|
278011
|
- |
|
apache canonical
|
standard_taglibs ubuntu_linux
|
Apache Standard Taglibs before 1.2.3 allows remote attackers to execute arbitrary code or conduct external XML entity (XXE) attacks via a crafted XSLT extension in a (1) <x:parse> or (2) <x:transform…
|
NVD-CWE-Other
|
CVE-2015-0254
|
2024-11-21 11:22 |
2015-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278012
|
- |
|
apache canonical apple opensuse
|
http_server ubuntu_linux mac_os_x mac_os_x_server opensuse
|
The lua_websocket_read function in lua_request.c in the mod_lua module in the Apache HTTP Server through 2.4.12 allows remote attackers to cause a denial of service (child-process crash) by sending a…
|
CWE-20
Improper Input Validation
|
CVE-2015-0228
|
2024-11-21 11:22 |
2015-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278013
|
- |
|
linux canonical debian oracle redhat
|
linux_kernel ubuntu_linux debian_linux linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
The em_sysenter function in arch/x86/kvm/emulate.c in the Linux kernel before 3.18.5, when the guest OS lacks SYSENTER MSR initialization, allows guest OS users to gain guest OS privileges or cause a…
|
CWE-269
Improper Privilege Management
|
CVE-2015-0239
|
2024-11-21 11:22 |
2015-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278014
|
- |
|
redhat samba novell canonical
|
enterprise_linux samba suse_linux_enterprise_server suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit ubuntu_linux
|
The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized st…
|
CWE-17
Code
|
CVE-2015-0240
|
2024-11-21 11:22 |
2015-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278015
|
- |
|
adobe
|
flash_player
|
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows attackers to execute arbitrary…
|
NVD-CWE-Other
|
CVE-2015-0331
|
2024-11-21 11:22 |
2015-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278016
|
- |
|
textangular
|
textangular
|
Cross-site scripting (XSS) vulnerability in textAngular-sanitize.js in textAngular before 1.3.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors to the editor.
|
CWE-79
Cross-site Scripting
|
CVE-2015-0167
|
2024-11-21 11:22 |
2015-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278017
|
- |
|
ibm
|
maximo_asset_management maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager change_and_configuration_management_database tivoli_asset_management_for_it maxi…
|
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.1 through 7.1.1.8, and Maximo Asset Management 7.1 through 7.1.1.8 and 7.2 for Tivoli IT Asset Management for IT and certain …
|
CWE-79
Cross-site Scripting
|
CVE-2015-0109
|
2024-11-21 11:22 |
2015-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278018
|
- |
|
ibm
|
maximo_asset_management maximo_for_utilities maximo_for_nuclear_power tivoli_service_request_manager change_and_configuration_management_database tivoli_asset_management_for_it maxi…
|
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.1 through 7.1.1.8, and Maximo Asset Management 7.1 through 7.1.1.8 and 7.2 for Tivoli IT Asset Management for IT and certain …
|
CWE-79
Cross-site Scripting
|
CVE-2015-0108
|
2024-11-21 11:22 |
2015-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278019
|
- |
|
e2fsprogs_project debian canonical fedoraproject
|
e2fsprogs debian_linux ubuntu_linux fedora
|
Heap-based buffer overflow in openfs.c in the libext2fs library in e2fsprogs before 1.42.12 allows local users to execute arbitrary code via crafted block group descriptor data in a filesystem image.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-0247
|
2024-11-21 11:22 |
2015-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278020
|
- |
|
xen
|
xen
|
The vgic_v2_to_sgi function in arch/arm/vgic-v2.c in Xen 4.5.x, when running on ARM hardware with general interrupt controller (GIC) version 2, allows local guest users to cause a denial of service (…
|
CWE-20
Improper Input Validation
|
CVE-2015-0268
|
2024-11-21 11:22 |
2015-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|