|
271601
|
- |
|
microsoft
|
windows_server_2008 windows_server_2012 windows_rt windows_10 windows_8.1 windows_7 windows_rt_8.1 windows_vista windows_8
|
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 allow lo…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-2478
|
2024-11-21 11:27 |
2015-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271602
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulne…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-2427
|
2024-11-21 11:27 |
2015-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271603
|
- |
|
microsoft
|
word onenote publisher powerpoint project_server infopath access excel project visio lync skype_for_business pinyin_ime office_2007_ime
|
Microsoft Access 2007 SP3, Excel 2007 SP3, InfoPath 2007 SP3, OneNote 2007 SP3, PowerPoint 2007 SP3, Project 2007 SP3, Publisher 2007 SP3, Visio 2007 SP3, Word 2007 SP3, Office 2007 IME (Japanese) SP…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-2503
|
2024-11-21 11:27 |
2015-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271604
|
- |
|
wordpress
|
wordpress
|
SQL injection vulnerability in the wp_untrash_post_comments function in wp-includes/post.php in WordPress before 4.2.4 allows remote attackers to execute arbitrary SQL commands via a comment that is …
|
CWE-89
SQL Injection
|
CVE-2015-2213
|
2024-11-21 11:27 |
2015-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271605
|
- |
|
mit oracle canonical debian opensuse suse
|
kerberos_5 solaris ubuntu_linux debian_linux leap opensuse linux_enterprise_server linux_enterprise_software_development_kit linux_enterprise_desktop
|
The build_principal_va function in lib/krb5/krb/bld_princ.c in MIT Kerberos 5 (aka krb5) before 1.14 allows remote authenticated users to cause a denial of service (out-of-bounds read and KDC crash) …
|
CWE-125
Out-of-bounds Read
|
CVE-2015-2697
|
2024-11-21 11:27 |
2015-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271606
|
- |
|
mit opensuse suse debian canonical
|
kerberos_5 leap opensuse linux_enterprise_server linux_enterprise_software_development_kit linux_enterprise_desktop debian_linux ubuntu_linux
|
lib/gssapi/krb5/iakerb.c in MIT Kerberos 5 (aka krb5) before 1.14 relies on an inappropriate context handle, which allows remote attackers to cause a denial of service (incorrect pointer read and pro…
|
CWE-18
Source Code
|
CVE-2015-2696
|
2024-11-21 11:27 |
2015-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271607
|
- |
|
mit oracle canonical debian suse opensuse
|
kerberos_5 solaris ubuntu_linux debian_linux linux_enterprise_server linux_enterprise_desktop linux_enterprise_software_development_kit leap opensuse
|
lib/gssapi/spnego/spnego_mech.c in MIT Kerberos 5 (aka krb5) before 1.14 relies on an inappropriate context handle, which allows remote attackers to cause a denial of service (incorrect pointer read …
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2015-2695
|
2024-11-21 11:27 |
2015-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271608
|
- |
|
oracle
|
solaris
|
Unspecified vulnerability in Oracle Sun Solaris 10 and 11.2 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Gzip.
|
NVD-CWE-noinfo
|
CVE-2015-2642
|
2024-11-21 11:27 |
2015-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271609
|
- |
|
oracle
|
enterprise_manager_grid_control
|
Unspecified vulnerability in the Enterprise Manager Ops Center component in Oracle Enterprise Manager Grid Control 12.1.0.1 and 12.2.2 allows remote authenticated users to affect confidentiality and …
|
NVD-CWE-noinfo
|
CVE-2015-2633
|
2024-11-21 11:27 |
2015-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271610
|
- |
|
oracle
|
communications_applications
|
Unspecified vulnerability in (1) the Oracle Communications Diameter Signaling Router (DSR) component in Oracle Communications Applications 4.1.6 and earlier, 5.1.0 and earlier, 6.0.2 and earlier, and…
|
NVD-CWE-noinfo
|
CVE-2015-2608
|
2024-11-21 11:27 |
2015-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|