|
211701
|
5.3 |
MEDIUM
Network
|
ibm
|
websphere_commerce
|
The Update Installer in IBM WebSphere Commerce Enterprise 7.0.0.8 and 7.0.0.9 does not properly replicate the search index, which allows attackers to obtain sensitive information via unspecified vect…
|
CWE-200
Information Exposure
|
CVE-2015-7444
|
2024-11-21 11:36 |
2016-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211702
|
3.7 |
LOW
Network
|
ibm
|
tivoli_storage_manager
|
The server in IBM Spectrum Protect (aka Tivoli Storage Manager) 5.5 and 6.x before 6.3.5.1 and 7.x before 7.1.4 does not properly restrict use of the ASNODENAME option, which allows remote attackers …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7408
|
2024-11-21 11:36 |
2016-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211703
|
5.4 |
MEDIUM
Network
|
ibm
|
emptoris_contract_management
|
Cross-site scripting (XSS) vulnerability in IBM Emptoris Contract Management 9.5.0.x before 9.5.0.6 iFix15, 10.0.0.x and 10.0.1.x before 10.0.1.5 iFix5, 10.0.2.x before 10.0.2.7 iFix4, and 10.0.4.x b…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7398
|
2024-11-21 11:36 |
2016-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211704
|
4.6 |
MEDIUM
Physics
|
novell linux
|
suse_linux_enterprise_server suse_linux_enterprise_debuginfo suse_linux_enterprise_software_development_kit suse_linux_enterprise_real_time_extension linux_kernel
|
The clie_5_attach function in drivers/usb/serial/visor.c in the Linux kernel through 4.4.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system cras…
|
NVD-CWE-Other
|
CVE-2015-7566
|
2024-11-21 11:36 |
2016-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211705
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The keyctl_read_key function in security/keys/keyctl.c in the Linux kernel before 4.3.4 does not properly use a semaphore, which allows local users to cause a denial of service (NULL pointer derefere…
|
CWE-362 NVD-CWE-Other
Race Condition
|
CVE-2015-7550
|
2024-11-21 11:36 |
2016-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211706
|
6.5 |
MEDIUM
Local
|
linux fedoraproject debian canonical
|
linux_kernel fedora debian_linux ubuntu_linux
|
arch/x86/kvm/x86.c in the Linux kernel before 4.4 does not reset the PIT counter values during state restoration, which allows guest OS users to cause a denial of service (divide-by-zero error and ho…
|
CWE-369
Divide By Zero
|
CVE-2015-7513
|
2024-11-21 11:36 |
2016-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211707
|
7.5 |
HIGH
Network
|
openstack oracle
|
keystonemiddleware keystone solaris
|
The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty b…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2015-7546
|
2024-11-21 11:36 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211708
|
7.5 |
HIGH
Network
|
jenkins redhat
|
jenkins openshift
|
The Plugins Manager in Jenkins before 1.640 and LTS before 1.625.2 does not verify checksums for plugin files referenced in update site data, which makes it easier for man-in-the-middle attackers to …
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2015-7539
|
2024-11-21 11:36 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211709
|
8.8 |
HIGH
Network
|
jenkins redhat
|
jenkins openshift
|
Jenkins before 1.640 and LTS before 1.625.2 allow remote attackers to bypass the CSRF protection mechanism via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2015-7538
|
2024-11-21 11:36 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211710
|
8.8 |
HIGH
Network
|
redhat jenkins
|
openshift jenkins
|
Cross-site request forgery (CSRF) vulnerability in Jenkins before 1.640 and LTS before 1.625.2 allows remote attackers to hijack the authentication of administrators for requests that have unspecifie…
|
CWE-352
Origin Validation Error
|
CVE-2015-7537
|
2024-11-21 11:36 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|