Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-8600
Description:Multiple cross-site scripting (XSS) vulnerabilities in KDE-Runtime 4.14.3 and earlier, kwebkitpart 1.3.4 and earlier, and kio-extras 5.1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via a crafted URI using the (1) zip, (2) trash, (3) tar, (4) thumbnail, (5) smtps, (6) smtp, (7) smb, (8) remote, (9) recentdocuments, (10) nntps, (11) nntp, (12) network, (13) mbox, (14) ldaps, (15) ldap, (16) fonts, (17) file, (18) desktop, (19) cgi, (20) bookmarks, or (21) ar scheme, which is not properly handled in an error message.
Test IDs: 1.3.6.1.4.1.25623.1.0.868802   1.3.6.1.4.1.25623.1.0.868563   1.3.6.1.4.1.25623.1.1.10.2014.0478   1.3.6.1.4.1.25623.1.0.868520   1.3.6.1.4.1.25623.1.1.12.2014.2414.1   1.3.6.1.4.1.25623.1.0.868556   1.3.6.1.4.1.25623.1.0.868849  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-8600
BugTraq ID: 71190
http://www.securityfocus.com/bid/71190
http://seclists.org/fulldisclosure/2014/Nov/54
https://www.portcullis-security.com/security-research-and-downloads/security-advisories/cve-2014-8600/
SuSE Security Announcement: openSUSE-SU-2015:0573 (Google Search)
http://lists.opensuse.org/opensuse-updates/2015-03/msg00068.html
http://ubuntu.com/usn/usn-2414-1




© 1998-2025 E-Soft Inc. All rights reserved.