|
276321
|
- |
|
redhat samba novell canonical
|
enterprise_linux samba suse_linux_enterprise_server suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit ubuntu_linux
|
The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized st…
|
CWE-17
Code
|
CVE-2015-0240
|
2024-11-21 11:22 |
2015-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276322
|
- |
|
adobe
|
flash_player
|
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary…
|
NVD-CWE-Other
|
CVE-2015-0331
|
2024-11-21 11:22 |
2015-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276323
|
- |
|
textangular
|
textangular
|
Cross-site scripting (XSS) vulnerability in textAngular-sanitize.js in textAngular before 1.3.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors to the editor.
|
CWE-79
Cross-site Scripting
|
CVE-2015-0167
|
2024-11-21 11:22 |
2015-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276324
|
- |
|
ibm
|
maximo_asset_management maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager change_and_configuration_management_database tivoli_asset_management_for_it maxi…
|
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.1 through 7.1.1.8, and Maximo Asset Management 7.1 through 7.1.1.8 and 7.2 for Tivoli IT Asset Management for IT and certain …
|
CWE-79
Cross-site Scripting
|
CVE-2015-0109
|
2024-11-21 11:22 |
2015-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276325
|
- |
|
ibm
|
maximo_asset_management maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager change_and_configuration_management_database tivoli_asset_management_for_it maxi…
|
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.1 through 7.1.1.8, and Maximo Asset Management 7.1 through 7.1.1.8 and 7.2 for Tivoli IT Asset Management for IT and certain …
|
CWE-79
Cross-site Scripting
|
CVE-2015-0108
|
2024-11-21 11:22 |
2015-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276326
|
- |
|
e2fsprogs_project debian canonical fedoraproject
|
e2fsprogs debian_linux ubuntu_linux fedora
|
Heap-based buffer overflow in openfs.c in the libext2fs library in e2fsprogs before 1.42.12 allows local users to execute arbitrary code via crafted block group descriptor data in a filesystem image.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-0247
|
2024-11-21 11:22 |
2015-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276327
|
- |
|
xen
|
xen
|
The vgic_v2_to_sgi function in arch/arm/vgic-v2.c in Xen 4.5.x, when running on ARM hardware with general interrupt controller (GIC) version 2, allows local guest users to cause a denial of service (…
|
CWE-20
Improper Input Validation
|
CVE-2015-0268
|
2024-11-21 11:22 |
2015-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276328
|
- |
|
rhodecode kallithea-scm
|
rhodecode_enterprise kallithea
|
RhodeCode before 2.2.7 and Kallithea 0.1 allows remote authenticated users to obtain API keys and other sensitive information via the get_repo API method.
|
CWE-200
Information Exposure
|
CVE-2015-0260
|
2024-11-21 11:22 |
2015-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276329
|
- |
|
x.org opensuse
|
xorg-server opensuse
|
X.Org Server (aka xserver and xorg-server) before 1.16.3 and 1.17.x before 1.17.1 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (crash) via …
|
CWE-200
Information Exposure
|
CVE-2015-0255
|
2024-11-21 11:22 |
2015-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276330
|
- |
|
freedesktop opensuse
|
dbus opensuse
|
D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of ActivationFailure signals, which allows local users to cause a denial of service …
|
CWE-362
Race Condition
|
CVE-2015-0245
|
2024-11-21 11:22 |
2015-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|