|
211671
|
6.1 |
MEDIUM
Network
|
fortinet
|
fortisandbox_firmware
|
Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface (WebUI) in Fortinet FortiSandbox before 2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) ser…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7360
|
2024-11-21 11:36 |
2016-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211672
|
7.5 |
HIGH
Network
|
debian gnome
|
debian_linux librsvg
|
librsvg before 2.40.12 allows context-dependent attackers to cause a denial of service (infinite loop, stack consumption, and application crash) via cyclic references in an SVG document.
|
CWE-20
Improper Input Validation
|
CVE-2015-7558
|
2024-11-21 11:36 |
2016-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211673
|
7.5 |
HIGH
Network
|
gnome
|
librsvg
|
The _rsvg_node_poly_build_path function in rsvg-shapes.c in librsvg before 2.40.7 allows context-dependent attackers to cause a denial of service (out-of-bounds heap read) via an odd number of elemen…
|
CWE-20
Improper Input Validation
|
CVE-2015-7557
|
2024-11-21 11:36 |
2016-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211674
|
4.6 |
MEDIUM
Physics
|
linux
|
linux_kernel
|
The aiptek_probe function in drivers/input/tablet/aiptek.c in the Linux kernel before 4.4 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash…
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-7515
|
2024-11-21 11:36 |
2016-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211675
|
2.0 |
LOW
Physics
|
gnupg debian canonical
|
libgcrypt debian_linux ubuntu_linux
|
Libgcrypt before 1.6.5 does not properly perform elliptic-point curve multiplication during decryption, which makes it easier for physically proximate attackers to extract ECDH keys by measuring elec…
|
CWE-200
Information Exposure
|
CVE-2015-7511
|
2024-11-21 11:36 |
2016-04-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211676
|
7.8 |
HIGH
Local
|
watchguard
|
panda_url_filtering
|
Panda Security URL Filtering before 4.3.1.9 uses a weak ACL for the "Panda Security URL Filtering" directory and installed files, which allows local users to gain SYSTEM privileges by modifying Panda…
|
CWE-276
Incorrect Default Permissions
|
CVE-2015-7378
|
2024-11-21 11:36 |
2016-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211677
|
7.8 |
HIGH
Local
|
opensuse
|
opensuse
|
Heap-based buffer overflow in the gdk_pixbuf_flip function in gdk-pixbuf-scale.c in gdk-pixbuf 2.30.x allows remote attackers to cause a denial of service or possibly execute arbitrary code via a cra…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7552
|
2024-11-21 11:36 |
2016-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211678
|
5.5 |
MEDIUM
Local
|
giflib_project fedoraproject
|
giflib fedora
|
Heap-based buffer overflow in giffix.c in giffix in giflib 5.1.1 allows attackers to cause a denial of service (program crash) via crafted image and logical screen width fields in a GIF file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7555
|
2024-11-21 11:36 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211679
|
9.8 |
CRITICAL
Network
|
git_project canonical redhat opensuse
|
git ubuntu_linux software_collections opensuse
|
The (1) git-remote-ext and (2) unspecified other remote helper programs in Git before 2.3.10, 2.4.x before 2.4.10, 2.5.x before 2.5.4, and 2.6.x before 2.6.1 do not properly restrict the allowed prot…
|
CWE-20 CWE-284
Improper Input Validation Improper Access Control
|
CVE-2015-7545
|
2024-11-21 11:36 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211680
|
6.1 |
MEDIUM
Network
|
apache
|
wicket
|
Multiple cross-site scripting (XSS) vulnerabilities in the (1) RadioGroup and (2) CheckBoxMultipleChoice classes in Apache Wicket 1.5.x before 1.5.15, 6.x before 6.22.0, and 7.x before 7.2.0 allow re…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7520
|
2024-11-21 11:36 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|