|
272241
|
- |
|
openssl
|
openssl
|
The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in whi…
|
CWE-399
Resource Management Errors
|
CVE-2015-1788
|
2024-11-21 11:26 |
2015-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272242
|
- |
|
microsoft
|
exchange_server
|
Cross-site request forgery (CSRF) vulnerability in the web applications in Microsoft Exchange Server 2013 SP1 and Cumulative Update 8 allows remote attackers to hijack the authentication of arbitrary…
|
CWE-352
Origin Validation Error
|
CVE-2015-1771
|
2024-11-21 11:26 |
2015-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272243
|
- |
|
microsoft
|
windows_server_2003 windows_2003_server
|
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2 allows local users to gain privileges or cause a denial of service (memory corruption) via a crafted application,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-1768
|
2024-11-21 11:26 |
2015-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272244
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corru…
|
CWE-399
Resource Management Errors
|
CVE-2015-1766
|
2024-11-21 11:26 |
2015-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272245
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 9 through 11 allows remote attackers to read the browser history via a crafted web site.
|
CWE-200
Information Exposure
|
CVE-2015-1765
|
2024-11-21 11:26 |
2015-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272246
|
- |
|
microsoft
|
exchange_server
|
The web applications in Microsoft Exchange Server 2013 SP1 and Cumulative Update 8 allow remote attackers to bypass the Same Origin Policy and send HTTP traffic to intranet servers via a crafted requ…
|
NVD-CWE-Other
|
CVE-2015-1764
|
2024-11-21 11:26 |
2015-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272247
|
- |
|
microsoft
|
office office_compatibility_pack
|
Microsoft Office Compatibility Pack SP3, Office 2010 SP2, Office 2013 SP1, and Office 2013 RT SP1 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office…
|
CWE-19
Data Processing Errors
|
CVE-2015-1760
|
2024-11-21 11:26 |
2015-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272248
|
- |
|
microsoft
|
office_compatibility_pack
|
Microsoft Office Compatibility Pack SP3 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
|
CWE-19
Data Processing Errors
|
CVE-2015-1759
|
2024-11-21 11:26 |
2015-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272249
|
- |
|
microsoft
|
windows_rt windows_8 windows_7 windows_server_2008 windows_vista windows_server_2012
|
Untrusted search path vulnerability in the LoadLibrary function in the kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows Server 2012, and Wi…
|
NVD-CWE-Other
|
CVE-2015-1758
|
2024-11-21 11:26 |
2015-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272250
|
- |
|
microsoft
|
active_directory_federation_services
|
Cross-site scripting (XSS) vulnerability in adfs/ls in Active Directory Federation Services (AD FS) in Microsoft Windows Server 2008 SP2 and R2 SP1 and Server 2012 allows remote attackers to inject a…
|
CWE-79
Cross-site Scripting
|
CVE-2015-1757
|
2024-11-21 11:26 |
2015-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|