|
270831
|
7.3 |
HIGH
Network
|
idera
|
uptime_infrastructure_monitor
|
Buffer overflow in the up.time client in Idera Uptime Infrastructure Monitor 7.4 might allow remote attackers to execute arbitrary code via long command input.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-2895
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270832
|
5.3 |
MEDIUM
Network
|
idera
|
uptime_infrastructure_monitor
|
Format string vulnerability in the up.time client in Idera Uptime Infrastructure Monitor 6.0 and 7.2 allows remote attackers to cause a denial of service (application crash) via format string specifi…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2015-2894
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270833
|
8.8 |
HIGH
Adjacent
|
lacie seagate
|
lac9000436u_firmware lac9000464u_firmware wireless_mobile_storage wireless_plus_mobile_storage goflex_sattelite
|
Unrestricted file upload vulnerability on Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 allows…
|
NVD-CWE-Other
|
CVE-2015-2876
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270834
|
7.5 |
HIGH
Network
|
seagate lacie
|
goflex_sattelite wireless_mobile_storage wireless_plus_mobile_storage lac9000436u_firmware lac9000464u_firmware
|
Absolute path traversal vulnerability on Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 allows …
|
CWE-22
Path Traversal
|
CVE-2015-2875
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270835
|
9.8 |
CRITICAL
Network
|
seagate lacie
|
wireless_mobile_storage wireless_plus_mobile_storage lac9000436u_firmware lac9000464u_firmware goflex_sattelite
|
Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 have a default password of root for the root acc…
|
CWE-255
Credentials Management
|
CVE-2015-2874
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270836
|
5.3 |
MEDIUM
Network
|
samba
|
samba
|
The ldb_wildcard_compare function in ldb_match.c in ldb before 1.1.24, as used in the AD LDAP server in Samba 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3, mishandles certain zero va…
|
CWE-189 CWE-399
Numeric Errors Resource Management Errors
|
CVE-2015-3223
|
2024-11-21 11:28 |
2015-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270837
|
7.5 |
HIGH
Network
|
openssl canonical debian nodejs
|
openssl ubuntu_linux debian_linux node.js
|
crypto/rsa/rsa_ameth.c in OpenSSL 1.0.1 before 1.0.1q and 1.0.2 before 1.0.2e allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an RSA PSS ASN.…
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-3194
|
2024-11-21 11:28 |
2015-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270838
|
- |
|
hp openssl oracle redhat fedoraproject canonical debian
|
icewall_sso icewall_sso_agent_option openssl vm_virtualbox enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server_tus fedora…
|
ssl/s3_clnt.c in OpenSSL 1.0.0 before 1.0.0t, 1.0.1 before 1.0.1p, and 1.0.2 before 1.0.2d, when used for a multi-threaded client, writes the PSK identity hint to an incorrect data structure, which a…
|
CWE-362
Race Condition
|
CVE-2015-3196
|
2024-11-21 11:28 |
2015-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270839
|
5.3 |
MEDIUM
Network
|
apple oracle openssl redhat canonical debian opensuse suse fedoraproject
|
mac_os_x sun_ray_software transportation_management life_sciences_data_hub api_gateway exalogic_infrastructure solaris communications_webrtc_session_controller vm_virtualbox
|
The ASN1_TFLG_COMBINE implementation in crypto/asn1/tasn_dec.c in OpenSSL before 0.9.8zh, 1.0.0 before 1.0.0t, 1.0.1 before 1.0.1q, and 1.0.2 before 1.0.2e mishandles errors caused by malformed X509_…
|
CWE-200
Information Exposure
|
CVE-2015-3195
|
2024-11-21 11:28 |
2015-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270840
|
7.5 |
HIGH
Network
|
openssl nodejs canonical
|
openssl node.js ubuntu_linux
|
The Montgomery squaring implementation in crypto/bn/asm/x86_64-mont5.pl in OpenSSL 1.0.2 before 1.0.2e on the x86_64 platform, as used by the BN_mod_exp function, mishandles carry propagation and pro…
|
CWE-200
Information Exposure
|
CVE-2015-3193
|
2024-11-21 11:28 |
2015-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|