|
212011
|
7.8 |
HIGH
Local
|
huawei
|
p7_firmware
|
Integer overflow in Huawei P7 phones with software before P7-L07 V100R001C01B606 allows remote attackers to gain privileges via a crafted application with the system or camera permission.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8304
|
2024-11-21 11:38 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212012
|
8.6 |
HIGH
Network
|
debian inspircd
|
debian_linux inspircd
|
The DNS::GetResult function in dns.cpp in InspIRCd before 2.0.19 allows remote DNS servers to cause a denial of service (netsplit) via an invalid character in a PTR response, as demonstrated by a "\0…
|
CWE-20
Improper Input Validation
|
CVE-2015-8702
|
2024-11-21 11:38 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212013
|
5.3 |
MEDIUM
Network
|
debian redmine
|
debian_linux redmine
|
app/views/journals/index.builder in Redmine before 2.6.9, 3.0.x before 3.0.7, and 3.1.x before 3.1.3 allows remote attackers to obtain sensitive information by viewing an Atom feed.
|
CWE-200
Information Exposure
|
CVE-2015-8537
|
2024-11-21 11:38 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212014
|
7.4 |
HIGH
Network
|
debian redmine
|
debian_linux redmine
|
Open redirect vulnerability in the valid_back_url function in app/controllers/application_controller.rb in Redmine before 2.6.7, 3.0.x before 3.0.5, and 3.1.x before 3.1.1 allows remote attackers to …
|
NVD-CWE-Other
|
CVE-2015-8474
|
2024-11-21 11:38 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212015
|
4.3 |
MEDIUM
Network
|
debian redmine
|
debian_linux redmine
|
The Issues API in Redmine before 2.6.8, 3.0.x before 3.0.6, and 3.1.x before 3.1.2 allows remote authenticated users to obtain sensitive information in changeset messages by leveraging permission to …
|
CWE-200
Information Exposure
|
CVE-2015-8473
|
2024-11-21 11:38 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212016
|
5.3 |
MEDIUM
Network
|
redmine debian
|
redmine debian_linux
|
app/views/timelog/_form.html.erb in Redmine before 2.6.8, 3.0.x before 3.0.6, and 3.1.x before 3.1.2 allows remote attackers to obtain sensitive information about subjects of issues by viewing the ti…
|
CWE-199
Information Management Errors
|
CVE-2015-8346
|
2024-11-21 11:38 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212017
|
5.3 |
MEDIUM
Network
|
lenovo
|
emc_firmware
|
The management interface in LenovoEMC EZ Media & Backup (hm3), ix2/ix2-dl, ix4-300d, px12-400r/450r, px6-300d, px2-300d, px4-300r, px4-400d, px4-400r, and px4-300d NAS devices with firmware before 4.…
|
CWE-254
7PK - Security Features
|
CVE-2015-8108
|
2024-11-21 11:38 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212018
|
7.3 |
HIGH
Network
|
claws-mail opensuse
|
claws-mail leap opensuse
|
Multiple stack-based buffer overflows in the (1) conv_jistoeuc, (2) conv_euctojis, and (3) conv_sjistoeuc functions in codeconv.c in Claws Mail before 3.13.1 allow remote attackers to have unspecifie…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8614
|
2024-11-21 11:38 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212019
|
8.8 |
HIGH
Network
|
cacti
|
cacti
|
SQL injection vulnerability in the host_new_graphs function in graphs_new.php in Cacti 0.8.8f and earlier allows remote authenticated users to execute arbitrary SQL commands via the cg_g parameter in…
|
CWE-89
SQL Injection
|
CVE-2015-8604
|
2024-11-21 11:38 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212020
|
4.3 |
MEDIUM
Network
|
atlassian
|
confluence
|
Atlassian Confluence before 5.8.17 allows remote authenticated users to read configuration files via the decoratorName parameter to (1) spaces/viewdefaultdecorator.action or (2) admin/viewdefaultdeco…
|
CWE-200
Information Exposure
|
CVE-2015-8399
|
2024-11-21 11:38 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|