|
269511
|
- |
|
openstack
|
neutron
|
Race condition in OpenStack Neutron before 2014.2.4 and 2015.1 before 2015.1.2, when using the ML2 plugin or the security groups AMQP API, allows remote authenticated users to bypass IP anti-spoofing…
|
CWE-362
Race Condition
|
CVE-2015-5240
|
2024-11-21 11:32 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269512
|
- |
|
redhat
|
jboss_enterprise_application_platform jboss_wildfly_application_server
|
The Web Console in Red Hat Enterprise Application Platform (EAP) before 6.4.4 and WildFly (formerly JBoss Application Server) allows remote attackers to cause a denial of service (memory consumption)…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-5220
|
2024-11-21 11:32 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269513
|
- |
|
redhat
|
jboss_enterprise_application_platform jboss_wildfly_application_server
|
Cross-site request forgery (CSRF) vulnerability in the Web Console (web-console) in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) before 2.0.0.C…
|
CWE-352
Origin Validation Error
|
CVE-2015-5188
|
2024-11-21 11:32 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269514
|
- |
|
redhat
|
jboss_wildfly_application_server jboss_enterprise_application_platform
|
The Management Console in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) does not send an X-Frame-Options HTTP header, which makes it easier for …
|
CWE-254
7PK - Security Features
|
CVE-2015-5178
|
2024-11-21 11:32 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269515
|
- |
|
openstack
|
image_registry_and_delivery_service_\(glance\)
|
OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allows remote authenticated users to bypass the storage quota and cause a denial of service (disk consumpti…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-5286
|
2024-11-21 11:32 |
2015-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269516
|
- |
|
openstack
|
image_registry_and_delivery_service_\(glance\)
|
OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allow remote authenticated users to change the status of their images and bypass access restrictions via th…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-5251
|
2024-11-21 11:32 |
2015-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269517
|
- |
|
openstack
|
swift
|
OpenStack Object Storage (Swift) before 2.4.0 allows attackers to obtain sensitive information via a PUT tempurl and a DLO object manifest that references an object in another container.
|
CWE-200
Information Exposure
|
CVE-2015-5223
|
2024-11-21 11:32 |
2015-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269518
|
- |
|
postgresql debian canonical
|
postgresql debian_linux ubuntu_linux
|
Multiple stack-based buffer overflows in json parsing in PostgreSQL before 9.3.x before 9.3.10 and 9.4.x before 9.4.5 allow attackers to cause a denial of service (server crash) via unspecified vecto…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-5289
|
2024-11-21 11:32 |
2015-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269519
|
- |
|
postgresql
|
postgresql
|
The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service…
|
CWE-200
Information Exposure
|
CVE-2015-5288
|
2024-11-21 11:32 |
2015-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269520
|
- |
|
ibm
|
cognos_disclosure_management
|
IBM Cognos Disclosure Management (CDM) 10.1.x and 10.2.x before 10.2.4 IF10 allows man-in-the-middle attackers to obtain access by spoofing an executable file during a client upload operation.
|
CWE-20
Improper Input Validation
|
CVE-2015-5014
|
2024-11-21 11:32 |
2015-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|