|
267211
|
6.5 |
MEDIUM
Network
|
ntp siemens freebsd netapp canonical
|
ntp tim_4r-ie_firmware tim_4r-ie_dnp3_firmware freebsd oncommand_balance clustered_data_ontap ubuntu_linux
|
NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network.
|
CWE-254
7PK - Security Features
|
CVE-2015-7973
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267212
|
6.5 |
MEDIUM
Network
|
paessler
|
prtg_network_monitor
|
XML external entity vulnerability in PRTG Network Monitor before 16.2.23.3077/3078 allows remote authenticated users to read arbitrary files by creating a new HTTP XML/REST Value sensor that accesses…
|
CWE-611
XXE
|
CVE-2015-7743
|
2024-11-21 11:37 |
2017-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267213
|
3.7 |
LOW
Network
|
netapp
|
clustered_data_ontap
|
Clustered Data ONTAP versions 8.0, 8.3.1, and 8.3.2 contain a default privileged account which under certain conditions can be used for unauthorized information disclosure.
|
CWE-200
Information Exposure
|
CVE-2015-8020
|
2024-11-21 11:37 |
2017-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267214
|
7.5 |
HIGH
Network
|
ntp
|
ntp-dev
|
An integer overflow can occur in NTP-dev.4.3.70 leading to an out-of-bounds memory copy operation when processing a specially crafted private mode packet. The crafted packet needs to have the correct…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2015-7848
|
2024-11-21 11:37 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267215
|
4.9 |
MEDIUM
Network
|
huawei
|
quidway_s5300_firmware quidway_s9300_firmware s5700_firmware s12700_firmware ar_firmware s5300_firmware s9300_firmware
|
Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before V200R008C00SPC500; S9300, Quidway S5300, and S530…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2015-8086
|
2024-11-21 11:37 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267216
|
4.9 |
MEDIUM
Network
|
huawei
|
s9300_firmware s12700_firmware quidway_s9300_firmware ar_firmware quidway_s5300_firmware s5700_firmware s5300_firmware
|
Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before V200R008C00SPC500; S9300, Quidway S5300, and S530…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2015-8085
|
2024-11-21 11:37 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267217
|
7.5 |
HIGH
Network
|
f5
|
big-ip_global_traffic_manager big-ip_local_traffic_manager big-ip_webaccelerator big-ip_policy_enforcement_manager big-ip_advanced_firewall_manager big-ip_access_policy_manager big-…
|
The Configuration utility in F5 BIG-IP LTM, Analytics, APM, ASM, GTM, and Link Controller 11.x before 11.2.1 HF16, 11.3.x, 11.4.x before 11.4.1 HF10, 11.5.x before 11.5.4, and 11.6.x before 11.6.1; B…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-8022
|
2024-11-21 11:37 |
2016-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267218
|
9.8 |
CRITICAL
Network
|
apple
|
watchos iphone_os mac_os_x airport_base_station_firmware mdnsresponder
|
The handle_regservice_request function in mDNSResponder before 625.41.2 allows remote attackers to execute arbitrary code or cause a denial of service (NULL pointer dereference) via unspecified vecto…
|
NVD-CWE-Other
|
CVE-2015-7988
|
2024-11-21 11:37 |
2016-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267219
|
9.8 |
CRITICAL
Network
|
apple
|
watchos iphone_os mac_os_x airport_base_station_firmware mdnsresponder
|
Multiple buffer overflows in mDNSResponder before 625.41.2 allow remote attackers to read or write to out-of-bounds memory locations via vectors involving the (1) GetValueForIPv4Addr, (2) GetValueFor…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7987
|
2024-11-21 11:37 |
2016-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267220
|
4.3 |
MEDIUM
Network
|
cybozu
|
garoon
|
Cybozu Garoon 3.x and 4.x before 4.2.0 does not properly restrict loading of IMG elements, which makes it easier for remote attackers to track users via a crafted HTML e-mail message, a different vul…
|
CWE-200
Information Exposure
|
CVE-2015-7776
|
2024-11-21 11:37 |
2016-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|