|
212181
|
- |
|
isc
|
bind
|
Race condition in resolver.c in named in ISC BIND 9.9.8 before 9.9.8-P2 and 9.10.3 before 9.10.3-P2 allows remote attackers to cause a denial of service (INSIST assertion failure and daemon exit) via…
|
CWE-362
Race Condition
|
CVE-2015-8461
|
2024-11-21 11:38 |
2015-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212182
|
- |
|
autodesk
|
design_review
|
Multiple buffer overflows in Autodesk Design Review (ADR) before 2013 Hotfix 2 allow remote attackers to execute arbitrary code via crafted RLE data in a (1) BMP or (2) FLI file, (3) encoded scan lin…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8572
|
2024-11-21 11:38 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212183
|
- |
|
autodesk
|
design_review
|
Integer overflow in Autodesk Design Review (ADR) before 2013 Hotfix 2 allows remote attackers to execute arbitrary code via a crafted biClrUsed value in a BMP file, which triggers a buffer overflow.
|
CWE-189
Numeric Errors
|
CVE-2015-8571
|
2024-11-21 11:38 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212184
|
- |
|
lepide
|
active_directory_self_service
|
The password reset functionality in Lepide Active Directory Self Service allows remote authenticated users to change arbitrary domain user passwords via a crafted request.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-8570
|
2024-11-21 11:38 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212185
|
- |
|
cacti
|
cacti
|
SQL injection vulnerability in the host_new_graphs_save function in graphs_new.php in Cacti 0.8.8f and earlier allows remote authenticated users to execute arbitrary SQL commands via crafted serializ…
|
CWE-89
SQL Injection
|
CVE-2015-8377
|
2024-11-21 11:38 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212186
|
- |
|
debian canonical xmlsoft redhat hp
|
debian_linux ubuntu_linux libxml2 enterprise_linux_hpc_node enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation icewall_file_manager icewall_federati…
|
The xmlParseXMLDecl function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to obtain sensitive information via an (1) unterminated encoding value or (2) incomplete XML declar…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8317
|
2024-11-21 11:38 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212187
|
- |
|
synnefoims
|
internet_management_software
|
Cross-site scripting (XSS) vulnerability in synnefoclient in Synnefo Internet Management Software (IMS) 2015 allows remote attackers to inject arbitrary web script or HTML via the plan_name parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2015-8247
|
2024-11-21 11:38 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212188
|
- |
|
xmlsoft hp apple canonical redhat
|
libxml2 icewall_file_manager icewall_federation_agent watchos iphone_os mac_os_x tvos ubuntu_linux enterprise_linux_hpc_node enterprise_linux_desktop enterprise_linux_se…
|
The xmlSAX2TextNode function in SAX2.c in the push interface in the HTML parser in libxml2 before 2.9.3 allows context-dependent attackers to cause a denial of service (stack-based buffer over-read a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8242
|
2024-11-21 11:38 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212189
|
- |
|
debian redhat hp canonical xmlsoft
|
debian_linux enterprise_linux_hpc_node enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation icewall_file_manager icewall_federation_agent ubuntu_linux
|
The xmlNextChar function in libxml2 2.9.2 does not properly check the state, which allows context-dependent attackers to cause a denial of service (heap-based buffer over-read and application crash) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8241
|
2024-11-21 11:38 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212190
|
- |
|
schneider-electric
|
proclima
|
The F1BookView ActiveX control in F1 Bookview in Schneider Electric ProClima before 6.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafte…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8561
|
2024-11-21 11:38 |
2015-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|