|
211651
|
9.8 |
CRITICAL
Network
|
amazon
|
fire_os
|
Stack-based buffer overflow in the havok_write function in drivers/staging/havok/havok.c in Amazon Fire OS before 2016-01-15 allows attackers to cause a denial of service (panic) or possibly have uns…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7292
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211652
|
6.1 |
MEDIUM
Network
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 6 before 2.85 and 7/8 before 2.30.30.30 has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2015-7275
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211653
|
8.8 |
HIGH
Network
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 6 before 2.80 allows remote attackers to execute arbitrary administrative HTTP commands.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7274
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211654
|
9.8 |
CRITICAL
Network
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 7/8 before 2.21.21.21 has XXE.
|
CWE-611
XXE
|
CVE-2015-7273
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211655
|
9.8 |
CRITICAL
Network
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 6 before 2.80 and 7/8 before 2.21.21.21 allows attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7272
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211656
|
9.8 |
CRITICAL
Network
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 7/8 before 2.21.21.21 has a format string issue in racadm getsystinfo.
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2015-7271
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211657
|
7.8 |
HIGH
Local
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 6 before 2.80 and 7/8 before 2.21.21.21 allows directory traversal.
|
CWE-22
Path Traversal
|
CVE-2015-7270
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211658
|
7.5 |
HIGH
Network
|
proxygen_project
|
proxygen
|
Facebook Proxygen before 2015-11-09 mismanages HTTPMessage.request state, which allows remote attackers to conduct hijacking attacks and bypass ACL checks.
|
CWE-284
Improper Access Control
|
CVE-2015-7265
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211659
|
9.8 |
CRITICAL
Network
|
proxygen_project
|
proxygen
|
The SPDY/2 codec in Facebook Proxygen before 2015-11-09 truncates a certain field to two bytes, which allows hijacking and injection attacks.
|
CWE-74
Injection
|
CVE-2015-7264
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211660
|
7.5 |
HIGH
Network
|
proxygen_project
|
proxygen
|
The SPDY/2 codec in Facebook Proxygen before 2015-11-09 allows remote attackers to conduct hijacking attacks and bypass ACL checks via a crafted host value.
|
CWE-284
Improper Access Control
|
CVE-2015-7263
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|