|
272801
|
7.8 |
HIGH
Local
|
dell hp
|
latitude_e6430_firmware elitebook_850_g1_firmware
|
The System Management Mode (SMM) implementation in Dell Latitude E6430 BIOS Revision A09, HP EliteBook 850 G1 BIOS revision L71 Ver. 01.09, and possibly other BIOS implementations does not ensure tha…
|
CWE-269
Improper Privilege Management
|
CVE-2015-0949
|
2024-11-21 11:24 |
2020-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272802
|
9.8 |
CRITICAL
Network
|
opto22
|
optodatalink optoopcserver pac_display pac_project
|
A vulnerable file in Opto 22 PAC Project Professional versions prior to R9.4006, PAC Project Basic versions prior to R9.4006, PAC Display Basic versions prior to R9.4f, PAC Display Professional versi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-1006
|
2024-11-21 11:24 |
2019-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272803
|
7.3 |
HIGH
Local
|
schneider-electric
|
opc_factory_server
|
A successful exploit of these vulnerabilities requires the local user to load a crafted DLL file in the system directory on servers running Schneider Electric OFS v3.5 with version v7.40 of SCADA Exp…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2015-1014
|
2024-11-21 11:24 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272804
|
7.5 |
HIGH
Network
|
pfizer
|
lifecare_pca_infusion_system_firmware
|
Wireless keys are stored in plain text on version 5 of the Hospira LifeCare PCA Infusion System. According to Hospira, version 3 of the LifeCare PCA Infusion System is not indicated for wireless use,…
|
CWE-200
Information Exposure
|
CVE-2015-1012
|
2024-11-21 11:24 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272805
|
7.8 |
HIGH
Local
|
opto22
|
optodatalink optoopcserver pac_display pac_project
|
A specially crafted configuration file could be used to cause a stack-based buffer overflow condition in the OPCTest.exe, which may allow remote code execution on Opto 22 PAC Project Professional ver…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-1007
|
2024-11-21 11:24 |
2019-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272806
|
8.6 |
HIGH
Network
|
intel linux dpdk
|
x710_firmware 82599_firmware x540_firmware i350_firmware 82576_firmware linux_kernel_ixgbe linux_kernel_i40e\/i40evf dpdk
|
On multiple SR-IOV cars it is possible for VF's assigned to guests to send ethernet flow control pause frames via the PF. This includes Linux kernel ixgbe driver before commit f079fa005aae08ee0e1bc32…
|
CWE-254
7PK - Security Features
|
CVE-2015-1142857
|
2024-11-21 11:24 |
2018-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272807
|
5.5 |
MEDIUM
Local
|
ffmpeg
|
ffmpeg
|
Integer underflow in the mov_read_default function in libavformat/mov.c in FFmpeg before 2.4.6 allows remote attackers to obtain sensitive information from heap and/or stack memory via a crafted MP4 …
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2015-1208
|
2024-11-21 11:24 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272808
|
6.5 |
MEDIUM
Network
|
uclouvain google debian
|
openjpeg pdfium debian_linux
|
Double free vulnerability in the j2k_read_ppm_v3 function in OpenJPEG before r2997, as used in PDFium in Google Chrome, allows remote attackers to cause a denial of service (process crash) via a craf…
|
CWE-415
Double Free
|
CVE-2015-1239
|
2024-11-21 11:24 |
2017-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272809
|
5.5 |
MEDIUM
Local
|
google
|
chrome
|
Heap-based buffer overflow in Google Chrome before M40 allows remote attackers to cause a denial of service (unpaged memory write and process crash) via a crafted MP4 file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-1206
|
2024-11-21 11:24 |
2017-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272810
|
5.9 |
MEDIUM
Network
|
percona
|
xtrabackup toolkit
|
The version checking subroutine in percona-toolkit before 2.2.13 and xtrabackup before 2.2.9 was vulnerable to silent HTTP downgrade attacks and Man In The Middle attacks in which the server response…
|
CWE-200
Information Exposure
|
CVE-2015-1027
|
2024-11-21 11:24 |
2017-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|