|
268521
|
7.5 |
HIGH
Network
|
quassel-irc opensuse
|
quassel leap opensuse
|
The CoreUserInputHandler::doMode function in core/coreuserinputhandler.cpp in Quassel 0.10.0 allows remote attackers to cause a denial of service (application crash) via the "/op *" command in a quer…
|
CWE-17
Code
|
CVE-2015-8547
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268522
|
3.1 |
LOW
Network
|
atlassian
|
jira_core jira_server jira_service_desk
|
Atlassian JIRA Software 7.0.3, JIRA Core 7.0.3, and the bundled JIRA Service Desk 3.0.3 installer attaches the wrong image to e-mail notifications when a user views an issue with inline wiki markup r…
|
CWE-200
Information Exposure
|
CVE-2015-8481
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268523
|
4.0 |
MEDIUM
Local
|
huawei
|
document_security_management
|
Huawei Document Security Management (DSM) with software before V100R002C05SPC661 does not clear the clipboard when closing a secure file, which allows local users to obtain sensitive information by p…
|
CWE-200
Information Exposure
|
CVE-2015-8303
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268524
|
5.5 |
MEDIUM
Local
|
huawei
|
gem-703l_firmware ale_firmware
|
The Joint Photographic Experts Group Processing Unit (JPU) driver in Huawei ALE smartphones with software before ALE-UL00C00B220 and ALE-TL00C01B220 and GEM-703L smartphones with software before V100…
|
CWE-20
Improper Input Validation
|
CVE-2015-8226
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268525
|
5.5 |
MEDIUM
Local
|
huawei
|
gem-703l_firmware ale_firmware
|
The Joint Photographic Experts Group Processing Unit (JPU) driver in Huawei ALE smartphones with software before ALE-UL00C00B220 and ALE-TL00C01B220 and GEM-703L smartphones with software before V100…
|
CWE-20
Improper Input Validation
|
CVE-2015-8225
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268526
|
9.8 |
CRITICAL
Network
|
progress
|
whatsup_gold
|
The DroneDeleteOldMeasurements implementation in Ipswitch WhatsUp Gold before 16.4 does not properly validate serialized XML objects, which allows remote attackers to conduct SQL injection attacks vi…
|
CWE-89
SQL Injection
|
CVE-2015-8261
|
2024-11-21 11:38 |
2016-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268527
|
3.5 |
LOW
Network
|
mozilla
|
bugzilla
|
Template.pm in Bugzilla 2.x, 3.x, and 4.x before 4.2.16, 4.3.x and 4.4.x before 4.4.11, and 4.5.x and 5.0.x before 5.0.2 does not properly construct CSV files, which allows remote attackers to obtain…
|
CWE-200
Information Exposure
|
CVE-2015-8509
|
2024-11-21 11:38 |
2016-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268528
|
4.7 |
MEDIUM
Network
|
mozilla
|
bugzilla
|
Cross-site scripting (XSS) vulnerability in showdependencygraph.cgi in Bugzilla 2.x, 3.x, and 4.x before 4.2.16, 4.3.x and 4.4.x before 4.4.11, and 4.5.x and 5.0.x before 5.0.2, when a local dot conf…
|
CWE-79
Cross-site Scripting
|
CVE-2015-8508
|
2024-11-21 11:38 |
2016-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268529
|
6.5 |
MEDIUM
Network
|
zte
|
zxhn_h108n_r1a_firmware zxv10_w300_firmware
|
ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE and ZXV10 W300 devices W300V1.0.0f_ER1_PE allow remote authenticated users to bypass intended access restrictions, and discover credentials…
|
CWE-200
Information Exposure
|
CVE-2015-8703
|
2024-11-21 11:38 |
2015-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268530
|
7.5 |
HIGH
Network
|
samba debian canonical
|
samba debian_linux ubuntu_linux
|
The samldb_check_user_account_control_acl function in dsdb/samdb/ldb_modules/samldb.c in Samba 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3 does not properly check for administrative…
|
CWE-269
Improper Privilege Management
|
CVE-2015-8467
|
2024-11-21 11:38 |
2015-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|