|
212411
|
7.5 |
HIGH
Network
|
ntp
|
ntp
|
NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (client-server association tear down) by sending broadcast packets with invalid authentication to a bro…
|
CWE-19
Data Processing Errors
|
CVE-2015-7979
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212412
|
7.5 |
HIGH
Network
|
ntp
|
ntp
|
NTP before 4.2.8p6 and 4.3.0 before 4.3.90 allows a remote attackers to cause a denial of service (stack exhaustion) via an ntpdc relist command, which triggers recursive traversal of the restriction…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2015-7978
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212413
|
5.9 |
MEDIUM
Network
|
ntp oracle siemens netapp freebsd fedoraproject debian canonical
|
ntp linux tim_4r-ie_firmware tim_4r-ie_dnp3_firmware oncommand_balance clustered_data_ontap freebsd fedora debian_linux ubuntu_linux
|
ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command.
|
CWE-476
NULL Pointer Dereference
|
CVE-2015-7977
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212414
|
4.3 |
MEDIUM
Network
|
ntp suse novell opensuse
|
ntp linux_enterprise_server linux_enterprise_debuginfo manager_proxy manager linux_enterprise_desktop suse_openstack_cloud leap opensuse suse_linux_enterprise_server
|
The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows attackers to cause unspecified impact via a c…
|
CWE-254
7PK - Security Features
|
CVE-2015-7976
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212415
|
6.2 |
MEDIUM
Local
|
ntp
|
ntp
|
The nextvar function in NTP before 4.2.8p6 and 4.3.x before 4.3.90 does not properly validate the length of its input, which allows an attacker to cause a denial of service (application crash).
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7975
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212416
|
6.5 |
MEDIUM
Network
|
ntp siemens freebsd netapp canonical
|
ntp tim_4r-ie_firmware tim_4r-ie_dnp3_firmware freebsd oncommand_balance clustered_data_ontap ubuntu_linux
|
NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network.
|
CWE-254
7PK - Security Features
|
CVE-2015-7973
|
2024-11-21 11:37 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212417
|
6.5 |
MEDIUM
Network
|
paessler
|
prtg_network_monitor
|
XML external entity vulnerability in PRTG Network Monitor before 16.2.23.3077/3078 allows remote authenticated users to read arbitrary files by creating a new HTTP XML/REST Value sensor that accesses…
|
CWE-611
XXE
|
CVE-2015-7743
|
2024-11-21 11:37 |
2017-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212418
|
3.7 |
LOW
Network
|
netapp
|
clustered_data_ontap
|
Clustered Data ONTAP versions 8.0, 8.3.1, and 8.3.2 contain a default privileged account which under certain conditions can be used for unauthorized information disclosure.
|
CWE-200
Information Exposure
|
CVE-2015-8020
|
2024-11-21 11:37 |
2017-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212419
|
7.5 |
HIGH
Network
|
ntp
|
ntp-dev
|
An integer overflow can occur in NTP-dev.4.3.70 leading to an out-of-bounds memory copy operation when processing a specially crafted private mode packet. The crafted packet needs to have the correct…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2015-7848
|
2024-11-21 11:37 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212420
|
4.9 |
MEDIUM
Network
|
huawei
|
quidway_s5300_firmware quidway_s9300_firmware s5700_firmware s12700_firmware ar_firmware s5300_firmware s9300_firmware
|
Huawei AR routers with software before V200R007C00SPC100; Quidway S9300 routers with software before V200R009C00; S12700 routers with software before V200R008C00SPC500; S9300, Quidway S5300, and S530…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2015-8086
|
2024-11-21 11:37 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|