|
212081
|
7.5 |
HIGH
Network
|
samsung
|
web_viewer
|
Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows attackers to bypass filesystem encryption via XOR calculations.
|
CWE-310
Cryptographic Issues
|
CVE-2015-8281
|
2024-11-21 11:38 |
2016-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212082
|
7.5 |
HIGH
Network
|
samsung
|
web_viewer
|
Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows remote attackers to discover credentials by reading detailed error messages.
|
CWE-200
Information Exposure
|
CVE-2015-8280
|
2024-11-21 11:38 |
2016-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212083
|
8.6 |
HIGH
Network
|
samsung
|
web_viewer
|
Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows remote attackers to read arbitrary files via a request to an unspecified PHP script.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-8279
|
2024-11-21 11:38 |
2016-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212084
|
6.5 |
MEDIUM
Adjacent
|
sophos isc debian canonical
|
unified_threat_management_up2date dhcp debian_linux ubuntu_linux
|
ISC DHCP 4.x before 4.1-ESV-R12-P1, 4.2.x, and 4.3.x before 4.3.3-P1 allows remote attackers to cause a denial of service (application crash) via an invalid length field in a UDP IPv4 packet.
|
CWE-20
Improper Input Validation
|
CVE-2015-8605
|
2024-11-21 11:38 |
2016-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212085
|
7.3 |
HIGH
Network
|
canonical perl debian
|
ubuntu_linux pathtools debian_linux
|
The canonpath function in the File::Spec module in PathTools before 3.62, as used in Perl, does not properly preserve the taint attribute of data, which might allow context-dependent attackers to byp…
|
CWE-20
Improper Input Validation
|
CVE-2015-8607
|
2024-11-21 11:38 |
2016-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212086
|
7.4 |
HIGH
Network
|
fedoraproject openstack
|
fedora swift3
|
Swift3 before 1.9 allows remote attackers to conduct replay attacks via an Authorization request that lacks a Date header.
|
CWE-20
Improper Input Validation
|
CVE-2015-8466
|
2024-11-21 11:38 |
2016-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212087
|
6.8 |
MEDIUM
Physics
|
huawei
|
te50 te40 te60 te30 te60_firmware
|
Huawei TE30, TE40, TE50, and TE60 multimedia video conferencing endpoints with software before V100R001C10SPC100 do not require entry of the old password when changing the password for the Debug acco…
|
CWE-255
Credentials Management
|
CVE-2015-8673
|
2024-11-21 11:38 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212088
|
5.3 |
MEDIUM
Network
|
huawei
|
te60_firmware
|
The presentation transmission permission management mechanism in Huawei TE30, TE40, TE50, and TE60 multimedia video conferencing endpoints with software before V100R001C10SPC100 allows remote attacke…
|
CWE-19
Data Processing Errors
|
CVE-2015-8672
|
2024-11-21 11:38 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212089
|
9.8 |
CRITICAL
Network
|
f5
|
big-ip_domain_name_system big-ip_application_acceleration_manager big-ip_link_controller big-ip_policy_enforcement_manager big-ip_advanced_firewall_manager big-ip_local_traffic_manager…
|
BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Link Controller, and PEM 12.0.0 before HF1 on the 2000, 4000, 5000, 7000, and 10000 platforms do not properly sync passwords with the Always-On Managem…
|
CWE-255
Credentials Management
|
CVE-2015-8611
|
2024-11-21 11:38 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212090
|
8.2 |
HIGH
Network
|
grassroots_dicom_project
|
grassroots_dicom
|
The JPEGLSCodec::DecodeExtent function in MediaStorageAndFileFormat/gdcmJPEGLSCodec.cxx in Grassroots DICOM (aka GDCM) before 2.6.2 allows remote attackers to obtain sensitive information from proces…
|
CWE-125
Out-of-bounds Read
|
CVE-2015-8397
|
2024-11-21 11:38 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|