A vulnerability classified as very critical was found in Adobe Flash Player 11.2.202.491/18.0.0.209. This vulnerability affects unknown code. The manipulation leads to use after free.
This vulnerability was named CVE-2015-5540. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Microsoft Windows Server 2003 SP2 and classified as critical. This issue affects some unknown processing of the component TCP/IP Stack. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2014-4076. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability, which was classified as critical, has been found in Microsoft Windows 7/Server 2003/Server 2008/Vista. This issue affects some unknown processing of the component Input Method Editor. The manipulation leads to improper access controls.
The identification of this vulnerability is CVE-2014-4077. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Windows up to Vista. It has been declared as critical. This vulnerability affects unknown code in the library packager.dll of the component OLE Object Packager. The manipulation leads to improper input validation.
This vulnerability was named CVE-2014-4114. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Windows Server 2003/Server 2008/Vista. It has been classified as problematic. Affected is an unknown function of the component FAT32 Partition Driver. The manipulation leads to improper resource management.
This vulnerability is traded as CVE-2014-4115. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical has been found in Microsoft IIS 8.0/8.5. This affects an unknown part of the component IP/Domain Restriction. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2014-4078. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Office 2007/2010/2011 and classified as critical. This issue affects some unknown processing of the component Object Handler. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2014-4117. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft SharePoint 2010. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2014-4116. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical has been found in Microsoft Windows up to Vista. Affected is an unknown function. The manipulation leads to code injection.
This vulnerability is traded as CVE-2014-4118. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical was found in Microsoft .NET Framework up to 4.5.2. Affected by this vulnerability is an unknown functionality of the component Object Handler. The manipulation leads to improper input validation.
This vulnerability is known as CVE-2014-4149. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability has been found in ntop and classified as problematic. This vulnerability affects unknown code. The manipulation of the argument title leads to cross site scripting.
This vulnerability was named CVE-2014-4165. The attack can be initiated remotely. There is no exploit available.
A vulnerability was found in Kryo iodine up to 0.6.0. It has been classified as problematic. This affects an unknown part of the file iodined.c. The manipulation leads to improper authentication.
This vulnerability is uniquely identified as CVE-2014-4168. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Jasig Java CAS Client, .NET CAS Client and phpCAS. It has been classified as critical. This affects an unknown part of the file validation/AbstractUrlBasedTicketValidator.java of the component Ticket Validation Handler. The manipulation of the argument URL leads to injection.
This vulnerability is uniquely identified as CVE-2014-4172. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.