 1.3.140380 allows remote attackers to execute arbitrary code via a long string in the "second connection" to TCP port 1001.

    Source:LiquidWorm
    Published:19 Jun 2014
    7.5
    High

    CVE-2014-4323

    Last Modified: 12 Apr 2025

    The mdp_lut_hw_update function in drivers/video/msm/mdp.c in the MDP display driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not validate certain start and length values within an ioctl call, which allows attackers to gain privileges via a crafted application.

    Published:12 Dec 2014
    7.2
    High

    CVE-2014-4322

    Last Modified: 18 Jan 2015

    drivers/misc/qseecom.c in the QSEECOM driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not validate certain offset, length, and base values within an ioctl call, which allows attackers to gain privileges or cause a denial of service (memory corruption) via a crafted application.

    Source:retme
    Published:24 Dec 2014
    Unknown

    CVE-2014-4321

    https://github.com/android-rooting-tools/libmsm_vfe_read_exploit

    4.3
    Medium

    CVE-2014-4312

    Last Modified: 2 Oct 2014

    Multiple cross-site scripting (XSS) vulnerabilities in Epicor Enterprise 7.4 before FS74SP6_HotfixTL054181 allow remote attackers to inject arbitrary web script or HTML via the (1) Notes section to Order details; (2) Description section to "Order to consume"; (3) Favorites name section to Favorites; (4) FiltKeyword parameter to Procurement/EKPHTML/search_item_bt.asp; (5) Act parameter to Procurement/EKPHTML/EnterpriseManager/Budget/ImportBudget_fr.asp; (6) hdnOpener or (7) hdnApproverFieldName parameter to Procurement/EKPHTML/EnterpriseManager/UserSearchDlg.asp; or (8) INTEGRATED parameter to Procurement/EKPHTML/EnterpriseManager/Codes.asp.

    Source:Fara Rustein
    Published:10 Oct 2014
    5
    Medium

    CVE-2014-4311

    Last Modified: 2 Oct 2014

    Epicor Enterprise 7.4 before FS74SP6_HotfixTL054181 allows attackers to obtain the (1) Database Connection and (2) E-mail Connection passwords by reading HTML source code of the database connection and email settings page.

    Source:Fara Rustein
    Published:4 Nov 2014
    7.5
    High

    CVE-2014-4307

    Last Modified: 9 Jun 2014

    SQL injection vulnerability in categories-x.php in WebTitan before 4.04 allows remote attackers to execute arbitrary SQL commands via the sortkey parameter.

    Source:SEC Consult
    Published:18 Jun 2014
    5
    Medium

    CVE-2014-4306

    Last Modified: 9 Jun 2014

    Directory traversal vulnerability in logs-x.php in WebTitan before 4.04 allows remote attackers to read arbitrary files via a .. (dot dot) in the logfile parameter in a download action.

    Source:SEC Consult
    Published:18 Jun 2014
    5
    Medium

    CVE-2014-4210

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.0.2.0 and 10.3.6.0 allows remote attackers to affect confidentiality via vectors related to WLS - Web Services.

    Published:17 Jul 2014
    7.5
    High

    CVE-2014-4194

    Last Modified: 8 Dec 2016

    SQL injection vulnerability in zero_transact_article.php in ZeroCMS 1.0 allows remote attackers to execute arbitrary SQL commands via the article_id parameter in a Submit Comment action.

    Source:Filippos Mastrogiannis
    Published:9 Jul 2014
    9.8
    Critical

    CVE-2014-4170

    Last Modified: 2 Aug 2014

    A Privilege Escalation Vulnerability exists in Free Reprintables ArticleFR 11.06.2014 due to insufficient access restrictions in the data.php script, which could let a remote malicious user obtain access or modify or delete database information.

    Source:High-Tech Bridge SA
    Published:13 Feb 2020
    4.3
    Medium

    CVE-2014-4166

    Last Modified: 12 Jun 2014

    Cross-site scripting (XSS) vulnerability in the song history in SHOUTcast DNAS 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the mp3 title field.

