|
267371
|
7.8 |
HIGH
Local
|
exfat_project
|
exfat
|
Heap-based buffer overflow in the verify_vbr_checksum function in exfatfsck in exfat-utils before 1.2.1 allows remote attackers to cause a denial of service (infinite loop) or possibly execute arbitr…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8026
|
2024-11-21 11:37 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267372
|
8.1 |
HIGH
Network
|
windriver
|
vxworks
|
Integer overflow in the _authenticate function in svc_auth.c in Wind River VxWorks 5.5 through 6.9.4.1, when the Remote Procedure Call (RPC) protocol is enabled, allows remote attackers to cause a de…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2015-7599
|
2024-11-21 11:37 |
2017-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267373
|
3.3 |
LOW
Local
|
saltstack
|
salt
|
The state.sls function in Salt before 2015.8.3 uses weak permissions on the cache data, which allows local users to obtain sensitive information by reading the file.
|
CWE-200
Information Exposure
|
CVE-2015-8034
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267374
|
7.5 |
HIGH
Network
|
ntp
|
ntp
|
NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (client-server association tear down) by sending broadcast packets with invalid authentication to a bro…
|
CWE-19
Data Processing Errors
|
CVE-2015-7979
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267375
|
7.5 |
HIGH
Network
|
ntp
|
ntp
|
NTP before 4.2.8p6 and 4.3.0 before 4.3.90 allows a remote attackers to cause a denial of service (stack exhaustion) via an ntpdc relist command, which triggers recursive traversal of the restriction…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2015-7978
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267376
|
5.9 |
MEDIUM
Network
|
ntp oracle siemens netapp freebsd fedoraproject debian canonical
|
ntp linux tim_4r-ie_firmware tim_4r-ie_dnp3_firmware oncommand_balance clustered_data_ontap freebsd fedora debian_linux ubuntu_linux
|
ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command.
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-7977
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267377
|
4.3 |
MEDIUM
Network
|
ntp suse novell opensuse
|
ntp linux_enterprise_server linux_enterprise_debuginfo manager_proxy manager linux_enterprise_desktop suse_openstack_cloud leap opensuse suse_linux_enterprise_server
|
The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows attackers to cause unspecified impact via a c…
|
CWE-254
7PK - Security Features
|
CVE-2015-7976
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267378
|
6.2 |
MEDIUM
Local
|
ntp
|
ntp
|
The nextvar function in NTP before 4.2.8p6 and 4.3.x before 4.3.90 does not properly validate the length of its input, which allows an attacker to cause a denial of service (application crash).
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7975
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267379
|
6.5 |
MEDIUM
Network
|
ntp siemens freebsd netapp canonical
|
ntp tim_4r-ie_firmware tim_4r-ie_dnp3_firmware freebsd oncommand_balance clustered_data_ontap ubuntu_linux
|
NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network.
|
CWE-254
7PK - Security Features
|
CVE-2015-7973
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267380
|
6.5 |
MEDIUM
Network
|
paessler
|
prtg_network_monitor
|
XML external entity vulnerability in PRTG Network Monitor before 16.2.23.3077/3078 allows remote authenticated users to read arbitrary files by creating a new HTTP XML/REST Value sensor that accesses…
|
CWE-611
XXE
|
CVE-2015-7743
|
2024-11-21 11:37 |
2017-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|