|
270731
|
- |
|
linux redhat debian canonical
|
linux_kernel enterprise_linux debian_linux ubuntu_linux
|
The ping_unhash function in net/ipv4/ping.c in the Linux kernel before 4.0.3 does not initialize a certain list data structure during an unhash operation, which allows local users to gain privileges …
|
NVD-CWE-Other
|
CVE-2015-3636
|
2024-11-21 11:29 |
2015-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270732
|
- |
|
debian wordpress
|
debian_linux wordpress
|
Cross-site scripting (XSS) vulnerability in the Ephox (formerly Moxiecode) plupload.flash.swf shim 2.1.2 in Plupload, as used in WordPress 3.9.x, 4.0.x, and 4.1.x before 4.1.2 and other products, all…
|
CWE-79
Cross-site Scripting
|
CVE-2015-3439
|
2024-11-21 11:29 |
2015-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270733
|
- |
|
wordpress debian
|
wordpress debian_linux
|
Multiple cross-site scripting (XSS) vulnerabilities in WordPress before 4.1.2, when MySQL is used without strict mode, allow remote attackers to inject arbitrary web script or HTML via a (1) four-byt…
|
CWE-79
Cross-site Scripting
|
CVE-2015-3438
|
2024-11-21 11:29 |
2015-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270734
|
- |
|
debian wordpress
|
debian_linux wordpress
|
Cross-site scripting (XSS) vulnerability in wp-includes/wp-db.php in WordPress before 4.2.1 allows remote attackers to inject arbitrary web script or HTML via a long comment that is improperly stored…
|
CWE-79
Cross-site Scripting
|
CVE-2015-3440
|
2024-11-21 11:29 |
2015-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270735
|
- |
|
nvidia
|
gpu_driver
|
The NVIDIA GPU driver for FreeBSD R352 before 352.09, 346 before 346.72, R349 before 349.16, R343 before 343.36, R340 before 340.76, R337 before 337.25, R334 before 334.21, R331 before 331.113, and R…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-3625
|
2024-11-21 11:29 |
2015-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270736
|
- |
|
sap
|
enterprise_central_component
|
Untrusted search path vulnerability in SAP Enterprise Central Component (ECC) allows local users to gain privileges via a Trojan horse program.
|
CWE-20
Improper Input Validation
|
CVE-2015-3621
|
2024-11-21 11:29 |
2015-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270737
|
- |
|
sap
|
afaria
|
The Windows client in SAP Afaria 7.0.6398.0 uses weak permissions (Everyone: read and Everyone: write) for the install folder, which allows local users to gain privileges via a Trojan horse XeService…
|
CWE-254
7PK - Security Features
|
CVE-2015-3449
|
2024-11-21 11:29 |
2015-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270738
|
- |
|
xen
|
xen
|
Stack-based buffer overflow in the xl command line utility in Xen 4.1.x through 4.5.x allows local guest administrators to gain privileges via a long configuration argument.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-3259
|
2024-11-21 11:29 |
2015-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270739
|
- |
|
linuxfoundation debian canonical
|
cups-filters debian_linux ubuntu_linux
|
Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.71 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted line si…
|
CWE-189
Numeric Errors
|
CVE-2015-3279
|
2024-11-21 11:29 |
2015-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270740
|
- |
|
debian canonical linuxfoundation
|
debian_linux ubuntu_linux cups-filters
|
Heap-based buffer overflow in the WriteProlog function in filter/texttopdf.c in texttopdf in cups-filters before 1.0.70 allows remote attackers to cause a denial of service (crash) or possibly execut…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3258
|
2024-11-21 11:29 |
2015-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|