|
212571
|
- |
|
matomo
|
matomo
|
The DisplayTopKeywords function in plugins/Referrers/Controller.php in Piwik before 2.15.0 allows remote attackers to conduct PHP object injection attacks, conduct Server-Side Request Forgery (SSRF) …
|
NVD-CWE-Other
|
CVE-2015-7816
|
2024-11-21 11:37 |
2015-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212572
|
- |
|
matomo
|
matomo
|
Directory traversal vulnerability in core/ViewDataTable/Factory.php in Piwik before 2.15.0 allows remote attackers to include and execute arbitrary local files via the viewDataTable parameter.
|
CWE-22
Path Traversal
|
CVE-2015-7815
|
2024-11-21 11:37 |
2015-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212573
|
- |
|
atutor
|
atutor
|
Multiple eval injection vulnerabilities in mods/_standard/gradebook/edit_marks.php in ATutor 2.2 and earlier allow remote authenticated users with the AT_PRIV_GRADEBOOK privilege to execute arbitrary…
|
NVD-CWE-Other
|
CVE-2015-7712
|
2024-11-21 11:37 |
2015-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212574
|
- |
|
linux
|
linux_kernel
|
The key_gc_unused_keys function in security/keys/gc.c in the Linux kernel through 4.2.6 allows local users to cause a denial of service (OOPS) via crafted keyctl commands.
|
CWE-20
Improper Input Validation
|
CVE-2015-7872
|
2024-11-21 11:37 |
2015-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212575
|
- |
|
oracle wireshark
|
solaris wireshark
|
The pcapng_read_if_descr_block function in wiretap/pcapng.c in the pcapng parser in Wireshark 1.12.x before 1.12.8 uses too many levels of pointer indirection, which allows remote attackers to cause …
|
CWE-20
Improper Input Validation
|
CVE-2015-7830
|
2024-11-21 11:37 |
2015-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212576
|
- |
|
pc-egg
|
pwebmanager
|
PC-EGG pWebManager before 3.3.10, and before 2.2.2 for PHP 4.x, allows remote authenticated users to execute arbitrary OS commands by leveraging the editor role.
|
CWE-78
OS Command
|
CVE-2015-7774
|
2024-11-21 11:37 |
2015-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212577
|
- |
|
unitronics
|
visilogic_oplc_ide
|
Unitronics VisiLogic OPLC IDE before 9.8.02 allows remote attackers to execute unspecified code via unknown vectors.
|
CWE-94
Code Injection
|
CVE-2015-7905
|
2024-11-21 11:37 |
2015-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212578
|
- |
|
lenovo ibm
|
switch_center system_networking_switch_center
|
Race condition in the administration-panel web service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8.1.2.0 allows remote attackers to obtain privilege…
|
CWE-362
Race Condition
|
CVE-2015-7820
|
2024-11-21 11:37 |
2015-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212579
|
- |
|
lenovo ibm
|
switch_center system_networking_switch_center
|
The DB service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8.1.2.0 allows remote attackers to obtain sensitive administrator-account information via a…
|
CWE-255
Credentials Management
|
CVE-2015-7819
|
2024-11-21 11:37 |
2015-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212580
|
- |
|
ibm lenovo
|
system_networking_switch_center switch_center
|
The administration-panel web service in IBM System Networking Switch Center (SNSC) before 7.3.1.5 and Lenovo Switch Center before 8.1.2.0 allows local users to execute arbitrary JSP code with SYSTEM …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7818
|
2024-11-21 11:37 |
2015-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|