|
269951
|
- |
|
mozilla
|
firefox
|
The Reader View implementation in Mozilla Firefox before 42.0 has an improper whitelist, which makes it easier for remote attackers to bypass the Content Security Policy (CSP) protection mechanism an…
|
CWE-79
Cross-site Scripting
|
CVE-2015-4518
|
2024-11-21 11:31 |
2015-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269952
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox before 42.0, when NTLM v1 is enabled for HTTP authentication, allows remote attackers to obtain sensitive hostname information by constructing a crafted web site that sends an NTLM re…
|
CWE-200
Information Exposure
|
CVE-2015-4515
|
2024-11-21 11:31 |
2015-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269953
|
- |
|
mozilla
|
firefox
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 42.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly exe…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-4514
|
2024-11-21 11:31 |
2015-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269954
|
- |
|
mozilla
|
firefox
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4 allow remote attackers to cause a denial of service (memory corruption and a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-4513
|
2024-11-21 11:31 |
2015-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269955
|
- |
|
fedoraproject opensuse polkit_project
|
fedora opensuse polkit
|
Integer overflow in the authentication_agent_new_cookie function in PolicyKit (aka polkit) before 0.113 allows local users to gain privileges by creating a large number of connections, which triggers…
|
CWE-189
Numeric Errors
|
CVE-2015-4625
|
2024-11-21 11:31 |
2015-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269956
|
- |
|
owncloud
|
owncloud_desktop_client
|
ownCloud Desktop Client before 1.8.2 does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which allows man-in-the-middle attackers to bypass the user's certificate dist…
|
NVD-CWE-Other
|
CVE-2015-4456
|
2024-11-21 11:31 |
2015-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269957
|
- |
|
oracle
|
solaris
|
Unspecified vulnerability in Oracle Sun Solaris 11.2 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Solaris Kernel Zones, a different vulnera…
|
NVD-CWE-noinfo
|
CVE-2015-4907
|
2024-11-21 11:31 |
2015-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269958
|
- |
|
oracle
|
javafx jre jdk
|
Unspecified vulnerability in Oracle Java SE 8u60 and JavaFX 2.2.85 allows remote attackers to affect confidentiality via unknown vectors related to JavaFX, a different vulnerability than CVE-2015-490…
|
NVD-CWE-noinfo
|
CVE-2015-4906
|
2024-11-21 11:31 |
2015-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269959
|
- |
|
oracle
|
mysql
|
Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier allows remote authenticated users to affect availability via vectors related to Server : DML.
|
NVD-CWE-noinfo
|
CVE-2015-4905
|
2024-11-21 11:31 |
2015-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269960
|
- |
|
oracle
|
mysql
|
Unspecified vulnerability in Oracle MySQL Server 5.6.25 and earlier allows remote authenticated users to affect availability via unknown vectors related to libmysqld.
|
NVD-CWE-noinfo
|
CVE-2015-4904
|
2024-11-21 11:31 |
2015-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|