|
280611
|
- |
|
wireshark oracle debian opensuse
|
wireshark solaris linux debian_linux opensuse
|
Buffer underflow in the ssl_decrypt_record function in epan/dissectors/packet-ssl-utils.c in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 allows remote attackers to cause a denial of serv…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-0564
|
2024-11-21 11:23 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280612
|
- |
|
opensuse wireshark
|
opensuse wireshark
|
epan/dissectors/packet-smtp.c in the SMTP dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 uses an incorrect length value for certain string-append operations, which allows remot…
|
CWE-20
Improper Input Validation
|
CVE-2015-0563
|
2024-11-21 11:23 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280613
|
- |
|
wireshark
|
wireshark
|
Multiple use-after-free vulnerabilities in epan/dissectors/packet-dec-dnart.c in the DEC DNA Routing Protocol dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 allow remote attack…
|
NVD-CWE-Other
|
CVE-2015-0562
|
2024-11-21 11:23 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280614
|
- |
|
wireshark opensuse oracle
|
wireshark opensuse solaris
|
asn1/lpp/lpp.cnf in the LPP dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 does not validate a certain index value, which allows remote attackers to cause a denial of service (…
|
CWE-20
Improper Input Validation
|
CVE-2015-0561
|
2024-11-21 11:23 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280615
|
- |
|
wireshark opensuse
|
wireshark opensuse
|
The dissect_wccp2r1_address_table_info function in epan/dissectors/packet-wccp.c in the WCCP dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 does not initialize certain data str…
|
CWE-19
Data Processing Errors
|
CVE-2015-0560
|
2024-11-21 11:23 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280616
|
- |
|
opensuse wireshark
|
opensuse wireshark
|
Multiple use-after-free vulnerabilities in epan/dissectors/packet-wccp.c in the WCCP dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 allow remote attackers to cause a denial of …
|
NVD-CWE-Other
|
CVE-2015-0559
|
2024-11-21 11:23 |
2015-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280617
|
- |
|
banner_effect_header_project
|
banner_effect_header
|
Cross-site request forgery (CSRF) vulnerability in the Banner Effect Header plugin 1.2.6 for WordPress allows remote attackers to hijack the authentication of administrators for requests that conduct…
|
CWE-352
Origin Validation Error
|
CVE-2015-0920
|
2024-11-21 11:23 |
2015-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280618
|
- |
|
sefrengo
|
sefrengo
|
Multiple SQL injection vulnerabilities in the administrative backend in Sefrengo before 1.6.1 allow remote administrators to execute arbitrary SQL commands via the (1) idcat or (2) idclient parameter…
|
CWE-89
SQL Injection
|
CVE-2015-0919
|
2024-11-21 11:23 |
2015-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280619
|
- |
|
sefrengo
|
sefrengo
|
Cross-site scripting (XSS) vulnerability in the administrative backend in Sefrengo before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via the searchterm parameter to backend/…
|
CWE-79
Cross-site Scripting
|
CVE-2015-0918
|
2024-11-21 11:23 |
2015-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280620
|
- |
|
kajona
|
kajona
|
Cross-site scripting (XSS) vulnerability in the backend in Kajona before 4.6.3 allows remote attackers to inject arbitrary web script or HTML via the action parameter to index.php.
|
CWE-79
Cross-site Scripting
|
CVE-2015-0917
|
2024-11-21 11:23 |
2015-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|