    Source:rob222
    Published:16 Jun 2014
    6.8
    Medium

    CVE-2014-4163

    Last Modified: 10 Jan 2016

    Multiple cross-site request forgery (CSRF) vulnerabilities in the Featured Comments plugin 1.2.1 for WordPress allow remote attackers to hijack the authentication of administrators for requests that change the (1) buried or (2) featured status of a comment via a request to wp-admin/admin-ajax.php.

    Source:Tom Adams
    Published:16 Jun 2014
    6.8
    Medium

    CVE-2014-4162

    Last Modified: 27 May 2014

    Multiple cross-site request forgery (CSRF) vulnerabilities in the Zyxel P-660HW-T1 (v3) wireless router allow remote attackers to hijack the authentication of administrators for requests that change the (1) wifi password or (2) SSID via a request to Forms/WLAN_General_1.

    Source:Mustafa ALTINKAYNAK
    Published:16 Jun 2014
    7.5
    High

    CVE-2014-4158

    Last Modified: 27 Oct 2016

    Stack-based buffer overflow in Kolibri 2.0 allows remote attackers to execute arbitrary code via a long URI in a GET request.

    Source:Revin Hadi Saputra
    Published:13 Jun 2014
    6.8
    Medium

    CVE-2014-4155

    Last Modified: 18 Jun 2014

    Cross-site request forgery (CSRF) vulnerability in the ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK allows remote attackers to hijack the authentication of administrators for requests that change the admin password via a request to Forms/tools_admin_1.

    Source:Osanda Malith Jayathissa
    Published:19 Jun 2014
    5
    Medium

    CVE-2014-4154

    Last Modified: 18 Jun 2014

    ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the PPPoE/PPPoA password via a direct request for basic/tc2wanfun.js.

    Source:Osanda Malith Jayathissa
    Published:16 Jul 2014
    7.8
    High

    CVE-2014-4153

    Last Modified: 13 Sept 2017

    The av-centerd SOAP service in AlienVault OSSIM before 4.8.0 allows remote attackers to read arbitrary files via a crafted get_file request.

    Source:James Fitts
    Published:18 Jun 2014
    9.3
    Critical

    CVE-2014-4141

    Last Modified: 2 Nov 2016

    Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."

    Source:Skylined
    Published:15 Oct 2014
    4.3
    Medium

    CVE-2014-4140

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 8 through 11 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Internet Explorer ASLR Bypass Vulnerability."

    Published:15 Oct 2014
    9.3
    Critical

    CVE-2014-4138

    Last Modified: 22 Dec 2016

    Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-4130 and CVE-2014-4132.

    Source:Skylined
    Published:15 Oct 2014
    7.8
    High

    CVE-2014-4114

    Last Modified: 12 Nov 2014

    Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allow remote attackers to execute arbitrary code via a crafted OLE object in an Office document, as exploited in the wild with a "Sandworm" attack in June through October 2014, aka "Windows OLE Remote Code Execution Vulnerability."

    Source:Abhishek Lyall
    Published:15 Oct 2014
    7.8
    High

    CVE-2014-4113

    Last Modified: 28 Oct 2014

    win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted application, as exploited in the wild in October 2014, aka "Win32k.sys Elevation of Privilege Vulnerability."

    Source:Metasploit
    Published:15 Oct 2014
    9.3
    Critical

    CVE-2014-4109

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-2799, CVE-2014-4059, CVE-2014-4065, CVE-2014-4079, CVE-2014-4081, CVE-2014-4083, CVE-2014-4085, CVE-2014-4088, CVE-2014-4090, CVE-2014-4094, CVE-2014-4097, CVE-2014-4100, CVE-2014-4103, CVE-2014-4104, CVE-2014-4105, CVE-2014-4106, CVE-2014-4107, CVE-2014-4108, CVE-2014-4110, and CVE-2014-4111.

