|
212281
|
- |
|
sap
|
plant_connectivity
|
The PCo agent in SAP Plant Connectivity (PCo) allows remote attackers to cause a denial of service (memory corruption and agent crash) via crafted xMII requests, aka SAP Security Note 2238619.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8330
|
2024-11-21 11:38 |
2015-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212282
|
- |
|
sap
|
manufacturing_integration_and_intelligence
|
SAP Manufacturing Integration and Intelligence (aka MII, formerly xMII) uses weak encryption (Base64 and DES), which allows attackers to conduct downgrade attacks and decrypt passwords via unspecifie…
|
CWE-310
Cryptographic Issues
|
CVE-2015-8329
|
2024-11-21 11:38 |
2015-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212283
|
- |
|
nvidia
|
gpu_driver
|
Unspecified vulnerability in the NVAPI support layer in the NVIDIA GPU graphics driver R340 before 341.92, R352 before 354.35, and R358 before 358.87 on Windows allows local users to obtain sensitive…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-8328
|
2024-11-21 11:38 |
2015-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212284
|
- |
|
huawei
|
espace_firmware
|
Huawei eSpace U2980 unified gateway with software before V100R001C10 and U2990 with software before V200R001C10 allow remote authenticated users to cause a denial of service via crafted signaling pac…
|
CWE-20
Improper Input Validation
|
CVE-2015-8229
|
2024-11-21 11:38 |
2015-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212285
|
- |
|
huawei
|
ar_firmware
|
Directory traversal vulnerability in the SFTP server in Huawei AR 120, 150, 160, 200, 500, 1200, 2200, 3200, and 3600 routers with software before V200R006SPH003 allows remote authenticated users to …
|
CWE-22
Path Traversal
|
CVE-2015-8228
|
2024-11-21 11:38 |
2015-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212286
|
- |
|
huawei
|
vp_9660_firmware
|
The built-in web server in Huawei VP9660 multi-point control unit with software before V200R001C30SPC700 allows remote administrators to obtain sensitive information or cause a denial of service via …
|
CWE-20
Improper Input Validation
|
CVE-2015-8227
|
2024-11-21 11:38 |
2015-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212287
|
- |
|
apache
|
cordova
|
Apache Cordova-Android before 3.7.0 improperly generates random values for BridgeSecret data, which makes it easier for attackers to conduct bridge hijacking attacks by predicting a value.
|
NVD-CWE-Other
|
CVE-2015-8320
|
2024-11-21 11:38 |
2015-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212288
|
- |
|
arista
|
eos
|
Arista EOS before 4.11.12, 4.12 before 4.12.11, 4.13 before 4.13.14M, 4.14 before 4.14.5FX.5, and 4.15 before 4.15.0FX1.1 allows remote attackers to execute arbitrary code as root by leveraging manag…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-8236
|
2024-11-21 11:38 |
2015-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212289
|
- |
|
tibco
|
loglogic_unity
|
The Web Server component in TIBCO LogLogic Unity before 1.1.1 allows remote authenticated users to gain privileges, and consequently obtain sensitive information, via an HTTP request.
|
CWE-200
Information Exposure
|
CVE-2015-8090
|
2024-11-21 11:38 |
2015-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212290
|
- |
|
mayo_project
|
mayo
|
Cross-site scripting (XSS) vulnerability in the MAYO theme 7.x-1.x before 7.x-1.4 and 7.x-2.x before 7.x-2.6 for Drupal allows remote administrators with the "Administer themes" permission to inject …
|
CWE-79
Cross-site Scripting
|
CVE-2015-8233
|
2024-11-21 11:38 |
2015-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|