|
267551
|
6.5 |
MEDIUM
Network
|
netsurf-browser
|
libnsgif
|
The gif_next_LZW function in libnsgif.c in Libnsgif 0.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted LZW stream in a GIF …
|
CWE-125
Out-of-bounds Read
|
CVE-2015-7506
|
2024-11-21 11:36 |
2020-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267552
|
8.8 |
HIGH
Network
|
netsurf-browser
|
libnsbmp
|
Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbit…
|
CWE-787
Out-of-bounds Write
|
CVE-2015-7508
|
2024-11-21 11:36 |
2020-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267553
|
7.8 |
HIGH
Local
|
delegate
|
delegate
|
DeleGate 9.9.13 allows local users to gain privileges as demonstrated by the dgcpnod setuid program.
|
CWE-269
Improper Privilege Management
|
CVE-2015-7556
|
2024-11-21 11:36 |
2020-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267554
|
5.3 |
MEDIUM
Network
|
aquamaniac debian opensuse
|
gwenhywfar debian_linux leap
|
A vulnerability exists in libgwenhywfar through 4.12.0 due to the usage of outdated bundled CA certificates.
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2015-7542
|
2024-11-21 11:36 |
2019-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267555
|
5.9 |
MEDIUM
Network
|
technicolor
|
c2000t_firmware c2100t_firmware
|
Technicolor C2000T and C2100T uses hard-coded cryptographic keys.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2015-7276
|
2024-11-21 11:36 |
2019-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267556
|
2.7 |
LOW
Network
|
apache redhat
|
activemq jboss_fuse jboss_a-mq
|
It was found that the Apache ActiveMQ client before 5.14.5 exposed a remote shutdown command in the ActiveMQConnection class. An attacker logged into a compromised broker could use this flaw to achie…
|
CWE-20
Improper Input Validation
|
CVE-2015-7559
|
2024-11-21 11:36 |
2019-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267557
|
7.5 |
HIGH
Network
|
iab
|
open_real-time_bidding
|
The Interactive Advertising Bureau (IAB) OpenRTB 2.3 protocol implementation might allow remote attackers to conceal the status of ad transactions and potentially compromise bid integrity by leveragi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7266
|
2024-11-21 11:36 |
2018-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267558
|
7.8 |
HIGH
Local
|
ibm
|
capacity_management_analytics
|
IBM Capacity Management Analytics 2.1.0.0 allows local users to discover encrypted usernames and passwords by leveraging access to the CMA install machine. IBM X-Force ID: 107863.
|
CWE-200
Information Exposure
|
CVE-2015-7434
|
2024-11-21 11:36 |
2018-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267559
|
7.8 |
HIGH
Local
|
ibm
|
capacity_management_analytics
|
IBM Capacity Management Analytics 2.1.0.0 allows local users to discover cleartext usernames and passwords by leveraging access to the CMA install machine. IBM X-Force ID: 107862.
|
CWE-200
Information Exposure
|
CVE-2015-7433
|
2024-11-21 11:36 |
2018-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267560
|
7.8 |
HIGH
Local
|
ibm
|
capacity_management_analytics
|
IBM Capacity Management Analytics 2.1.0.0 allows local users to decrypt usernames and passwords by leveraging access to setenv.sh and parameter.txt. IBM X-Force ID: 107861.
|
CWE-200
Information Exposure
|
CVE-2015-7432
|
2024-11-21 11:36 |
2018-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|