|
272451
|
- |
|
microsoft
|
.net_framework
|
Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, and 4.5.2 allows remote attackers to cause a denial of service (recursion and performance degradation) via crafted encrypted data in an XM…
|
CWE-310
Cryptographic Issues
|
CVE-2015-1672
|
2024-11-21 11:25 |
2015-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272452
|
- |
|
microsoft
|
.net_framework
|
The Windows DirectWrite library, as used in Microsoft .NET Framework 3.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, and 4.5.2, allows remote attackers to obtain sensitive information from process memory via a c…
|
CWE-200
Information Exposure
|
CVE-2015-1670
|
2024-11-21 11:25 |
2015-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272453
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vuln…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-1658
|
2024-11-21 11:25 |
2015-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272454
|
- |
|
magento
|
magento
|
PHP remote file inclusion vulnerability in the fetchView function in the Mage_Core_Block_Template_Zend class in Magento Community Edition (CE) 1.9.1.0 and Enterprise Edition (EE) 1.14.1.0 allows remo…
|
CWE-94
Code Injection
|
CVE-2015-1399
|
2024-11-21 11:25 |
2015-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272455
|
- |
|
magento
|
magento
|
Multiple directory traversal vulnerabilities in Magento Community Edition (CE) 1.9.1.0 and Enterprise Edition (EE) 1.14.1.0 allow remote authenticated users to include and execute certain PHP files v…
|
CWE-22
Path Traversal
|
CVE-2015-1398
|
2024-11-21 11:25 |
2015-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272456
|
- |
|
magento
|
magento
|
SQL injection vulnerability in the getCsvFile function in the Mage_Adminhtml_Block_Widget_Grid class in Magento Community Edition (CE) 1.9.1.0 and Enterprise Edition (EE) 1.14.1.0 allows remote admin…
|
CWE-89
SQL Injection
|
CVE-2015-1397
|
2024-11-21 11:25 |
2015-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272457
|
- |
|
canonical ubuntu
|
ubuntu_linux network-manager
|
Directory traversal vulnerability in the Ubuntu network-manager package for Ubuntu (vivid) before 0.9.10.0-4ubuntu15.1, Ubuntu 14.10 before 0.9.8.8-0ubuntu28.1, and Ubuntu 14.04 LTS before 0.9.8.8-0u…
|
CWE-22
Path Traversal
|
CVE-2015-1322
|
2024-11-21 11:25 |
2015-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272458
|
- |
|
canonical oxide_project
|
ubuntu_linux oxide
|
Use-after-free vulnerability in the file picker implementation in Oxide before 1.6.5 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted webp…
|
NVD-CWE-Other
|
CVE-2015-1321
|
2024-11-21 11:25 |
2015-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272459
|
- |
|
symantec
|
workspace_streaming
|
Unquoted Windows search path vulnerability in the agent in Symantec Workspace Streaming (SWS) 6.1 before SP8 MP2 HF7 and 7.5 before SP1 HF4, when AppMgrService.exe is configured as a service, allows …
|
NVD-CWE-Other
|
CVE-2015-1484
|
2024-11-21 11:25 |
2015-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272460
|
- |
|
apport_project
|
apport
|
The crash reporting feature in Apport 2.13 through 2.17.x before 2.17.1 allows local users to gain privileges via a crafted usr/share/apport/apport file in a namespace (container).
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-1318
|
2024-11-21 11:25 |
2015-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|