Show filters
250 Total Results
Displaying 171-180 of 250
Sort by:
Attacker Value
Unknown

CVE-2015-4059

Disclosure Date: May 29, 2015 (last updated October 05, 2023)
Heap-based buffer overflow in the License Server (LicenseServer.exe) in Wavelink Terminal Emulation (TE) allows remote attackers to execute arbitrary code via a large HTTP header.
0
Attacker Value
Unknown

CVE-2013-2810

Disclosure Date: December 08, 2014 (last updated October 05, 2023)
Emerson Process Management ROC800 RTU with software 3.50 and earlier, DL8000 RTU with software 2.30 and earlier, and ROC800L RTU with software 1.20 and earlier allows remote attackers to execute arbitrary commands via a TCP replay attack.
0
Attacker Value
Unknown

CVE-2014-8997

Disclosure Date: November 20, 2014 (last updated October 05, 2023)
Unrestricted file upload vulnerability in the Photo functionality in DigitalVidhya Digi Online Examination System 2.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in assets/uploads/images/.
0
Attacker Value
Unknown

CVE-2014-7359

Disclosure Date: October 19, 2014 (last updated October 05, 2023)
The MAPA DA MINA (aka com.wMAPADAMINA) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown

CVE-2014-2941

Disclosure Date: August 15, 2014 (last updated November 08, 2023)
Cobham Sailor 6000 satellite terminals have hardcoded Tbus 2 credentials, which allows remote attackers to obtain access via a TBUS2 command. NOTE: the vendor reportedly states "there is no possibility to exploit another user's credentials.
0
Attacker Value
Unknown

CVE-2014-0328

Disclosure Date: August 15, 2014 (last updated October 05, 2023)
The thraneLINK protocol implementation on Cobham devices does not verify firmware signatures, which allows attackers to execute arbitrary code by leveraging physical access or terminal access to send an SNMP request and a TFTP response.
0
Attacker Value
Unknown

CVE-2014-2370

Disclosure Date: July 24, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to inject arbitrary web script or HTML via crafted data.
0
Attacker Value
Unknown

CVE-2014-2369

Disclosure Date: July 24, 2014 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in the web application on Omron NS5, NS8, NS10, NS12, and NS15 HMI terminals 8.1xx through 8.68x allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors.
0
Attacker Value
Unknown

CVE-2012-0273

Disclosure Date: June 20, 2014 (last updated October 05, 2023)
Multiple stack-based buffer overflows in MinaliC 2.0.0 allow remote attackers to execute arbitrary code via a (1) session_id cookie in a request to the get_cookie_value function in response.c, (2) directory name in a request to the add_default_file function in response.c, or (3) file name in a request to the retrieve_physical_file_name_or_brows function in response.c.
0
Attacker Value
Unknown

CVE-2011-2198

Disclosure Date: May 21, 2014 (last updated October 05, 2023)
The "insert-blank-characters" capability in caps.c in gnome-terminal (vte) before 0.28.1 allows remote authenticated users to cause a denial of service (CPU and memory consumption and crash) via a crafted file, as demonstrated by a file containing the string "\033[100000000000000000@".
0