|
268281
|
- |
|
adobe google
|
air air_sdk air_sdk_\&_compiler flash_player android
|
Buffer overflow in Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before 19.0.0.190, Adobe AIR SDK before 19.0.0.190, …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-6676
|
2024-11-21 11:35 |
2015-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268282
|
- |
|
jupyter fedoraproject opensuse ipython
|
notebook fedora opensuse
|
Cross-site scripting (XSS) vulnerability in the file browser in notebook/notebookapp.py in IPython Notebook before 3.2.2 and Jupyter Notebook 4.0.x before 4.0.5 allows remote attackers to inject arbi…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6938
|
2024-11-21 11:35 |
2015-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268283
|
- |
|
vboxcomm
|
satellite_express_protocol
|
The ndvbs module in VBox Communications Satellite Express Protocol 2.3.17.3 allows local users to write to arbitrary physical memory locations and gain privileges via a 0x00000ffd ioctl call.
|
NVD-CWE-Other
|
CVE-2015-6923
|
2024-11-21 11:35 |
2015-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268284
|
- |
|
xiph
|
vorbis-tools
|
Buffer overflow in the aiff_open function in oggenc/audio.c in vorbis-tools 1.4.0 and earlier allows remote attackers to cause a denial of service (crash) via a crafted AIFF file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-6749
|
2024-11-21 11:35 |
2015-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268285
|
- |
|
symantec
|
web_gateway
|
Multiple SQL injection vulnerabilities in a PHP script in the management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allow remote authenticated users to …
|
CWE-89
SQL Injection
|
CVE-2015-6548
|
2024-11-21 11:35 |
2015-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268286
|
- |
|
symantec
|
web_gateway
|
The management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allows remote authenticated users to execute arbitrary commands at boot time via unspecified v…
|
CWE-77
Command Injection
|
CVE-2015-6547
|
2024-11-21 11:35 |
2015-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268287
|
- |
|
vmware
|
vcenter_server
|
VMware vCenter Server 5.5 before u3 and 6.0 before u1 does not verify X.509 certificates from TLS LDAP servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive informat…
|
CWE-310
Cryptographic Issues
|
CVE-2015-6932
|
2024-11-21 11:35 |
2015-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268288
|
- |
|
3s-smart
|
codesys_gateway_server
|
Multiple heap-based buffer overflows in 3S-Smart CODESYS Gateway Server before 2.3.9.34 allow remote attackers to execute arbitrary code via opcode (1) 0x3ef or (2) 0x3f0.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-6460
|
2024-11-21 11:35 |
2015-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268289
|
- |
|
ge
|
mds_pulsenet
|
Absolute path traversal vulnerability in the download feature in FileDownloadServlet in GE Digital Energy MDS PulseNET and MDS PulseNET Enterprise before 3.1.5 allows remote attackers to read or dele…
|
CWE-22
Path Traversal
|
CVE-2015-6459
|
2024-11-21 11:35 |
2015-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268290
|
- |
|
ge
|
mds_pulsenet
|
GE Digital Energy MDS PulseNET and MDS PulseNET Enterprise before 3.1.5 have hardcoded credentials for a support account, which allows remote attackers to obtain administrative access, and consequent…
|
NVD-CWE-Other
|
CVE-2015-6456
|
2024-11-21 11:35 |
2015-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|