|
277831
|
7.8 |
HIGH
Local
|
google
|
android
|
A buffer overflow vulnerability in all Android releases from CAF using the Linux kernel can potentially occur if an OEM performs an app region size customization due to a hard-coded value.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9931
|
2024-11-21 11:22 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277832
|
7.0 |
HIGH
Local
|
linux google
|
linux_kernel android
|
The regulator_ena_gpio_free function in drivers/regulator/core.c in the Linux kernel before 3.19 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted appl…
|
CWE-416
Use After Free
|
CVE-2014-9940
|
2024-11-21 11:22 |
2017-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277833
|
6.5 |
MEDIUM
Network
|
ibm
|
maximo_asset_management maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager change_and_configuration_management_database tivoli_asset_management_for_it maxi…
|
IBM Tivoli IT Asset Management for IT, Tivoli Service Request Manager, and Change and Configuration Management Database 7.1 through 7.1.1.8 and 7.2 and Maximo Asset Management and Maximo Industry Sol…
|
CWE-22
Path Traversal
|
CVE-2015-0107
|
2024-11-21 11:22 |
2017-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277834
|
8.8 |
HIGH
Network
|
ibm
|
maximo_asset_management maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager change_and_configuration_management_database tivoli_asset_management_for_it maxi…
|
IBM Tivoli IT Asset Management for IT, Tivoli Service Request Manager, and Change and Configuration Management Database 7.1 through 7.1.1.8 and 7.2 and Maximo Asset Management and Maximo Industry Sol…
|
CWE-284
Improper Access Control
|
CVE-2015-0104
|
2024-11-21 11:22 |
2017-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277835
|
9.8 |
CRITICAL
Network
|
gnu
|
binutils
|
ihex.c in GNU Binutils before 2.26 contains a stack buffer overflow when printing bad bytes in Intel Hex objects.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-9939
|
2024-11-21 11:22 |
2017-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277836
|
8.8 |
HIGH
Network
|
git-scm
|
git
|
contrib/completion/git-prompt.sh in Git before 1.9.3 does not sanitize branch names in the PS1 variable, allowing a malicious repository to cause code execution.
|
CWE-116
Improper Encoding or Escaping of Output
|
CVE-2014-9938
|
2024-11-21 11:22 |
2017-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277837
|
5.4 |
MEDIUM
Network
|
redhat
|
satellite spacewalk-java
|
Cross-site scripting (XSS) vulnerability in spacewalk-java in Spacewalk and Red Hat Satellite 5.7 allows remote authenticated users to inject arbitrary web script or HTML via crafted XML data to the …
|
CWE-79
Cross-site Scripting
|
CVE-2015-0284
|
2024-11-21 11:22 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277838
|
7.1 |
HIGH
Network
|
apache
|
ranger
|
The Policy Admin Tool in Apache Ranger before 0.5.0 allows remote authenticated users to bypass intended access restrictions via direct access to module URLs.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-0266
|
2024-11-21 11:22 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277839
|
6.1 |
MEDIUM
Network
|
apache
|
ranger
|
Cross-site scripting (XSS) vulnerability in the Policy Admin Tool in Apache Ranger before 0.5.0 allows remote attackers to inject arbitrary web script or HTML via the HTTP User-Agent header.
|
CWE-79
Cross-site Scripting
|
CVE-2015-0265
|
2024-11-21 11:22 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277840
|
- |
|
gnome suse canonical oracle
|
networkmanager linux_enterprise_server linux_enterprise_desktop linux_enterprise_debuginfo linux_enterprise_real_time_extension linux_enterprise_software_development_kit linux_enter…
|
GNOME NetworkManager allows remote attackers to cause a denial of service (IPv6 traffic disruption) via a crafted MTU value in an IPv6 Router Advertisement (RA) message, a different vulnerability tha…
|
NVD-CWE-noinfo
|
CVE-2015-0272
|
2024-11-21 11:22 |
2015-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|