|
276891
|
- |
|
ibm
|
maximo_asset_management maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager change_and_configuration_management_database tivoli_asset_management_for_it maxi…
|
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.1 through 7.1.1.8, and Maximo Asset Management 7.1 through 7.1.1.8 and 7.2 for Tivoli IT Asset Management for IT and certain …
|
CWE-79
Cross-site Scripting
|
CVE-2015-0109
|
2024-11-21 11:22 |
2015-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276892
|
- |
|
ibm
|
maximo_asset_management maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager change_and_configuration_management_database tivoli_asset_management_for_it maxi…
|
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.1 through 7.1.1.8, and Maximo Asset Management 7.1 through 7.1.1.8 and 7.2 for Tivoli IT Asset Management for IT and certain …
|
CWE-79
Cross-site Scripting
|
CVE-2015-0108
|
2024-11-21 11:22 |
2015-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276893
|
- |
|
e2fsprogs_project debian canonical fedoraproject
|
e2fsprogs debian_linux ubuntu_linux fedora
|
Heap-based buffer overflow in openfs.c in the libext2fs library in e2fsprogs before 1.42.12 allows local users to execute arbitrary code via crafted block group descriptor data in a filesystem image.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-0247
|
2024-11-21 11:22 |
2015-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276894
|
- |
|
xen
|
xen
|
The vgic_v2_to_sgi function in arch/arm/vgic-v2.c in Xen 4.5.x, when running on ARM hardware with general interrupt controller (GIC) version 2, allows local guest users to cause a denial of service (…
|
CWE-20
Improper Input Validation
|
CVE-2015-0268
|
2024-11-21 11:22 |
2015-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276895
|
- |
|
rhodecode kallithea-scm
|
rhodecode_enterprise kallithea
|
RhodeCode before 2.2.7 and Kallithea 0.1 allows remote authenticated users to obtain API keys and other sensitive information via the get_repo API method.
|
CWE-200
Information Exposure
|
CVE-2015-0260
|
2024-11-21 11:22 |
2015-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276896
|
- |
|
x.org opensuse
|
xorg-server opensuse
|
X.Org Server (aka xserver and xorg-server) before 1.16.3 and 1.17.x before 1.17.1 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (crash) via …
|
CWE-200
Information Exposure
|
CVE-2015-0255
|
2024-11-21 11:22 |
2015-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276897
|
- |
|
freedesktop opensuse
|
dbus opensuse
|
D-Bus 1.4.x through 1.6.x before 1.6.30, 1.8.x before 1.8.16, and 1.9.x before 1.9.10 does not validate the source of ActivationFailure signals, which allows local users to cause a denial of service …
|
CWE-362
Race Condition
|
CVE-2015-0245
|
2024-11-21 11:22 |
2015-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276898
|
- |
|
apache
|
wss4j
|
Apache WSS4J before 1.6.17 and 2.x before 2.0.2 allows remote attackers to bypass the requireSignedEncryptedDataElements configuration via a vectors related to "wrapping attacks."
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-0227
|
2024-11-21 11:22 |
2015-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276899
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 6 through 11 allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Internet Explorer Cross-domain Information Disclo…
|
CWE-200
Information Exposure
|
CVE-2015-0070
|
2024-11-21 11:22 |
2015-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276900
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 10 and 11 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Internet Explorer ASLR Bypass Vulnerability."
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-0069
|
2024-11-21 11:22 |
2015-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|