|
276511
|
5.5 |
MEDIUM
Local
|
ffmpeg
|
ffmpeg
|
Integer underflow in the mov_read_default function in libavformat/mov.c in FFmpeg before 2.4.6 allows remote attackers to obtain sensitive information from heap and/or stack memory via a crafted MP4 …
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2015-1208
|
2024-11-21 11:24 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276512
|
6.5 |
MEDIUM
Network
|
uclouvain google debian
|
openjpeg pdfium debian_linux
|
Double free vulnerability in the j2k_read_ppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to cause a denial of service (process crash) via a craf…
|
CWE-415
Double Free
|
CVE-2015-1239
|
2024-11-21 11:24 |
2017-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276513
|
5.5 |
MEDIUM
Local
|
google
|
chrome
|
Heap-based buffer overflow in Google Chrome before M40 allows remote attackers to cause a denial of service (unpaged memory write and process crash) via a crafted MP4 file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-1206
|
2024-11-21 11:24 |
2017-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276514
|
5.9 |
MEDIUM
Network
|
percona
|
xtrabackup toolkit
|
The version checking subroutine in percona-toolkit before 2.2.13 and xtrabackup before 2.2.9 was vulnerable to silent HTTP downgrade attacks and Man In The Middle attacks in which the server response…
|
CWE-200
Information Exposure
|
CVE-2015-1027
|
2024-11-21 11:24 |
2017-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276515
|
7.5 |
HIGH
Network
|
ppmd_project
|
ppmd
|
Directory traversal vulnerability in ppmd 10.1-5.
|
CWE-22
Path Traversal
|
CVE-2015-1199
|
2024-11-21 11:24 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276516
|
7.5 |
HIGH
Network
|
linux-ha
|
ha
|
Multiple directory traversal vulnerabilities in ha 0.999p+dfsg-5.
|
CWE-22
Path Traversal
|
CVE-2015-1198
|
2024-11-21 11:24 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276517
|
6.1 |
MEDIUM
Network
|
exponentcms
|
exponent_cms
|
Cross-site scripting (XSS) vulnerability in Exponent CMS 2.3.2.
|
CWE-79
Cross-site Scripting
|
CVE-2015-1177
|
2024-11-21 11:24 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276518
|
7.8 |
HIGH
Local
|
mobilis
|
mobiconnect
|
Untrusted search path vulnerability in ZTE Datacard MF19 0V1.0.0B04 allows local users to gain privilege by modifying the 'Ucell Internet' directory to reference a malicious mms_dll_r.dll or mediapla…
|
CWE-426
Untrusted Search Path
|
CVE-2015-0974
|
2024-11-21 11:24 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276519
|
7.5 |
HIGH
Network
|
oisf
|
libhtp
|
libhtp 0.5.15 allows remote attackers to cause a denial of service (NULL pointer dereference).
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-0928
|
2024-11-21 11:24 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276520
|
9.8 |
CRITICAL
Network
|
unit4
|
teta_web
|
Session fixation vulnerability in Unit4 Polska TETA Web (formerly TETA Galactica) 22.62.3.4 and earlier allows remote attackers to hijack web sessions via a session id.
|
CWE-384
Session Fixation
|
CVE-2015-1174
|
2024-11-21 11:24 |
2017-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|