|
273021
|
- |
|
moxa
|
vport_activex_sdk_plus
|
Multiple stack-based buffer overflows in Moxa VPort ActiveX SDK Plus before 2.8 allow remote attackers to insert assembly-code lines via vectors involving a regkey (1) set or (2) get command.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-0986
|
2024-11-21 11:24 |
2015-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273022
|
- |
|
osisoft
|
pi_sql_for_af pi_server
|
OSIsoft PI AF 2.6 and 2.7 and PI SQL for AF 2.1.2.19 do not ensure that the PI SQL (AF) Trusted Users group lacks the Everyone account, which allows remote authenticated users to bypass intended comm…
|
CWE-89
SQL Injection
|
CVE-2015-1013
|
2024-11-21 11:24 |
2015-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273023
|
- |
|
emerson
|
ams_device_manager
|
SQL injection vulnerability in Emerson AMS Device Manager before 13 allows remote authenticated users to gain privileges via malformed input.
|
CWE-89
SQL Injection
|
CVE-2015-1008
|
2024-11-21 11:24 |
2015-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273024
|
- |
|
barracuda
|
web_filter
|
Barracuda Web Filter 7.x and 8.x before 8.1.0.005, when SSL Inspection is enabled, uses the same root Certification Authority certificate across different customers' installations, which makes it eas…
|
CWE-18
Source Code
|
CVE-2015-0962
|
2024-11-21 11:24 |
2015-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273025
|
- |
|
barracuda
|
web_filter
|
Barracuda Web Filter before 8.1.0.005, when SSL Inspection is enabled, does not verify X.509 certificates from upstream SSL servers, which allows man-in-the-middle attackers to spoof servers and obta…
|
NVD-CWE-Other
|
CVE-2015-0961
|
2024-11-21 11:24 |
2015-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273026
|
- |
|
bomgar
|
remote_support
|
Bomgar Remote Support before 15.1.1 allows remote attackers to execute arbitrary PHP code via crafted serialized data to unspecified PHP scripts.
|
CWE-94
Code Injection
|
CVE-2015-0935
|
2024-11-21 11:24 |
2015-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273027
|
- |
|
swisscom
|
centro_grande_firmware
|
The certificate verification functions in the HNDS service in Swisscom Centro Grande (ADB) DSL routers with firmware before 6.14.00 allows remote attackers to access the management functions via unkn…
|
NVD-CWE-Other
|
CVE-2015-1188
|
2024-11-21 11:24 |
2015-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273028
|
- |
|
google debian
|
chrome debian_linux
|
Use-after-free vulnerability in content/renderer/media/webaudio_capturer_source.cc in the WebAudio implementation in Google Chrome before 43.0.2357.65 allows remote attackers to cause a denial of ser…
|
NVD-CWE-Other
|
CVE-2015-1255
|
2024-11-21 11:24 |
2015-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273029
|
- |
|
debian google
|
debian_linux chrome
|
core/dom/Document.cpp in Blink, as used in Google Chrome before 43.0.2357.65, enables the inheritance of the designMode attribute, which allows remote attackers to bypass the Same Origin Policy by le…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-1254
|
2024-11-21 11:24 |
2015-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273030
|
- |
|
debian google
|
debian_linux chrome
|
core/html/parser/HTMLConstructionSite.cpp in the DOM implementation in Blink, as used in Google Chrome before 43.0.2357.65, allows remote attackers to bypass the Same Origin Policy via crafted JavaSc…
|
CWE-284
Improper Access Control
|
CVE-2015-1253
|
2024-11-21 11:24 |
2015-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|