|
267591
|
- |
|
fortinet
|
fortimanager_firmware
|
Multiple cross-site scripting (XSS) vulnerabilities in the Graphical User Interface (GUI) in Fortinet FortiManager before 5.2.4 allow remote attackers to inject arbitrary web script or HTML via the (…
|
CWE-79
Cross-site Scripting
|
CVE-2015-8037
|
2024-11-21 11:37 |
2015-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267592
|
- |
|
arm polarssl debian fedoraproject opensuse
|
mbed_tls polarssl debian_linux fedora opensuse
|
Heap-based buffer overflow in ARM mbed TLS (formerly PolarSSL) 1.3.x before 1.3.14 and 2.x before 2.1.2 allows remote SSL servers to cause a denial of service (client crash) and possibly execute arbi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8036
|
2024-11-21 11:37 |
2015-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267593
|
- |
|
sap
|
3d_visual_enterprise_viewer
|
SAP 3D Visual Enterprise Viewer (VEV) allows remote attackers to execute arbitrary code via a crafted (1) U3D, (2) LWO, (3) JPEG2000, or (4) FBX file, aka "Out-Of-Bounds Indexing" vulnerabilities.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8030
|
2024-11-21 11:37 |
2015-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267594
|
- |
|
sap
|
3d_visual_enterprise_viewer
|
SAP 3D Visual Enterprise Viewer (VEV) allows remote attackers to execute arbitrary code via a crafted Filmbox document, which triggers memory corruption.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8029
|
2024-11-21 11:37 |
2015-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267595
|
- |
|
sap
|
3d_visual_enterprise_viewer
|
Multiple buffer overflows in SAP 3D Visual Enterprise Viewer (VEV) allow remote attackers to execute arbitrary code via a crafted (1) 3DM or (2) Flic Animation file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8028
|
2024-11-21 11:37 |
2015-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267596
|
- |
|
xen
|
xen
|
The (1) libxl_set_memory_target function in tools/libxl/libxl.c and (2) libxl__build_post function in tools/libxl/libxl_dom.c in Xen 3.4.x through 4.6.x do not properly calculate the balloon size whe…
|
CWE-399
Resource Management Errors
|
CVE-2015-7972
|
2024-11-21 11:37 |
2015-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267597
|
- |
|
xen
|
xen
|
Xen 3.2.x through 4.6.x does not limit the number of printk console messages when logging certain pmu and profiling hypercalls, which allows local guests to cause a denial of service via a sequence o…
|
CWE-19
Data Processing Errors
|
CVE-2015-7971
|
2024-11-21 11:37 |
2015-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267598
|
- |
|
xen
|
xen
|
The p2m_pod_emergency_sweep function in arch/x86/mm/p2m-pod.c in Xen 3.4.x, 3.5.x, and 3.6.x is not preemptible, which allows local x86 HVM guest administrators to cause a denial of service (CPU cons…
|
CWE-399
Resource Management Errors
|
CVE-2015-7970
|
2024-11-21 11:37 |
2015-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267599
|
- |
|
xen
|
xen
|
Multiple memory leaks in Xen 4.0 through 4.6.x allow local guest administrators or domains with certain permission to cause a denial of service (memory consumption) via a large number of "teardowns" …
|
CWE-399
Resource Management Errors
|
CVE-2015-7969
|
2024-11-21 11:37 |
2015-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267600
|
- |
|
xen
|
xen
|
The mod_l2_entry function in arch/x86/mm.c in Xen 3.4 through 4.6.x does not properly validate level 2 page table entries, which allows local PV guest administrators to gain privileges via a crafted …
|
CWE-264 CWE-20
Permissions, Privileges, and Access Controls Improper Input Validation
|
CVE-2015-7835
|
2024-11-21 11:37 |
2015-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|