|
272181
|
- |
|
dokuwiki
|
dokuwiki
|
DokuWiki before 2014-05-05d and before 2014-09-29c does not properly check permissions for the ACL plugins, which allows remote authenticated users to gain privileges and add or delete ACL rules via …
|
CWE-284
Improper Access Control
|
CVE-2015-2172
|
2024-11-21 11:26 |
2015-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272182
|
- |
|
slimframework
|
slim
|
Middleware/SessionCookie.php in Slim before 2.6.0 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via crafted session data.
|
CWE-94
Code Injection
|
CVE-2015-2171
|
2024-11-21 11:26 |
2015-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272183
|
- |
|
freeipa fedoraproject
|
freeipa fedora
|
The get_user_grouplist function in the extdom plug-in in FreeIPA before 4.1.4 does not properly reallocate memory when processing user accounts, which allows remote attackers to cause a denial of ser…
|
CWE-19
Data Processing Errors
|
CVE-2015-1827
|
2024-11-21 11:26 |
2015-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272184
|
- |
|
selinux fedoraproject
|
setroubleshoot fedora
|
The get_rpm_nvr_by_file_path_temporary function in util.py in setroubleshoot before 3.2.22 allows remote attackers to execute arbitrary commands via shell metacharacters in a file name.
|
CWE-77
Command Injection
|
CVE-2015-1815
|
2024-11-21 11:26 |
2015-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272185
|
- |
|
fedoraproject debian opensuse putty simon_tatham
|
fedora debian_linux opensuse putty
|
The (1) ssh2_load_userkey and (2) ssh2_save_userkey functions in PuTTY 0.51 through 0.63 do not properly wipe SSH-2 private keys from memory, which allows local users to obtain sensitive information …
|
CWE-200
Information Exposure
|
CVE-2015-2157
|
2024-11-21 11:26 |
2015-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272186
|
- |
|
debian fedoraproject opensuse oracle tcpdump
|
debian_linux fedora opensuse solaris tcpdump
|
The force printer in tcpdump before 4.7.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2015-2155
|
2024-11-21 11:26 |
2015-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272187
|
- |
|
tcpdump
|
tcpdump
|
The osi_print_cksum function in print-isoclns.c in the ethernet printer in tcpdump before 4.7.2 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted (1) l…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-2154
|
2024-11-21 11:26 |
2015-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272188
|
- |
|
tcpdump
|
tcpdump
|
The rpki_rtr_pdu_print function in print-rpki-rtr.c in the TCP printer in tcpdump before 4.7.2 allows remote attackers to cause a denial of service (out-of-bounds read or write and crash) via a craft…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-2153
|
2024-11-21 11:26 |
2015-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272189
|
- |
|
x
|
libxfont
|
The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly perform type conversion for metrics values, which allows remote authenticate…
|
CWE-189
Numeric Errors
|
CVE-2015-1804
|
2024-11-21 11:26 |
2015-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272190
|
- |
|
canonical debian x
|
ubuntu_linux debian_linux libxfont
|
The bdfReadCharacters function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 does not properly handle character bitmaps it cannot read, which allows remote authenticated u…
|
NVD-CWE-Other
|
CVE-2015-1803
|
2024-11-21 11:26 |
2015-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|