Skip to main content

Security Bulletin

Filter by:

RISK: Medium Risk

Medium Risk

Cisco Unified Communications Domain Manager Multiple Vulnerabilities

Multiple vulnerabilities have been identified in Cisco Unified Communications Domain Manager. A remote user can gain root access on the target system, and access and modify settings. A remote authenticated user can obtain elevated privileges on the target system. A remote authenticated user can submit a...
Last Update Date: 7 Jul 2014 Release Date: 3 Jul 2014 5972 Views

RISK: Medium Risk

Medium Risk

RealPlayer MP4 File Atom Handling Buffer Overflow Vulnerability

A vulnerability has been identified in RealPlayer, which can be exploited by malicious people to compromise a user's system.   The vulnerability is caused due to an error when handling atoms in MP4 files and can be exploited to cause a buffer overflow via an MP4 file...
Last Update Date: 4 Jul 2014 14:13 Release Date: 4 Jul 2014 6072 Views

RISK: High Risk

High Risk

Apple Products Multiple Vulnerabilities

A vulnerability was identified in Apple TV. A local user can make purchases without authorization.Multiple vulnerabilities were identified in Apple iOS. A remote user can cause arbitrary code to be executed on the target user's system. A local application can obtain elevated privileges...
Last Update Date: 2 Jul 2014 14:53 Release Date: 2 Jul 2014 6838 Views

RISK: High Risk

High Risk

eClass SQL Injection Vulnerability

A SQL injection vulnerability has been identified in eClass IP (for secondary schools) and eClass Junior (for primary schools), which can be exploited to extract information from the database.
Last Update Date: 30 Jun 2014 10:44 Release Date: 30 Jun 2014 6659 Views

RISK: Medium Risk

Medium Risk

JBoss Multiple Products Remote Code Execution Vulnerability

A vulnerability was identified in Red Hat JBoss Web Framework Kit, Enterprise Application Platform and Enterprise Web Platform. The vulnerability is caused due to an error related to Seam logging, which can be exploited to execute arbitrary code via specially crafted authentication headers.
Last Update Date: 27 Jun 2014 11:52 Release Date: 27 Jun 2014 6149 Views

RISK: Medium Risk

Medium Risk

JBoss Enterprise Application Platform Multiple vulnerabilities

Multiple vulnerabilities have been identified in JBoss Enterprise Application Platform, which could be exploited by remote attackers to cause denial of service and gain access to confidential data.
Last Update Date: 27 Jun 2014 11:52 Release Date: 27 Jun 2014 5871 Views

RISK: Medium Risk

Medium Risk

Cisco IOS IPsec Processing Denial of Service Vulnerability

A vulnerability has been identified in Cisco IOS, which can be exploited by malicious users to cause a DoS (Denial of Service). The vulnerability is caused due to an error when processing IPsec packets and can be exploited to cause a reload of the device.
Last Update Date: 27 Jun 2014 11:52 Release Date: 27 Jun 2014 5992 Views

RISK: Medium Risk

Medium Risk

GnuPG do_uncompress() Compressed Data Processing Flaw

A vulnerability has been identified in GnuPG. A remote user can cause denial of service conditions.   A remote user can send specially crafted compressed data packets to trigger a flaw in do_uncompress() and cause the target process to enter an infinite loop.
Last Update Date: 27 Jun 2014 Release Date: 26 Jun 2014 5780 Views

RISK: Medium Risk

Medium Risk

Cisco WebEx Meeting Server Information Disclosure Vulnerability

A vulnerability was identified in Cisco WebEx Meeting Server, which could be exploited by an authenticated, remote attacker to access sensitive information. An attacker could send a crafted URL request to a vulnerable device to disclose the meeting information.
Last Update Date: 26 Jun 2014 Release Date: 24 Jun 2014 6125 Views

RISK: Medium Risk

Medium Risk

Samba Denial of Service Vulnerabilities

Multiple vulnerabilities have been identified in Samba, which can be exploited by malicious users to cause a DoS (Denial of Service).An error in the "sys_recvfrom()" function (source3/lib/system.c) can be exploited to trigger an infinite loop within...
Last Update Date: 26 Jun 2014 Release Date: 24 Jun 2014 6134 Views