|
272601
|
9.8 |
CRITICAL
Network
|
web-dorado
|
contact_form_maker
|
SQL injection vulnerability in Joomla! Component Contact Form Maker 1.0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2015-2798
|
2024-11-21 11:28 |
2017-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272602
|
7.5 |
HIGH
Network
|
redhat
|
jboss_wildfly_application_server
|
The Undertow module of WildFly 9.x before 9.0.0.CR2 and 10.x before 10.0.0.Alpha1 allows remote attackers to obtain the source code of a JSP page via a "/" at the end of a URL.
|
CWE-200
Information Exposure
|
CVE-2015-3198
|
2024-11-21 11:28 |
2017-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272603
|
5.5 |
MEDIUM
Local
|
selinux_project
|
selinux
|
selinux-policy when sysctl fs.protected_hardlinks are set to 0 allows local users to cause a denial of service (SSH login prevention) by creating a hardlink to /etc/passwd from a directory named .con…
|
CWE-254
7PK - Security Features
|
CVE-2015-3170
|
2024-11-21 11:28 |
2017-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272604
|
7.5 |
HIGH
Network
|
redhat
|
virtio-win
|
The NetKVM Windows Virtio driver allows remote attackers to cause a denial of service (guest crash) via a crafted length value in an IP packet, as demonstrated by a value that does not account for th…
|
CWE-20
Improper Input Validation
|
CVE-2015-3215
|
2024-11-21 11:28 |
2017-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272605
|
4.7 |
MEDIUM
Local
|
redhat
|
automatic_bug_reporting_tool
|
The kernel-invoked coredump processor in Automatic Bug Reporting Tool (ABRT) does not properly check the ownership of files before writing core dumps to them, which allows local users to obtain sensi…
|
CWE-200
Information Exposure
|
CVE-2015-3142
|
2024-11-21 11:28 |
2017-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272606
|
7.5 |
HIGH
Network
|
tlslite_project
|
tlslite
|
The tlslite library before 0.4.9 for Python allows remote attackers to trigger a denial of service (runtime exception and process crash).
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3220
|
2024-11-21 11:28 |
2017-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272607
|
7.5 |
HIGH
Network
|
huawei
|
s5700_firmware s5300_firmware s6300_firmware s6700_firmware s7700_firmware s9300_firmware s9700_firmware
|
The user authentication module in Huawei Campus switches S5700, S5300, S6300, and S6700 with software before V200R001SPH012 and S7700, S9300, and S9700 with software before V200R001SPH015 allows remo…
|
CWE-287
Improper Authentication
|
CVE-2015-2800
|
2024-11-21 11:28 |
2017-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272608
|
6.1 |
MEDIUM
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_elastic_runtime cloud_foundry_uaa cf-release
|
With Cloud Foundry Runtime cf-release versions v209 or earlier, UAA Standalone versions 2.2.6 or earlier and Pivotal Cloud Foundry Runtime 1.4.5 or earlier the UAA logout link is susceptible to an op…
|
CWE-601
Open Redirect
|
CVE-2015-3190
|
2024-11-21 11:28 |
2017-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272609
|
8.8 |
HIGH
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_elastic_runtime cloud_foundry_uaa cf-release
|
With Cloud Foundry Runtime cf-release versions v209 or earlier, UAA Standalone versions 2.2.6 or earlier and Pivotal Cloud Foundry Runtime 1.4.5 or earlier the change_email form in UAA is vulnerable …
|
CWE-352
Origin Validation Error
|
CVE-2015-3191
|
2024-11-21 11:28 |
2017-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272610
|
3.7 |
LOW
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_elastic_runtime cloud_foundry_uaa cf-release
|
With Cloud Foundry Runtime cf-release versions v208 or earlier, UAA Standalone versions 2.2.5 or earlier and Pivotal Cloud Foundry Runtime 1.4.5 or earlier, old Password Reset Links are not expired a…
|
CWE-640
Weak Password Recovery Mechanism for Forgotten Password
|
CVE-2015-3189
|
2024-11-21 11:28 |
2017-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|