|
212081
|
7.5 |
HIGH
Network
|
php xmlsoft
|
php libxml2
|
The xsl_ext_function_php function in ext/xsl/xsltprocessor.c in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13, when libxml2 before 2.9.2 is used, does not consider the possibility o…
|
NVD-CWE-Other
|
CVE-2015-6837
|
2024-11-21 11:35 |
2016-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212082
|
9.8 |
CRITICAL
Network
|
php
|
php
|
The session deserializer in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 mishandles multiple php_var_unserialize calls, which allow remote attackers to execute arbitrary code or ca…
|
NVD-CWE-Other
|
CVE-2015-6835
|
2024-11-21 11:35 |
2016-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212083
|
9.8 |
CRITICAL
Network
|
php
|
php
|
Multiple use-after-free vulnerabilities in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 allow remote attackers to execute arbitrary code via vectors related to (1) the Serializable…
|
NVD-CWE-Other
|
CVE-2015-6834
|
2024-11-21 11:35 |
2016-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212084
|
9.8 |
CRITICAL
Network
|
veritas
|
netbackup_appliance netbackup
|
The management-services protocol implementation in Veritas NetBackup 7.x through 7.5.0.7, 7.6.0.x through 7.6.0.4, 7.6.1.x through 7.6.1.2, and 7.7.x before 7.7.2 and NetBackup Appliance through 2.5.…
|
CWE-284
Improper Access Control
|
CVE-2015-6552
|
2024-11-21 11:35 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212085
|
5.9 |
MEDIUM
Network
|
veritas
|
netbackup_appliance netbackup
|
Veritas NetBackup 7.x through 7.5.0.7 and 7.6.0.x through 7.6.0.4 and NetBackup Appliance through 2.5.4 and 2.6.0.x through 2.6.0.4 do not use TLS for administration-console traffic to the NBU server…
|
CWE-200
Information Exposure
|
CVE-2015-6551
|
2024-11-21 11:35 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212086
|
9.8 |
CRITICAL
Network
|
veritas
|
netbackup_appliance netbackup
|
bpcd in Veritas NetBackup 7.x through 7.5.0.7, 7.6.0.x through 7.6.0.4, 7.6.1.x through 7.6.1.2, and 7.7.x before 7.7.2 and NetBackup Appliance through 2.5.4, 2.6.0.x through 2.6.0.4, 2.6.1.x through…
|
CWE-284
Improper Access Control
|
CVE-2015-6550
|
2024-11-21 11:35 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212087
|
4.3 |
MEDIUM
Network
|
sierrawireless
|
aleos
|
ACEmanager in Sierra Wireless ALEOS 4.4.2 and earlier on ES440, ES450, GX400, GX440, GX450, and LS300 devices allows remote attackers to read the filteredlogs.txt file, and consequently discover pote…
|
NVD-CWE-Other
|
CVE-2015-6479
|
2024-11-21 11:35 |
2016-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212088
|
8.8 |
HIGH
Network
|
zimbra
|
zimbra_collaboration_server
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the Mail interface in Zimbra Collaboration Server (ZCS) before 8.5 allow remote attackers to hijack the authentication of arbitrary users…
|
CWE-352
Origin Validation Error
|
CVE-2015-6541
|
2024-11-21 11:35 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212089
|
9.1 |
CRITICAL
Network
|
broadcom
|
single_sign-on
|
The non-Domino web agents in CA Single Sign-On (aka SSO, formerly SiteMinder) R6, R12.0 before SP3 CR13, R12.0J before SP3 CR1.2, and R12.5 before CR5 allow remote attackers to cause a denial of serv…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2015-6854
|
2024-11-21 11:35 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212090
|
9.1 |
CRITICAL
Network
|
broadcom
|
single_sign-on
|
The Domino web agent in CA Single Sign-On (aka SSO, formerly SiteMinder) R6, R12.0 before SP3 CR13, R12.0J before SP3 CR1.2, R12.5 before CR5, R12.51 before CR4, and R12.52 before SP1 CR3 allows remo…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2015-6853
|
2024-11-21 11:35 |
2016-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|