    Published:10 Sept 2014
    7.2
    High

    CVE-2014-4076

    Last Modified: 29 Jan 2015

    Microsoft Windows Server 2003 SP2 allows local users to gain privileges via a crafted IOCTL call to (1) tcpip.sys or (2) tcpip6.sys, aka "TCP/IP Elevation of Privilege Vulnerability."

    Source:KoreLogic
    Published:11 Nov 2014
    4.3
    Medium

    CVE-2014-4035

    Last Modified: 12 Aug 2019

    Cross-site scripting (XSS) vulnerability in booking_details.php in Best Soft Inc. (BSI) Advance Hotel Booking System 2.0 allows remote attackers to inject arbitrary web script or HTML via the title parameter.

    Source:Angelo Ruwantha
    Published:11 Jun 2014
    7.5
    High

    CVE-2014-4034

    Last Modified: 9 Dec 2016

    SQL injection vulnerability in zero_view_article.php in ZeroCMS 1.0 allows remote attackers to execute arbitrary SQL commands via the article_id parameter.

    Source:LiquidWorm
    Published:11 Jun 2014
    4.3
    Medium

    CVE-2014-4033

    Last Modified: 9 Jun 2014

    Cross-site scripting (XSS) vulnerability in libraries/includes/personal/profile.php in Epignosis eFront 3.6.14.4 allows remote attackers to inject arbitrary web script or HTML via the surname parameter to student.php.

    Source:shyamkumar somana
    Published:11 Jun 2014
    6.8
    Medium

    CVE-2014-4030

    Last Modified: 10 Jan 2016

    Cross-site request forgery (CSRF) vulnerability in the JW Player plugin before 2.1.4 for WordPress allows remote attackers to hijack the authentication of administrators for requests that remove players via a delete action to wp-admin/admin.php.

    Source:Tom Adams
    Published:25 Jun 2014
    7.5
    High

    CVE-2014-4019

    Last Modified: 18 Jun 2014

    ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK stores sensitive information under the web root with insufficient access control, which allows remote attackers to read backup files via a direct request for rom-0.

    Source:Osanda Malith Jayathissa
    Published:20 Feb 2020
    7.8
    High

    CVE-2014-4018

    Last Modified: 18 Jun 2014

    The ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK has a default password of admin for the admin account, which makes it easier for remote attackers to obtain access via unspecified vectors.

    Source:Osanda Malith Jayathissa
    Published:16 Jul 2014
    6.2
    Medium

    CVE-2014-4014

    Last Modified: 19 Mar 2018

    The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows local users to bypass intended chmod restrictions by first creating a user namespace, as demonstrated by setting the setgid bit on a file with group ownership of root.

    Source:Vitaly Nikolenko
    Published:10 Jun 2014
    7.5
    High

    CVE-2014-3997

    Last Modified: 25 Jan 2018

    SQL injection vulnerability in the MetadataServlet servlet in ManageEngine Password Manager Pro (PMP) and Password Manager Pro Managed Service Providers (MSP) edition 5 through 7 build 7003, IT360 and IT360 Managed Service Providers (MSP) edition before 10.3.3 build 10330, and possibly other ManageEngine products, allows remote attackers or remote authenticated users to execute arbitrary SQL commands via the sv parameter to MetadataServlet.dat.

    Source:Pedro Ribeiro
    Published:5 Dec 2014
    7.5
    High

    CVE-2014-3996

    Last Modified: 25 Aug 2014

    SQL injection vulnerability in the LinkViewFetchServlet servlet in ManageEngine Desktop Central (DC) and Desktop Central Managed Service Providers (MSP) edition before 9 build 90043, Password Manager Pro (PMP) and Password Manager Pro Managed Service Providers (MSP) edition before 7 build 7003, IT360 and IT360 Managed Service Providers (MSP) edition before 10.3.3 build 10330, and possibly other ManageEngine products, allows remote attackers or remote authenticated users to execute arbitrary SQL commands via the sv parameter to LinkViewFetchServlet.dat.

