CVE-2014-0380
published 2014-01-15CVE-2014-0380: Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.52 and 8.53 allows remote attackers to affect…
PriorityP420medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
1.36%
68.4th percentile
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.52 and 8.53 allows remote attackers to affect integrity via vectors related to MultiChannel Framework (MCF).
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | peoplesoft_products | — | — |
| oracle | peoplesoft_products | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-0508 flash-plugin: information disclosure flaw (APSB14-09)
bugzilla·2014-04-09·CVSS 5.0
CVE-2014-0508 [MEDIUM] CVE-2014-0508 flash-plugin: information disclosure flaw (APSB14-09)
CVE-2014-0508 flash-plugin: information disclosure flaw (APSB14-09)
Adobe has released Flash Player 11.2.202.350 for Linux to correct the following flaw:
These updates resolve a security bypass vulnerability that could lead to information disclosure (CVE-2014-0508).
External References:
http://helpx.adobe.com/security/products/flash-player/apsb14-09.html
Discussion:
This issue has been addressed in following products:
Supplementary for Red Hat Enterprise Linux 5
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2014:0380 https://rhn.redhat.com/errata/RHSA-2014-0380.html
Bugzilla
CVE-2014-0509 flash-plugin: cross-site scripting flaw (APSB14-09)
bugzilla·2014-04-09·CVSS 4.3
CVE-2014-0509 [MEDIUM] CVE-2014-0509 flash-plugin: cross-site scripting flaw (APSB14-09)
CVE-2014-0509 flash-plugin: cross-site scripting flaw (APSB14-09)
Adobe has released Flash Player 11.2.202.350 for Linux to correct the following flaw:
These updates resolve a cross-site-scripting vulnerability (CVE-2014-0509).
External References:
http://helpx.adobe.com/security/products/flash-player/apsb14-09.html
Discussion:
This issue has been addressed in following products:
Supplementary for Red Hat Enterprise Linux 5
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2014:0380 https://rhn.redhat.com/errata/RHSA-2014-0380.html
Bugzilla
CVE-2014-0506 CVE-2014-0507 flash-plugin: two flaws leading to code execution (APSB14-09)
bugzilla·2014-04-09·CVSS 10.0
CVE-2014-0506 [CRITICAL] CVE-2014-0506 CVE-2014-0507 flash-plugin: two flaws leading to code execution (APSB14-09)
CVE-2014-0506 CVE-2014-0507 flash-plugin: two flaws leading to code execution (APSB14-09)
Adobe has released Flash Player 11.2.202.350 for Linux to correct the following flaws:
These updates resolve a use-after-free vulnerability that could result in arbitrary code execution (CVE-2014-0506).
These updates resolve a buffer overflow vulnerability that could result in arbitrary code execution (CVE-2014-0507).
External References:
http://helpx.adobe.com/security/products/flash-player/apsb14-09.html
Discussion:
This issue has been addressed in following products:
Supplementary for Red Hat Enterprise Linux 5
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2014:0380 https://rhn.redhat.com/errata/RHSA-2014-0380.html
http://osvdb.org/102037http://secunia.com/advisories/56478http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.htmlhttp://www.securityfocus.com/bid/64758http://www.securityfocus.com/bid/64865http://www.securitytracker.com/id/1029623http://osvdb.org/102037http://secunia.com/advisories/56478http://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.htmlhttp://www.securityfocus.com/bid/64758http://www.securityfocus.com/bid/64865http://www.securitytracker.com/id/1029623
2014-01-15
Published