|
270871
|
- |
|
sonicwall
|
sonicos
|
Multiple cross-site scripting (XSS) vulnerabilities in macIpSpoofView.html in Dell SonicWall SonicOS 7.5.0.12 and 6.x allow remote attackers to inject arbitrary web script or HTML via the (1) searchS…
|
CWE-79
Cross-site Scripting
|
CVE-2015-3447
|
2024-11-21 11:29 |
2015-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270872
|
- |
|
xen suse fedoraproject debian opensuse
|
xen suse_linux_enterprise_server suse_linux_enterprise_software_development_kit suse_linux_enterprise_desktop fedora debian_linux linux_enterprise_software_development_kit linux_…
|
Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensitive information from memory via a (1) XEN_DOMCTL_gettscinfo or (2) XEN_SYSCTL_g…
|
CWE-200
Information Exposure
|
CVE-2015-3340
|
2024-11-21 11:29 |
2015-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270873
|
- |
|
ffmpeg debian
|
ffmpeg debian_linux
|
Use-after-free vulnerability in the ff_h264_free_tables function in libavcodec/h264.c in FFmpeg before 2.3.6 allows remote attackers to cause a denial of service or possibly have unspecified other im…
|
NVD-CWE-Other
|
CVE-2015-3417
|
2024-11-21 11:29 |
2015-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270874
|
- |
|
canonical sqlite debian apple php
|
ubuntu_linux sqlite debian_linux mac_os_x watchos php
|
The sqlite3VXPrintf function in printf.c in SQLite before 3.8.9 does not properly handle precision and width values during floating-point conversions, which allows context-dependent attackers to caus…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2015-3416
|
2024-11-21 11:29 |
2015-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270875
|
- |
|
apple debian canonical sqlite php
|
watchos mac_os_x debian_linux ubuntu_linux sqlite php
|
The sqlite3VdbeExec function in vdbe.c in SQLite before 3.8.9 does not properly implement comparison operators, which allows context-dependent attackers to cause a denial of service (invalid free ope…
|
CWE-404
Improper Resource Shutdown or Release
|
CVE-2015-3415
|
2024-11-21 11:29 |
2015-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270876
|
- |
|
sqlite apple debian canonical php
|
sqlite watchos mac_os_x debian_linux ubuntu_linux php
|
SQLite before 3.8.9 does not properly implement the dequoting of collation-sequence names, which allows context-dependent attackers to cause a denial of service (uninitialized memory access and appli…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2015-3414
|
2024-11-21 11:29 |
2015-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270877
|
- |
|
canonical debian point-to-point_protocol_project
|
ubuntu_linux debian_linux point-to-point_protocol
|
Buffer overflow in the rc_mksid function in plugins/radius/util.c in Paul's PPP Package (ppp) 2.4.6 and earlier, when the PID for pppd is greater than 65535, allows remote attackers to cause a denial…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3310
|
2024-11-21 11:29 |
2015-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270878
|
- |
|
certify_project
|
certify
|
The Certify module before 6.x-2.3 for Drupal does not properly perform node access checks, which allows remote authenticated users to bypass intended access restrictions and obtain sensitive PDF cert…
|
CWE-200
Information Exposure
|
CVE-2015-3404
|
2024-11-21 11:29 |
2015-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270879
|
- |
|
fibonacciorange
|
wedeal
|
Open redirect vulnerability in the Commerce WeDeal module before 7.x-1.3 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via an unspecified pa…
|
NVD-CWE-Other
|
CVE-2015-3393
|
2024-11-21 11:29 |
2015-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270880
|
- |
|
ajax_timeline_project
|
ajax_timeline
|
Cross-site scripting (XSS) vulnerability in the Ajax Timeline module before 7.x-1.1 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a node title.
|
CWE-79
Cross-site Scripting
|
CVE-2015-3392
|
2024-11-21 11:29 |
2015-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|