|
273331
|
- |
|
debian canonical
|
dpkg ubuntu_linux
|
The dpkg-source command in Debian dpkg before 1.16.16 and 1.17.x before 1.17.25 allows remote attackers to bypass signature verification via a crafted Debian source control file (.dsc).
|
CWE-284
Improper Access Control
|
CVE-2015-0840
|
2024-11-21 11:23 |
2015-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273332
|
- |
|
cisco
|
adaptive_security_appliance_software
|
The XML parser in Cisco Adaptive Security Appliance (ASA) Software 8.4 before 8.4(7.28), 8.6 before 8.6(1.17), 9.0 before 9.0(4.33), 9.1 before 9.1(6), 9.2 before 9.2(3.4), and 9.3 before 9.3(3), whe…
|
CWE-20
Improper Input Validation
|
CVE-2015-0677
|
2024-11-21 11:23 |
2015-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273333
|
- |
|
cisco
|
adaptive_security_appliance_software
|
The DNS implementation in Cisco Adaptive Security Appliance (ASA) Software 7.2 before 7.2(5.16), 8.2 before 8.2(5.57), 8.3 before 8.3(2.44), 8.4 before 8.4(7.28), 8.5 before 8.5(1.24), 8.6 before 8.6…
|
CWE-20
Improper Input Validation
|
CVE-2015-0676
|
2024-11-21 11:23 |
2015-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273334
|
- |
|
cisco
|
adaptive_security_appliance_software
|
The failover ipsec implementation in Cisco Adaptive Security Appliance (ASA) Software 9.1 before 9.1(6), 9.2 before 9.2(3.3), and 9.3 before 9.3(3) does not properly validate failover communication m…
|
CWE-284
Improper Access Control
|
CVE-2015-0675
|
2024-11-21 11:23 |
2015-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273335
|
- |
|
cisco
|
ios_xr asr_9001 asr_9006 asr_9010 asr_9904 asr_9912 asr_9922
|
Cisco ASR 9000 devices with software 5.3.0.BASE do not recognize that certain ACL entries have a single-host constraint, which allows remote attackers to bypass intended network-resource access restr…
|
CWE-284
Improper Access Control
|
CVE-2015-0694
|
2024-11-21 11:23 |
2015-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273336
|
- |
|
cisco
|
web_security_appliance
|
Cisco Web Security Appliance (WSA) devices with software 8.5.0-ise-147 do not properly restrict use of the pickle Python module during certain tunnel-status checks, which allows local users to execut…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-0692
|
2024-11-21 11:23 |
2015-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273337
|
- |
|
cisco
|
asa_with_firepower_services asa_cx_context-aware_security_software
|
The virtualization layer in Cisco ASA FirePOWER Software before 5.3.1.2 and 5.4.x before 5.4.0.1 and ASA Context-Aware (CX) Software before 9.3.2.1-9 allows remote attackers to cause a denial of serv…
|
CWE-20
Improper Input Validation
|
CVE-2015-0678
|
2024-11-21 11:23 |
2015-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273338
|
- |
|
arj_software fedoraproject
|
arj_archiver fedora
|
Open-source ARJ archiver 3.10.22 does not properly remove leading slashes from paths, which allows remote attackers to conduct absolute path traversal attacks and write to arbitrary files via multipl…
|
CWE-22
Path Traversal
|
CVE-2015-0557
|
2024-11-21 11:23 |
2015-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273339
|
- |
|
arj_software fedoraproject
|
arj_archiver fedora
|
Open-source ARJ archiver 3.10.22 allows remote attackers to conduct directory traversal attacks via a symlink attack in an ARJ archive.
|
CWE-59
Link Following
|
CVE-2015-0556
|
2024-11-21 11:23 |
2015-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273340
|
- |
|
canonical opensuse mozilla
|
ubuntu_linux opensuse firefox
|
The HTTP Alternative Services feature in Mozilla Firefox before 37.0.1 allows man-in-the-middle attackers to bypass an intended X.509 certificate-verification step for an SSL server by specifying tha…
|
CWE-20
Improper Input Validation
|
CVE-2015-0799
|
2024-11-21 11:23 |
2015-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|