|
269691
|
8.4 |
HIGH
Local
|
hp
|
ucmdb_browser
|
HPE UCMDB Browser before 4.02 allows remote attackers to obtain sensitive information or bypass intended access restrictions via unspecified vectors.
|
CWE-200 CWE-284
Information Exposure Improper Access Control
|
CVE-2015-6862
|
2024-11-21 11:35 |
2016-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269692
|
7.8 |
HIGH
Local
|
google
|
android
|
The Widevine QSEE TrustZone application in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to gain privileges via a crafted application that leverages QSEECOM access, aka i…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6647
|
2024-11-21 11:35 |
2016-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269693
|
6.2 |
MEDIUM
Local
|
google
|
android
|
The System V IPC implementation in the kernel in Android before 6.0 2016-01-01 allows attackers to cause a denial of service (global kernel resource consumption) by leveraging improper interaction be…
|
CWE-399
Resource Management Errors
|
CVE-2015-6646
|
2024-11-21 11:35 |
2016-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269694
|
5.0 |
MEDIUM
Local
|
google
|
android
|
SyncManager in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to cause a denial of service (continuous rebooting) via a crafted application, aka internal bug 23591205.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6645
|
2024-11-21 11:35 |
2016-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269695
|
3.3 |
LOW
Local
|
google
|
android
|
Bouncy Castle in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information via a crafted application, aka internal bug 24106146.
|
CWE-200
Information Exposure
|
CVE-2015-6644
|
2024-11-21 11:35 |
2016-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269696
|
6.6 |
MEDIUM
Physics
|
google
|
android
|
Setup Wizard in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows physically proximate attackers to modify settings or bypass a reset protection mechanism via unspecified vectors, aka …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6643
|
2024-11-21 11:35 |
2016-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269697
|
9.8 |
CRITICAL
Network
|
google
|
android
|
The kernel in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors,…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6642
|
2024-11-21 11:35 |
2016-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269698
|
3.1 |
LOW
Adjacent
|
google
|
android
|
Bluetooth in Android 6.0 before 2016-01-01 allows remote attackers to obtain sensitive Contacts information by leveraging pairing, aka internal bug 23607427.
|
CWE-200
Information Exposure
|
CVE-2015-6641
|
2024-11-21 11:35 |
2016-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269699
|
7.8 |
HIGH
Local
|
google
|
android
|
The prctl_set_vma_anon_name function in kernel/sys.c in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 does not ensure that only one vma is accessed in a certain update action, which allows at…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6640
|
2024-11-21 11:35 |
2016-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269700
|
7.8 |
HIGH
Local
|
google
|
android
|
The Widevine QSEE TrustZone application in Android 5.x before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to gain privileges via a crafted application that leverages QSEECOM access, aka i…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6639
|
2024-11-21 11:35 |
2016-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|