|
268201
|
5.0 |
MEDIUM
Network
|
xen
|
xen
|
The hvm_set_callback_via function in arch/x86/hvm/irq.c in Xen 4.6 does not limit the number of printk console messages when logging the new callback method, which allows local HVM guest OS users to …
|
CWE-254
7PK - Security Features
|
CVE-2015-8615
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268202
|
8.4 |
HIGH
Local
|
blueman_project
|
blueman
|
The EnableNetwork method in the Network class in plugins/mechanism/Network.py in Blueman before 2.0.3 allows local users to gain privileges via the dhcp_handler argument.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-8612
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268203
|
7.4 |
HIGH
Network
|
bluecoat
|
proxysg advanced_secure_gateway
|
Open redirect vulnerability in Blue Coat ProxySG 6.5 before 6.5.8.8 and 6.6 and Advanced Secure Gateway (ASG) 6.6 might allow remote attackers to redirect users to arbitrary web sites and conduct phi…
|
NVD-CWE-Other
|
CVE-2015-8597
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268204
|
7.5 |
HIGH
Network
|
quassel-irc opensuse
|
quassel leap opensuse
|
The CoreUserInputHandler::doMode function in core/coreuserinputhandler.cpp in Quassel 0.10.0 allows remote attackers to cause a denial of service (application crash) via the "/op *" command in a quer…
|
CWE-17
Code
|
CVE-2015-8547
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268205
|
3.1 |
LOW
Network
|
atlassian
|
jira_core jira_server jira_service_desk
|
Atlassian JIRA Software 7.0.3, JIRA Core 7.0.3, and the bundled JIRA Service Desk 3.0.3 installer attaches the wrong image to e-mail notifications when a user views an issue with inline wiki markup r…
|
CWE-200
Information Exposure
|
CVE-2015-8481
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268206
|
4.0 |
MEDIUM
Local
|
huawei
|
document_security_management
|
Huawei Document Security Management (DSM) with software before V100R002C05SPC661 does not clear the clipboard when closing a secure file, which allows local users to obtain sensitive information by p…
|
CWE-200
Information Exposure
|
CVE-2015-8303
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268207
|
5.5 |
MEDIUM
Local
|
huawei
|
gem-703l_firmware ale_firmware
|
The Joint Photographic Experts Group Processing Unit (JPU) driver in Huawei ALE smartphones with software before ALE-UL00C00B220 and ALE-TL00C01B220 and GEM-703L smartphones with software before V100…
|
CWE-20
Improper Input Validation
|
CVE-2015-8226
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268208
|
5.5 |
MEDIUM
Local
|
huawei
|
gem-703l_firmware ale_firmware
|
The Joint Photographic Experts Group Processing Unit (JPU) driver in Huawei ALE smartphones with software before ALE-UL00C00B220 and ALE-TL00C01B220 and GEM-703L smartphones with software before V100…
|
CWE-20
Improper Input Validation
|
CVE-2015-8225
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268209
|
9.8 |
CRITICAL
Network
|
progress
|
whatsup_gold
|
The DroneDeleteOldMeasurements implementation in Ipswitch WhatsUp Gold before 16.4 does not properly validate serialized XML objects, which allows remote attackers to conduct SQL injection attacks vi…
|
CWE-89
SQL Injection
|
CVE-2015-8261
|
2024-11-21 11:38 |
2016-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268210
|
3.5 |
LOW
Network
|
mozilla
|
bugzilla
|
Template.pm in Bugzilla 2.x, 3.x, and 4.x before 4.2.16, 4.3.x and 4.4.x before 4.4.11, and 4.5.x and 5.0.x before 5.0.2 does not properly construct CSV files, which allows remote attackers to obtain…
|
CWE-200
Information Exposure
|
CVE-2015-8509
|
2024-11-21 11:38 |
2016-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|