Latest CVE Feed
-
10.0
HIGHCVE-2014-8457
Heap-based buffer overflow in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-8460 and CVE-2014-9159.... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-8456
Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8445, CVE-... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-8455
Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-8454 and CVE-2014-9165.... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-8454
Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-8455 and CVE-2014-9165.... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
5.0
MEDIUMCVE-2014-8453
Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow remote attackers to bypass the Same Origin Policy via unspecified vectors.... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
5.0
MEDIUMCVE-2014-8452
Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE)... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
5.0
MEDIUMCVE-2014-8451
An unspecified JavaScript API in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to obtain sensitive information via unknown vectors, a different vulnerability than CVE-2014-8448.... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-8449
Integer overflow in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors.... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
5.0
MEDIUMCVE-2014-8448
An unspecified JavaScript API in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to obtain sensitive information via unknown vectors, a different vulnerability than CVE-2014-8451.... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-8447
Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8445, CVE-... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-8446
Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8445, CVE-... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-8445
Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2014-8446, CVE-... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2014-8443
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.259 and 14.x through 16.x before 16.0.0.235 on Windows and OS X and before 11.2.202.425 on Linux allows attackers to execute arbitrary code via unspecified vectors.... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2014-8010
The web framework in Cisco Unified Communications Domain Manager 8 allows remote authenticated administrators to execute arbitrary OS commands via crafted values, aka Bug ID CSCuq50205.... Read more
Affected Products : unified_communications_domain_manager- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
5.0
MEDIUMCVE-2014-8009
The Management subsystem in Cisco Unified Computing System 2.1(3f) and earlier allows remote attackers to obtain sensitive information by reading log files, aka Bug ID CSCur99239.... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
7.2
HIGHCVE-2014-8003
Cisco Integrated Management Controller in Cisco Unified Computing System 2.2(2c)A and earlier allows local users to obtain shell access via a crafted map-nfs command, aka Bug ID CSCup05998.... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
8.5
HIGHCVE-2014-7879
HP HP-UX B.11.11, B.11.23, and B.11.31, when the PAM configuration includes libpam_updbe, allows remote authenticated users to bypass authentication, and consequently execute arbitrary code, via unspecified vectors.... Read more
Affected Products : hp-ux- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2014-4475
WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerabilit... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2014-4474
WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerabilit... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025
-
6.8
MEDIUMCVE-2014-4473
WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerabilit... Read more
- Published: Dec. 10, 2014
- Modified: Apr. 12, 2025