|
273191
|
- |
|
cisco
|
headend_digital_broadband_delivery_system
|
CRLF injection vulnerability in the HTTP Header Handler in Digital Broadband Delivery System in Cisco Headend System Release allows remote attackers to inject arbitrary HTTP headers, and conduct HTTP…
|
CWE-113
HTTP Response Splitting
|
CVE-2015-0733
|
2024-11-21 11:23 |
2015-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273192
|
- |
|
canonical wouter_verhelst
|
ubuntu_linux nbd
|
nbd-server.c in Network Block Device (nbd-server) before 3.11 does not properly handle signals, which allows remote attackers to cause a denial of service (deadlock) via unspecified vectors.
|
CWE-17
Code
|
CVE-2015-0847
|
2024-11-21 11:23 |
2015-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273193
|
- |
|
cisco
|
identity_services_engine_software
|
The web framework in Cisco Identity Services Engine (ISE) 1.2(1.901) and 1.3(0.722) does not properly implement session handlers, which allows remote attackers to obtain sensitive information by read…
|
CWE-200
Information Exposure
|
CVE-2015-0757
|
2024-11-21 11:23 |
2015-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273194
|
- |
|
cisco
|
wireless_lan_controller
|
Cisco Wireless LAN Controller (WLC) devices with software 7.4(1.1) allow remote attackers to cause a denial of service (wireless-networking outage) via crafted TCP traffic on the local network, aka B…
|
CWE-20 CWE-399
Improper Input Validation Resource Management Errors
|
CVE-2015-0756
|
2024-11-21 11:23 |
2015-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273195
|
- |
|
cisco
|
anyconnect_secure_mobility_client
|
The Posture module for Cisco Identity Services Engine (ISE), as distributed in Cisco AnyConnect Secure Mobility Client 4.0(64), allows local users to gain privileges via unspecified commands, aka Bug…
|
CWE-284
Improper Access Control
|
CVE-2015-0755
|
2024-11-21 11:23 |
2015-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273196
|
- |
|
cisco
|
finesse
|
Cisco Finesse 10.5(1) allows remote authenticated users to obtain sensitive information or cause a denial of service (CPU and memory consumption) via a crafted XML document, aka Bug ID CSCut95810.
|
CWE-20
Improper Input Validation
|
CVE-2015-0754
|
2024-11-21 11:23 |
2015-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273197
|
- |
|
cisco
|
unified_web_and_e-mail_interaction_manager
|
SQL injection vulnerability in Cisco Unified Email Interaction Manager (EIM) and Unified Web Interaction Manager (WIM) 9.0(2) allows remote attackers to execute arbitrary SQL commands via unspecified…
|
CWE-20
Improper Input Validation
|
CVE-2015-0753
|
2024-11-21 11:23 |
2015-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273198
|
- |
|
cisco
|
telepresence_video_communication_server
|
Cross-site scripting (XSS) vulnerability in Cisco TelePresence Video Communication Server (VCS) X8.5.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSC…
|
CWE-79
Cross-site Scripting
|
CVE-2015-0752
|
2024-11-21 11:23 |
2015-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273199
|
- |
|
cisco
|
unified_communications_manager
|
Cisco IP Phone 7861, when firmware from Cisco Unified Communications Manager 10.3(1) is used, allows remote attackers to cause a denial of service via crafted packets, aka Bug ID CSCus81800.
|
CWE-20 CWE-399
Improper Input Validation Resource Management Errors
|
CVE-2015-0751
|
2024-11-21 11:23 |
2015-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273200
|
- |
|
emc
|
document_sciences_xpression
|
SQL injection vulnerability in the xAdmin interface in EMC Document Sciences xPression 4.2 before P44 and 4.5 SP1 before P03 allows remote authenticated users to execute arbitrary SQL commands via un…
|
CWE-89
SQL Injection
|
CVE-2015-0540
|
2024-11-21 11:23 |
2015-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|