    Source:Pedro Ribeiro
    Published:5 Dec 2014
    6.5
    Medium

    CVE-2014-3992

    Last Modified: 13 Jul 2018

    Multiple SQL injection vulnerabilities in Dolibarr ERP/CRM 3.5.3 allow remote authenticated users to execute arbitrary SQL commands via the (1) entity parameter in an update action to user/fiche.php or (2) sortorder parameter to user/group/index.php.

    Source:Deepak Rathore
    Published:11 Jul 2014
    4.3
    Medium

    CVE-2014-3991

    Last Modified: 13 Jul 2018

    Multiple cross-site scripting (XSS) vulnerabilities in Dolibarr ERP/CRM 3.5.3 allow remote attackers to inject arbitrary web script or HTML via the (1) dol_use_jmobile, (2) dol_optimize_smallscreen, (3) dol_no_mouse_hover, (4) dol_hide_topmenu, (5) dol_hide_leftmenu, (6) mainmenu, or (7) leftmenu parameter to index.php; the (8) dol_use_jmobile, (9) dol_optimize_smallscreen, (10) dol_no_mouse_hover, (11) dol_hide_topmenu, or (12) dol_hide_leftmenu parameter to user/index.php; the (13) dol_use_jmobile, (14) dol_optimize_smallscreen, (15) dol_no_mouse_hover, (16) dol_hide_topmenu, or (17) dol_hide_leftmenu parameter to user/logout.php; the (18) email, (19) firstname, (20) job, (21) lastname, or (22) login parameter in an update action in a "User Card" to user/fiche.php; or the (23) modulepart or (24) file parameter to viewimage.php.

    Source:Deepak Rathore
    Published:11 Jul 2014
    6.5
    Medium

    CVE-2014-3978

    Last Modified: 9 Aug 2014

    SQL injection vulnerability in TomatoCart 1.1.8.6.1 allows remote authenticated users to execute arbitrary SQL commands via the First Name and Last Name fields in a new address book contact.

    Source:Breaking.Technology
    Published:20 Oct 2014
    6.9
    Medium

    CVE-2014-3977

    Last Modified: 10 Oct 2016

    libodm.a in IBM AIX 6.1 and 7.1, and VIOS 2.2.x, allows local users to overwrite arbitrary files via a symlink attack on a temporary file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-2179.

    Source:Portcullis
    Published:8 Jun 2014
    5
    Medium

    CVE-2014-3976

    Last Modified: 4 Apr 2014

    Buffer overflow in A10 Networks Advanced Core Operating System (ACOS) before 2.7.0-p6 and 2.7.1 before 2.7.1-P1_55 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long session id in the URI to sys_reboot.html. NOTE: some of these details are obtained from third party information.

    Source:Francesco Perna
    Published:5 Jun 2014
    5
    Medium

    CVE-2014-3975

    Last Modified: 31 May 2014

    Absolute path traversal vulnerability in filemanager.php in AuraCMS 3.0 allows remote attackers to list a directory via a full pathname in the viewdir parameter.

    Source:Mustafa ALTINKAYNAK
    Published:5 Jun 2014
    4.3
    Medium

    CVE-2014-3974

    Last Modified: 31 May 2014

    Cross-site scripting (XSS) vulnerability in filemanager.php in AuraCMS 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the viewdir parameter.

    Source:Mustafa ALTINKAYNAK
    Published:5 Jun 2014
    7.5
    High

    CVE-2014-3962

    Last Modified: 29 May 2014

    Multiple SQL injection vulnerabilities in Videos Tube 1.0 allow remote attackers to execute arbitrary SQL commands via the url parameter to (1) videocat.php or (2) single.php.

