|
271191
|
6.1 |
MEDIUM
Network
|
orientdb
|
orientdb
|
The Studio component in OrientDB Server Community Edition before 2.0.15 and 2.1.x before 2.1.1 does not properly restrict use of FRAME elements, which makes it easier for remote attackers to conduct …
|
CWE-20
Improper Input Validation
|
CVE-2015-2918
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271192
|
5.9 |
MEDIUM
Network
|
orientdb
|
orientdb
|
server/network/protocol/http/OHttpSessionManager.java in the Studio component in OrientDB Server Community Edition before 2.0.15 and 2.1.x before 2.1.1 improperly relies on the java.util.Random class…
|
CWE-200
Information Exposure
|
CVE-2015-2913
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271193
|
8.8 |
HIGH
Network
|
orientdb
|
orientdb
|
The JSONP endpoint in the Studio component in OrientDB Server Community Edition before 2.0.15 and 2.1.x before 2.1.1 does not properly restrict callback values, which allows remote attackers to condu…
|
CWE-352
Origin Validation Error
|
CVE-2015-2912
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271194
|
5.3 |
MEDIUM
Network
|
idera
|
uptime_infrastructure_monitor
|
The up.time client in Idera Uptime Infrastructure Monitor through 7.6 allows remote attackers to obtain potentially sensitive version, OS, process, and event-log information via a command.
|
CWE-200
Information Exposure
|
CVE-2015-2896
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271195
|
7.3 |
HIGH
Network
|
idera
|
uptime_infrastructure_monitor
|
Buffer overflow in the up.time client in Idera Uptime Infrastructure Monitor 7.4 might allow remote attackers to execute arbitrary code via long command input.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-2895
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271196
|
5.3 |
MEDIUM
Network
|
idera
|
uptime_infrastructure_monitor
|
Format string vulnerability in the up.time client in Idera Uptime Infrastructure Monitor 6.0 and 7.2 allows remote attackers to cause a denial of service (application crash) via format string specifi…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2015-2894
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271197
|
8.8 |
HIGH
Adjacent
|
lacie seagate
|
lac9000436u_firmware lac9000464u_firmware wireless_mobile_storage wireless_plus_mobile_storage goflex_sattelite
|
Unrestricted file upload vulnerability on Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 allows…
|
NVD-CWE-Other
|
CVE-2015-2876
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271198
|
7.5 |
HIGH
Network
|
seagate lacie
|
goflex_sattelite wireless_mobile_storage wireless_plus_mobile_storage lac9000436u_firmware lac9000464u_firmware
|
Absolute path traversal vulnerability on Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 allows …
|
CWE-22
Path Traversal
|
CVE-2015-2875
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271199
|
9.8 |
CRITICAL
Network
|
seagate lacie
|
wireless_mobile_storage wireless_plus_mobile_storage lac9000436u_firmware lac9000464u_firmware goflex_sattelite
|
Seagate GoFlex Satellite, Seagate Wireless Mobile Storage, Seagate Wireless Plus Mobile Storage, and LaCie FUEL devices with firmware before 3.4.1.105 have a default password of root for the root acc…
|
CWE-255
Credentials Management
|
CVE-2015-2874
|
2024-11-21 11:28 |
2015-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271200
|
5.3 |
MEDIUM
Network
|
samba
|
samba
|
The ldb_wildcard_compare function in ldb_match.c in ldb before 1.1.24, as used in the AD LDAP server in Samba 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3, mishandles certain zero va…
|
CWE-189 CWE-399
Numeric Errors Resource Management Errors
|
CVE-2015-3223
|
2024-11-21 11:28 |
2015-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|