|
266721
|
7.8 |
HIGH
Local
|
google
|
android
|
The aboot implementation in the Qualcomm components in Android before 2016-07-05 on Nexus 6P devices omits the recovery PIN feature, which has unspecified impact and attack vectors, aka Android inter…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-8889
|
2024-11-21 11:39 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266722
|
7.8 |
HIGH
Local
|
google
|
android
|
Integer overflow in app/aboot/aboot.c in the Qualcomm components in Android before 2016-07-05 on Nexus 5 devices allows attackers to bypass intended access restrictions via a crafted block count and …
|
CWE-264 CWE-189
Permissions, Privileges, and Access Controls Numeric Errors
|
CVE-2015-8888
|
2024-11-21 11:39 |
2016-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266723
|
2.9 |
LOW
Physics
|
symantec
|
endpoint_protection_manager
|
Race condition in the client in Symantec Endpoint Protection (SEP) 12.1 before RU6 MP5 allows local users to bypass intended restrictions on USB file transfer by conducting filesystem operations befo…
|
CWE-254 CWE-284
7PK - Security Features Improper Access Control
|
CVE-2015-8801
|
2024-11-21 11:39 |
2016-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266724
|
7.5 |
HIGH
Network
|
canonical thekelleys
|
ubuntu_linux dnsmasq
|
Dnsmasq before 2.76 allows remote servers to cause a denial of service (crash) via a reply with an empty DNS address that has an (1) A or (2) AAAA record defined locally.
|
CWE-20
Improper Input Validation
|
CVE-2015-8899
|
2024-11-21 11:39 |
2016-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266725
|
9.1 |
CRITICAL
Network
|
openstack
|
neutron
|
The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended ICMPv6-spoofing protection mechanism and consequently cause a denial of s…
|
CWE-254
7PK - Security Features
|
CVE-2015-8914
|
2024-11-21 11:39 |
2016-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266726
|
9.1 |
CRITICAL
Network
|
fedoraproject opensuse ocaml
|
fedora opensuse ocaml
|
OCaml before 4.03.0 does not properly handle sign extensions, which allows remote attackers to conduct buffer overflow attacks or obtain sensitive information as demonstrated by a long string to the …
|
CWE-119 CWE-200
Incorrect Access of Indexable Resource ('Range Error') Information Exposure
|
CVE-2015-8869
|
2024-11-21 11:39 |
2016-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266727
|
7.3 |
HIGH
Network
|
broadcom
|
symantec_critical_system_protection symantec_data_center_security_server symantec_data_center_security_server_and_agents symantec_embedded_security_critical_system_protection symantec_emb…
|
Symantec Embedded Security: Critical System Protection (SES:CSP) 1.0.x before 1.0 MP5, Embedded Security: Critical System Protection for Controllers and Devices (SES:CSP) 6.5.0 before MP1, Critical S…
|
CWE-74
Injection
|
CVE-2015-8800
|
2024-11-21 11:39 |
2016-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266728
|
7.6 |
HIGH
Adjacent
|
broadcom
|
symantec_data_center_security_server symantec_data_center_security_server_and_agents symantec_embedded_security_critical_system_protection_for_controllers_and_devices symantec_critical_syste…
|
Directory traversal vulnerability in the Management Server in Symantec Embedded Security: Critical System Protection (SES:CSP) 1.0.x before 1.0 MP5, Embedded Security: Critical System Protection for …
|
CWE-22
Path Traversal
|
CVE-2015-8799
|
2024-11-21 11:39 |
2016-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266729
|
8.0 |
HIGH
Adjacent
|
broadcom
|
symantec_data_center_security_server symantec_critical_system_protection symantec_embedded_security_critical_system_protection symantec_data_center_security_server_and_agents symantec_emb…
|
Directory traversal vulnerability in the Management Server in Symantec Embedded Security: Critical System Protection (SES:CSP) 1.0.x before 1.0 MP5, Embedded Security: Critical System Protection for …
|
CWE-22
Path Traversal
|
CVE-2015-8798
|
2024-11-21 11:39 |
2016-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266730
|
6.2 |
MEDIUM
Local
|
canonical opensuse dosfstools_project
|
ubuntu_linux leap opensuse dosfstools
|
The set_fat function in fat.c in dosfstools before 4.0 might allow attackers to corrupt a FAT12 filesystem or cause a denial of service (invalid memory read and crash) by writing an odd number of clu…
|
CWE-189
Numeric Errors
|
CVE-2015-8872
|
2024-11-21 11:39 |
2016-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|