|
276741
|
- |
|
mantisbt
|
mantisbt
|
The string_sanitize_url function in core/string_api.php in MantisBT 1.2.0a3 through 1.2.18 uses an incorrect regular expression, which allows remote attackers to conduct open redirect and phishing at…
|
NVD-CWE-Other
|
CVE-2015-1042
|
2024-11-21 11:24 |
2015-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276742
|
- |
|
privoxy
|
privoxy
|
Multiple use-after-free vulnerabilities in Privoxy before 3.0.22 allow remote attackers to have unspecified impact via vectors related to (1) the unmap function in list.c or (2) "two additional uncon…
|
NVD-CWE-Other
|
CVE-2015-1031
|
2024-11-21 11:24 |
2015-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276743
|
- |
|
google canonical redhat opensuse
|
chrome ubuntu_linux enterprise_linux_server_aus enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux_eus opensuse
|
Multiple unspecified vulnerabilities in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android allow attackers to cause a denial of service or possibly hav…
|
NVD-CWE-noinfo
|
CVE-2015-1212
|
2024-11-21 11:24 |
2015-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276744
|
- |
|
google canonical redhat opensuse
|
chrome ubuntu_linux enterprise_linux_server_aus enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux_eus opensuse
|
The OriginCanAccessServiceWorkers function in content/browser/service_worker/service_worker_dispatcher_host.cc in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.1…
|
NVD-CWE-noinfo
|
CVE-2015-1211
|
2024-11-21 11:24 |
2015-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276745
|
- |
|
google canonical redhat opensuse
|
chrome ubuntu_linux enterprise_linux_server_aus enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux_eus opensuse
|
The V8ThrowException::createDOMException function in bindings/core/v8/V8ThrowException.cpp in the V8 bindings in Blink, as used in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and b…
|
NVD-CWE-noinfo
|
CVE-2015-1210
|
2024-11-21 11:24 |
2015-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276746
|
- |
|
google canonical redhat opensuse
|
chrome ubuntu_linux enterprise_linux_server_aus enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux_eus opensuse
|
Use-after-free vulnerability in the VisibleSelection::nonBoundaryShadowTreeRootNode function in core/editing/VisibleSelection.cpp in the DOM implementation in Blink, as used in Google Chrome before 4…
|
CWE-416
Use After Free
|
CVE-2015-1209
|
2024-11-21 11:24 |
2015-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276747
|
- |
|
servision
|
hvg_video_gateway_firmware
|
The web interface on SerVision HVG Video Gateway devices with firmware before 2.2.26a100 has a hardcoded administrative password, which makes it easier for remote attackers to obtain access via an HT…
|
CWE-255
Credentials Management
|
CVE-2015-0930
|
2024-11-21 11:24 |
2015-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276748
|
- |
|
servision
|
hvg_video_gateway_firmware
|
time.htm in the web interface on SerVision HVG Video Gateway devices with firmware before 2.2.26a78 allows remote attackers to bypass authentication and obtain administrative access by leveraging a c…
|
CWE-284
Improper Access Control
|
CVE-2015-0929
|
2024-11-21 11:24 |
2015-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276749
|
- |
|
siemens
|
scalance_x-200_series_firmware
|
The web server on Siemens SCALANCE X-200IRT switches with firmware before 5.2.0 allows remote attackers to hijack sessions via unspecified vectors.
|
CWE-20
Improper Input Validation
|
CVE-2015-1049
|
2024-11-21 11:24 |
2015-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276750
|
- |
|
labtech_software
|
labtech
|
Labtech before 100.237 on Linux uses world-writable permissions for root-executed scripts, which allows local users to gain privileges by modifying a script file.
|
CWE-284
Improper Access Control
|
CVE-2015-0926
|
2024-11-21 11:24 |
2015-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|