|
271031
|
8.6 |
HIGH
Network
|
ibm
|
tealeaf_customer_experience
|
Directory traversal vulnerability in the replay server in IBM Tealeaf Customer Experience before 8.7.1.8818, 8.8 before 8.8.0.9026, 9.0.0, 9.0.0A, 9.0.1 before 9.0.1.1083, 9.0.1A before 9.0.1.5073, 9…
|
CWE-22
Path Traversal
|
CVE-2015-4988
|
2024-11-21 11:32 |
2016-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271032
|
6.1 |
MEDIUM
Network
|
ibm
|
tivoli_federated_identity_manager
|
Cross-site scripting (XSS) vulnerability in IBM Tivoli Federated Identity Manager (TFIM) 6.2.2 before FP16 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
|
CWE-79
Cross-site Scripting
|
CVE-2015-4959
|
2024-11-21 11:32 |
2016-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271033
|
5.3 |
MEDIUM
Network
|
ibm
|
websphere_mq_light
|
IBM WebSphere MQ Light 1.x before 1.0.2 allows remote attackers to cause a denial of service (MQXR service crash) via a series of connect and disconnect actions, a different vulnerability than CVE-20…
|
CWE-399
Resource Management Errors
|
CVE-2015-4942
|
2024-11-21 11:32 |
2016-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271034
|
4.1 |
MEDIUM
Network
|
ibm
|
infosphere_master_data_management
|
IBM InfoSphere Master Data Management - Collaborative Edition 9.1, 10.1, 11.0 before 11.0.0.0 IF11, 11.3 before 11.3.0.0 IF7, and 11.4 before 11.4.0.4 IF1 allows remote authenticated users to conduct…
|
CWE-254
7PK - Security Features
|
CVE-2015-4960
|
2024-11-21 11:32 |
2016-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271035
|
3.3 |
LOW
Local
|
ibm
|
infosphere_master_data_management
|
IBM InfoSphere Master Data Management - Collaborative Edition 9.1, 10.1, 11.0 before 11.0.0.0 IF11, 11.3 before 11.3.0.0 IF7, and 11.4 before 11.4.0.4 IF1 does not properly restrict browser caching, …
|
CWE-200
Information Exposure
|
CVE-2015-4958
|
2024-11-21 11:32 |
2016-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271036
|
8.8 |
HIGH
Network
|
ibm
|
websphere_commerce
|
Cross-site request forgery (CSRF) vulnerability in IBM WebSphere Commerce 6.0 through 6.0.0.11, 7.0 through 7.0.0.9, and 7.0 Feature Pack 8 allows remote authenticated users to hijack the authenticat…
|
CWE-352
Origin Validation Error
|
CVE-2015-5007
|
2024-11-21 11:32 |
2016-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271037
|
8.6 |
HIGH
Network
|
apache
|
subversion
|
Integer overflow in the read_string function in libsvn_ra_svn/marshal.c in Apache Subversion 1.9.x before 1.9.3 allows remote attackers to execute arbitrary code via an svn:// protocol string, which …
|
CWE-119 CWE-189
Incorrect Access of Indexable Resource ('Range Error') Numeric Errors
|
CVE-2015-5259
|
2024-11-21 11:32 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271038
|
9.8 |
CRITICAL
Network
|
redhat apache fedoraproject
|
openshift activemq fedora
|
Apache ActiveMQ 5.x before 5.13.0 does not restrict the classes that can be serialized in the broker, which allows remote attackers to execute arbitrary code via a crafted serialized Java Message Ser…
|
CWE-20
Improper Input Validation
|
CVE-2015-5254
|
2024-11-21 11:32 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271039
|
4.3 |
MEDIUM
Adjacent
|
google
|
android
|
The WNM Sleep Mode code in wpa_supplicant 2.x before 2.6 does not properly ignore key data in response frames when management frame protection (MFP) was not negotiated, which allows remote attackers …
|
CWE-200
Information Exposure
|
CVE-2015-5310
|
2024-11-21 11:32 |
2016-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271040
|
4.3 |
MEDIUM
Network
|
ibm
|
maximo_for_transportation maximo_for_utilities maximo_asset_management smartcloud_control_desk maximo_for_life_sciences maximo_asset_management_essentials maximo_for_nuclear_power
|
IBM Maximo Asset Management 7.5 before 7.5.0.8 IF6 and 7.6 before 7.6.0.2 IF1 and Maximo Asset Management 7.5 before 7.5.0.8 IF6, 7.5.1, and 7.6 before 7.6.0.2 IF1 for SmartCloud Control Desk allow r…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-5051
|
2024-11-21 11:32 |
2016-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|