|
271551
|
- |
|
mozilla
|
firefox
|
The add-on installation feature in Mozilla Firefox before 40.0.3 and Firefox ESR 38.x before 38.2.1 allows remote attackers to bypass an intended user-confirmation requirement by constructing a craft…
|
CWE-254
7PK - Security Features
|
CVE-2015-4498
|
2024-11-21 11:31 |
2015-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271552
|
- |
|
mozilla
|
firefox
|
Use-after-free vulnerability in the CanvasRenderingContext2D implementation in Mozilla Firefox before 40.0.3 and Firefox ESR 38.x before 38.2.1 allows remote attackers to execute arbitrary code by le…
|
NVD-CWE-Other
|
CVE-2015-4497
|
2024-11-21 11:31 |
2015-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271553
|
- |
|
emc
|
documentum_d2
|
Lockbox in EMC Documentum D2 before 4.5 uses a hardcoded passphrase when a server lacks a D2.Lockbox file, which makes it easier for remote authenticated users to decrypt admin tickets by locating th…
|
CWE-200
Information Exposure
|
CVE-2015-4537
|
2024-11-21 11:31 |
2015-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271554
|
- |
|
emc
|
documentum_content_server
|
EMC Documentum Content Server before 7.0 P20, 7.1 before P18, and 7.2 before P02, when RPC tracing is configured, stores certain obfuscated password data in a log file, which allows remote authentica…
|
CWE-200
Information Exposure
|
CVE-2015-4536
|
2024-11-21 11:31 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271555
|
- |
|
emc
|
documentum_content_server
|
Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02, when __debug_trace__ is configured, allows remote a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-4535
|
2024-11-21 11:31 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271556
|
- |
|
emc
|
documentum_content_server
|
Java Method Server (JMS) in EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02 allows remote authenticated users to execute arbitra…
|
CWE-20
Improper Input Validation
|
CVE-2015-4534
|
2024-11-21 11:31 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271557
|
- |
|
emc
|
documentum_content_server
|
EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02 does not properly check authorization after creation of an object, which allows …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-4533
|
2024-11-21 11:31 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271558
|
- |
|
emc
|
documentum_content_server
|
EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02 does not properly check authorization and does not properly restrict object type…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-4532
|
2024-11-21 11:31 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271559
|
- |
|
emc
|
documentum_content_server
|
EMC Documentum Content Server before 6.7SP1 P32, 6.7SP2 before P25, 7.0 before P19, 7.1 before P16, and 7.2 before P02 does not properly check authorization for subgroups of privileged groups, which …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-4531
|
2024-11-21 11:31 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271560
|
- |
|
emc
|
documentum_webtop documentum_administrator documentum_web_publisher documentum_taskspace documentum_digital_asset_manager
|
Cross-site request forgery (CSRF) vulnerability in EMC Documentum WebTop before 6.8P01, Documentum Administrator through 7.2, Documentum Digital Assets Manager through 6.5SP6, Documentum Web Publishe…
|
CWE-352
Origin Validation Error
|
CVE-2015-4530
|
2024-11-21 11:31 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|