|
212181
|
3.1 |
LOW
Network
|
atlassian
|
jira_core jira_server jira_service_desk
|
Atlassian JIRA Software 7.0.3, JIRA Core 7.0.3, and the bundled JIRA Service Desk 3.0.3 installer attaches the wrong image to e-mail notifications when a user views an issue with inline wiki markup r…
|
CWE-200
Information Exposure
|
CVE-2015-8481
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212182
|
4.0 |
MEDIUM
Local
|
huawei
|
document_security_management
|
Huawei Document Security Management (DSM) with software before V100R002C05SPC661 does not clear the clipboard when closing a secure file, which allows local users to obtain sensitive information by p…
|
CWE-200
Information Exposure
|
CVE-2015-8303
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212183
|
5.5 |
MEDIUM
Local
|
huawei
|
gem-703l_firmware ale_firmware
|
The Joint Photographic Experts Group Processing Unit (JPU) driver in Huawei ALE smartphones with software before ALE-UL00C00B220 and ALE-TL00C01B220 and GEM-703L smartphones with software before V100…
|
CWE-20
Improper Input Validation
|
CVE-2015-8226
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212184
|
5.5 |
MEDIUM
Local
|
huawei
|
gem-703l_firmware ale_firmware
|
The Joint Photographic Experts Group Processing Unit (JPU) driver in Huawei ALE smartphones with software before ALE-UL00C00B220 and ALE-TL00C01B220 and GEM-703L smartphones with software before V100…
|
CWE-20
Improper Input Validation
|
CVE-2015-8225
|
2024-11-21 11:38 |
2016-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212185
|
9.8 |
CRITICAL
Network
|
progress
|
whatsup_gold
|
The DroneDeleteOldMeasurements implementation in Ipswitch WhatsUp Gold before 16.4 does not properly validate serialized XML objects, which allows remote attackers to conduct SQL injection attacks vi…
|
CWE-89
SQL Injection
|
CVE-2015-8261
|
2024-11-21 11:38 |
2016-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212186
|
3.5 |
LOW
Network
|
mozilla
|
bugzilla
|
Template.pm in Bugzilla 2.x, 3.x, and 4.x before 4.2.16, 4.3.x and 4.4.x before 4.4.11, and 4.5.x and 5.0.x before 5.0.2 does not properly construct CSV files, which allows remote attackers to obtain…
|
CWE-200
Information Exposure
|
CVE-2015-8509
|
2024-11-21 11:38 |
2016-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212187
|
4.7 |
MEDIUM
Network
|
mozilla
|
bugzilla
|
Cross-site scripting (XSS) vulnerability in showdependencygraph.cgi in Bugzilla 2.x, 3.x, and 4.x before 4.2.16, 4.3.x and 4.4.x before 4.4.11, and 4.5.x and 5.0.x before 5.0.2, when a local dot conf…
|
CWE-79
Cross-site Scripting
|
CVE-2015-8508
|
2024-11-21 11:38 |
2016-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212188
|
6.5 |
MEDIUM
Network
|
zte
|
zxhn_h108n_r1a_firmware zxv10_w300_firmware
|
ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE and ZXV10 W300 devices W300V1.0.0f_ER1_PE allow remote authenticated users to bypass intended access restrictions, and discover credentials…
|
CWE-200
Information Exposure
|
CVE-2015-8703
|
2024-11-21 11:38 |
2015-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212189
|
7.5 |
HIGH
Network
|
samba debian canonical
|
samba debian_linux ubuntu_linux
|
The samldb_check_user_account_control_acl function in dsdb/samdb/ldb_modules/samldb.c in Samba 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3 does not properly check for administrative…
|
CWE-269
Improper Privilege Management
|
CVE-2015-8467
|
2024-11-21 11:38 |
2015-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212190
|
8.8 |
HIGH
Network
|
adobe
|
air flash_player air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8645
|
2024-11-21 11:38 |
2015-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|