|
277861
|
4.7 |
MEDIUM
Local
|
tug
|
texlive
|
The pre-install script in texlive 3.1.20140525_r34255.fc21 as packaged in Fedora 21 and rpm, and texlive 6.20131226_r32488.fc20 and rpm allows local users to delete arbitrary files via a crafted file…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-0296
|
2024-11-21 11:22 |
2017-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277862
|
3.3 |
LOW
Local
|
redhat
|
openshift
|
selinux-policy as packaged in Red Hat OpenShift 2 allows attackers to obtain process listing information via a privilege escalation attack.
|
CWE-200
Information Exposure
|
CVE-2015-0238
|
2024-11-21 11:22 |
2017-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277863
|
8.8 |
HIGH
Network
|
kallithea-scm
|
kallithea
|
Cross-site request forgery (CSRF) vulnerability in Kallithea before 0.2.
|
CWE-352
Origin Validation Error
|
CVE-2015-0276
|
2024-11-21 11:22 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277864
|
7.0 |
HIGH
Local
|
ibm
|
security_siteprotector_system
|
IBM Security SiteProtector System 3.0, 3.1, and 3.1.1 allows local users to gain privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-0162
|
2024-11-21 11:22 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277865
|
6.5 |
MEDIUM
Network
|
ibm
|
business_process_manager websphere_application_server
|
IBM Business Process Manager (aka BPM) 7.5.x, 8.0.x, and 8.5.x and WebSphere Lombardi Edition (aka WLE) 7.2.x allow remote authenticated users to bypass intended access restrictions on internal servi…
|
CWE-284
Improper Access Control
|
CVE-2015-0110
|
2024-11-21 11:22 |
2017-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277866
|
7.5 |
HIGH
Network
|
pki-core_project
|
pki-core
|
Multiple temporary file creation vulnerabilities in pki-core 10.2.0.
|
CWE-20
Improper Input Validation
|
CVE-2015-0234
|
2024-11-21 11:22 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277867
|
4.2 |
MEDIUM
Local
|
fedoraproject
|
389_administration_server
|
Multiple insecure Temporary File vulnerabilities in 389 Administration Server before 1.1.38.
|
CWE-254
7PK - Security Features
|
CVE-2015-0233
|
2024-11-21 11:22 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277868
|
5.9 |
MEDIUM
Network
|
w1.fi
|
wpa_supplicant
|
wpa_supplicant 2.0-16 does not properly check certificate subject name, which allows remote attackers to cause a man-in-the-middle attack.
|
CWE-295
Improper Certificate Validation
|
CVE-2015-0210
|
2024-11-21 11:22 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277869
|
7.8 |
HIGH
Local
|
ibm
|
i_access_for_windows
|
Stack-based buffer overflow in IBM V5R4, and IBM i Access for Windows 6.1 and 7.1.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-0114
|
2024-11-21 11:22 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277870
|
6.1 |
MEDIUM
Network
|
ibm
|
business_process_manager
|
Cross-site scripting (XSS) vulnerability in IBM Business Process Manager Standard 7.5.x before 7.5, 8.0.x before 8.0.1, 8.5.x before 8.5.5; IBM Business Process Manager Express 7.5.x before 7.5, 8.0.…
|
CWE-79
Cross-site Scripting
|
CVE-2015-0101
|
2024-11-21 11:22 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|