|
270771
|
- |
|
nvidia
|
gpu_driver
|
The host memory mapping path feature in the NVIDIA GPU graphics driver R346 before 346.87 and R352 before 352.41 for Linux and R352 before 352.46 for GRID vGPU and vSGA does not properly restrict acc…
|
CWE-284
Improper Access Control
|
CVE-2015-5053
|
2024-11-21 11:32 |
2015-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270772
|
- |
|
apache
|
cordova
|
Apache Cordova-Android before 4.1.0, when an application relies on a remote server, improperly implements a JavaScript whitelist protection mechanism, which allows attackers to bypass intended access…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-5256
|
2024-11-21 11:32 |
2015-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270773
|
- |
|
hp adobe
|
xp7_command_view_advanced_edition xp_p9000_command_view_advanced_edition coldfusion livecycle_data_services
|
Adobe BlazeDS, as used in ColdFusion 10 before Update 18 and 11 before Update 7 and LiveCycle Data Services 3.0.x before 3.0.0.354175, 3.1.x before 3.1.0.354180, 4.5.x before 4.5.1.354177, 4.6.2.x be…
|
CWE-20
Improper Input Validation
|
CVE-2015-5255
|
2024-11-21 11:32 |
2015-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270774
|
- |
|
apache
|
cxf
|
The SAML Web SSO module in Apache CXF before 2.7.18, 3.0.x before 3.0.7, and 3.1.x before 3.1.3 allows remote authenticated users to bypass authentication via a crafted SAML response with a valid sig…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-5253
|
2024-11-21 11:32 |
2015-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270775
|
- |
|
powerdns
|
authoritative
|
PowerDNS (aka pdns) Authoritative Server 3.4.4 before 3.4.7 allows remote attackers to cause a denial of service (assertion failure and server crash) via crafted query packets.
|
CWE-20
Improper Input Validation
|
CVE-2015-5311
|
2024-11-21 11:32 |
2015-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270776
|
- |
|
ipsilon_project
|
ipsilon
|
providers/saml2/admin.py in the Identity Provider (IdP) server in Ipsilon 0.1.0 before 1.0.2 and 1.1.x before 1.1.1 does not properly check permissions, which allows remote authenticated users to cau…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-5301
|
2024-11-21 11:32 |
2015-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270777
|
- |
|
gnu
|
gcc
|
The std::random_device class in libstdc++ in the GNU Compiler Collection (aka GCC) before 4.9.4 does not properly handle short reads from blocking sources, which makes it easier for context-dependent…
|
CWE-200
Information Exposure
|
CVE-2015-5276
|
2024-11-21 11:32 |
2015-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270778
|
- |
|
ipsilon_project
|
ipsilon
|
providers/saml2/admin.py in the Identity Provider (IdP) server in Ipsilon 0.1.0 before 1.0.1 does not properly check permissions to update the SAML2 Service Provider (SP) owner, which allows remote a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-5217
|
2024-11-21 11:32 |
2015-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270779
|
- |
|
linux xen oracle debian canonical
|
linux_kernel xen vm_virtualbox debian_linux ubuntu_linux
|
The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic or hang) by triggering many #AC (aka Alignment Chec…
|
CWE-399
Resource Management Errors
|
CVE-2015-5307
|
2024-11-21 11:32 |
2015-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270780
|
- |
|
linux
|
linux_kernel
|
drivers/usb/serial/whiteheat.c in the Linux kernel before 4.2.4 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified oth…
|
NVD-CWE-Other
|
CVE-2015-5257
|
2024-11-21 11:32 |
2015-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|