|
267101
|
- |
|
monster_menus_module_project
|
monster_menus
|
The recycle bin feature in the Monster Menus module 7.x-1.21 before 7.x-1.24 for Drupal does not properly remove nodes from view, which allows remote attackers to obtain sensitive information via an …
|
CWE-200
Information Exposure
|
CVE-2015-8095
|
2024-11-21 11:38 |
2015-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267102
|
9.8 |
CRITICAL
Network
|
eclipse
|
hudson
|
Hudson (aka org.jvnet.hudson.main:hudson-core) before 3.3.2 allows XXE attacks.
|
CWE-611
XXE
|
CVE-2015-8031
|
2024-11-21 11:37 |
2022-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267103
|
5.5 |
MEDIUM
Local
|
sap
|
mobile_platform
|
SAP Mobile Platform 3.0 SP05 ClientHub allows attackers to obtain the keystream and other sensitive information via the DataVault, aka SAP Security Note 2094830.
|
CWE-200
Information Exposure
|
CVE-2015-7731
|
2024-11-21 11:37 |
2021-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267104
|
5.3 |
MEDIUM
Network
|
textpattern
|
textpattern
|
In Textpattern 4.5.7, the password-reset feature does not securely tether a hash to a user account.
|
CWE-521
Weak Password Requirements
|
CVE-2015-8033
|
2024-11-21 11:37 |
2020-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267105
|
5.3 |
MEDIUM
Network
|
textpattern
|
textpattern
|
In Textpattern 4.5.7, an unprivileged author can change an article's markup setting.
|
CWE-269
Improper Privilege Management
|
CVE-2015-8032
|
2024-11-21 11:37 |
2020-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267106
|
4.6 |
MEDIUM
Physics
|
ubports
|
unity8
|
Information Exposure vulnerability in Unity8 as used on the Ubuntu phone and possibly also in Unity8 shipped elsewhere. This allows an attacker to enable the MTP service by opening the emergency dial…
|
CWE-200
Information Exposure
|
CVE-2015-7946
|
2024-11-21 11:37 |
2020-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267107
|
4.3 |
MEDIUM
Network
|
sap
|
netweaver_application_server
|
nwbc_ext2int in SAP NetWeaver Application Server before Security Note 2183189 allows XXE attacks for local file inclusion via the sap/bc/ui2/nwbc/nwbc_ext2int/ URI.
|
CWE-611
XXE
|
CVE-2015-7968
|
2024-11-21 11:37 |
2020-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267108
|
8.8 |
HIGH
Network
|
canonical fedoraproject audio_file_library_project
|
ubuntu_linux fedora audio_file_library
|
Buffer overflow in the afReadFrames function in audiofile (aka libaudiofile and Audio File Library) allows user-assisted remote attackers to cause a denial of service (program crash) or possibly exec…
|
CWE-120
Classic Buffer Overflow
|
CVE-2015-7747
|
2024-11-21 11:37 |
2020-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267109
|
5.5 |
MEDIUM
Local
|
samsung
|
galaxy_s6_edge_firmware
|
Multiple buffer overflows in the esa_write function in /dev/seirenin the Exynos Seiren Audio driver, as used in Samsung S6 Edge, allow local users to cause a denial of service (memory corruption) via…
|
CWE-120
Classic Buffer Overflow
|
CVE-2015-7890
|
2024-11-21 11:37 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267110
|
7.5 |
HIGH
Network
|
lldpd_project
|
lldpd
|
lldpd before 0.8.0 allows remote attackers to cause a denial of service (assertion failure and daemon crash) via a malformed packet.
|
CWE-617
Reachable Assertion
|
CVE-2015-8012
|
2024-11-21 11:37 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|