    Source:Mustafa ALTINKAYNAK
    Published:4 Jun 2014
    7.5
    High

    CVE-2014-3961

    Last Modified: 2 Jun 2014

    SQL injection vulnerability in the Export CSV page in the Participants Database plugin before 1.5.4.9 for WordPress allows remote attackers to execute arbitrary SQL commands via the query parameter in an "output CSV" action to pdb-signup/.

    Source:Yarubo Research Team
    Published:4 Jun 2014
    10
    Critical

    CVE-2014-3936

    Last Modified: 14 Jul 2014

    Stack-based buffer overflow in the do_hnap function in www/my_cgi.cgi in D-Link DSP-W215 (Rev. A1) with firmware 1.01b06 and earlier, DIR-505 with firmware before 1.08b10, and DIR-505L with firmware 1.01 and earlier allows remote attackers to execute arbitrary code via a long Content-Length header in a GetDeviceSettings action in an HNAP request.

    Source:Metasploit
    Published:2 Jun 2014
    7.5
    High

    CVE-2014-3935

    Last Modified: 7 Jan 2016

    SQL injection vulnerability in glossaire-aff.php in the Glossaire module 1.0 for XOOPS allows remote attackers to execute arbitrary SQL commands via the lettre parameter.

    Source:AtT4CKxT3rR0r1ST
    Published:2 Jun 2014
    7.5
    High

    CVE-2014-3934

    Last Modified: 8 Jan 2016

    SQL injection vulnerability in the Submit_News module for PHP-Nuke 8.3 allows remote attackers to execute arbitrary SQL commands via the topics[] parameter to modules.php.

    Source:ali ahmady
    Published:2 Jun 2014
    10
    Critical

    CVE-2014-3914

    Last Modified: 18 Jun 2014

    Directory traversal vulnerability in the Admin Center for Tivoli Storage Manager (TSM) in Rocket ServerGraph 1.2 allows remote attackers to (1) create arbitrary files via a .. (dot dot) in the query parameter in a writeDataFile action to the fileRequestor servlet, execute arbitrary files via a .. (dot dot) in the query parameter in a (2) run or (3) runClear action to the fileRequestor servlet, (4) read arbitrary files via a readDataFile action to the fileRequestor servlet, (5) execute arbitrary code via a save_server_groups action to the userRequest servlet, or (6) delete arbitrary files via a del action in the fileRequestServlet servlet.

    Source:Metasploit
    Published:7 Aug 2014
    10
    Critical

    CVE-2014-3913

    Last Modified: 19 Jun 2014

    Stack-based buffer overflow in AccessServer32.exe in Ericom AccessNow Server allows remote attackers to execute arbitrary code via a request for a non-existent file.

    Source:Metasploit
    Published:4 Jun 2014
    8.3
    High

    CVE-2014-3888

    Last Modified: 8 Jul 2014

    Stack-based buffer overflow in BKFSim_vhfd.exe in Yokogawa CENTUM CS 1000, CENTUM CS 3000 R3.09.50 and earlier, CENTUM VP R5.03.20 and earlier, Exaopc R3.72.00 and earlier, B/M9000CS R5.05.01 and earlier, and B/M9000 VP R7.03.01 and earlier, when FCS/Test Function is enabled, allows remote attackers to execute arbitrary code via a crafted packet.

    Source:Metasploit
    Published:10 Jul 2014
    4.3
    Medium

    CVE-2014-3878

    Last Modified: 4 Jun 2014

    Multiple cross-site scripting (XSS) vulnerabilities in the web client interface in Ipswitch IMail Server 12.3 and 12.4, possibly before 12.4.1.15, allow remote attackers to inject arbitrary web script or HTML via (1) the Name field in an add new contact action in the Contacts section or unspecified vectors in (2) an Add Group task in the Contacts section, (3) an add new event action in the Calendar section, or (4) the Task section.

    Source:Peru
    Published:5 Jun 2014