CVE Feed

    Dashboard / CVE

    9.6
    Critical

    CVE-2015-8789

    Last Modified: 12 Apr 2025

    Use-after-free vulnerability in the EbmlMaster::Read function in libEBML before 1.3.3 allows context-dependent attackers to have unspecified impact via a "deeply nested element with infinite size" followed by another element of an upper level in an EBML document.

    Published: 29 Jan 2016
    6.1
    Medium

    CVE-2015-8793

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in program/include/rcmail.php in Roundcube before 1.0.6 and 1.1.x before 1.1.2 allows remote attackers to inject arbitrary web script or HTML via the _mbox parameter in a mail task to the default URL, a different vulnerability than CVE-2011-2937.

    Published: 29 Jan 2016
    6.5
    Medium

    CVE-2015-8794

    Last Modified: 12 Apr 2025

    Absolute path traversal vulnerability in program/steps/addressbook/photo.inc in Roundcube before 1.0.6 and 1.1.x before 1.1.2 allows remote authenticated users to read arbitrary files via a full pathname in the _alt parameter, related to contact photo handling.

    Published: 29 Jan 2016
    7.5
    High

    CVE-2015-7464

    Last Modified: 12 Apr 2025

    Report Builder in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2-Rational-CLM-ifix011 and 6.0 before 6.0.0-Rational-CLM-ifix005 allows remote attackers to cause a denial of service (Report Builder server outage) via a crafted request to a Report Builder instance URL.

    Published: 29 Jan 2016
    Unknown

    CVE-2016-3197

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-3197. Reason: This candidate is a duplicate of CVE-2015-3197. A typo caused the wrong ID to be used. Notes: All CVE users should reference CVE-2015-3197 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 29 Jan 2016
    4.3
    Medium

    CVE-2016-2144

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-0284. Reason: This candidate is a reservation duplicate of CVE-2015-0284. Notes: All CVE users should reference CVE-2015-0284 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 29 Jan 2016
    7.8
    High

    CVE-2017-0361

    Last Modified: 21 Nov 2024

    Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains an information disclosure flaw, where the api.log might contain passwords in plaintext.

    Published: 29 Jan 2016
    5.5
    Medium

    CVE-2016-2198

    Last Modified: 12 Apr 2025

    QEMU (aka Quick Emulator) built with the USB EHCI emulation support is vulnerable to a null pointer dereference flaw. It could occur when an application attempts to write to EHCI capabilities registers. A privileged user inside quest could use this flaw to crash the QEMU process instance resulting in DoS.

    Published: 29 Jan 2016
    9.8
    Critical

    CVE-2016-0868

    Last Modified: 12 Apr 2025

    Stack-based buffer overflow on Rockwell Automation Allen-Bradley MicroLogix 1100 devices A through 15.000 and B before 15.002 allows remote attackers to execute arbitrary code via a crafted web request.

    Published: 28 Jan 2016
    3.7
    Low

    CVE-2016-0701

    Last Modified: 12 Apr 2025

    The DH_check_pub_key function in crypto/dh/dh_check.c in OpenSSL 1.0.2 before 1.0.2f does not ensure that prime numbers are appropriate for Diffie-Hellman (DH) key exchange, which makes it easier for remote attackers to discover a private DH exponent by making multiple handshakes with a peer that chose an inappropriate number, as demonstrated by a number in an X9.42 file.

    Published: 28 Jan 2016
    7.8
    High

    CVE-2016-7913

    Last Modified: 12 Apr 2025

    The xc2028_set_config function in drivers/media/tuners/tuner-xc2028.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) via vectors involving omission of the firmware name from a certain data structure.

    Published: 28 Jan 2016
    5.9
    Medium

    CVE-2015-3197

    Last Modified: 12 Apr 2025

    ssl/s2_srvr.c in OpenSSL 1.0.1 before 1.0.1r and 1.0.2 before 1.0.2f does not prevent use of disabled ciphers, which makes it easier for man-in-the-middle attackers to defeat cryptographic protection mechanisms by performing computations on SSLv2 traffic, related to the get_client_master_key and get_client_hello functions.

    Published: 28 Jan 2016
    5.5
    Medium

    CVE-2015-8950

    Last Modified: 12 Apr 2025

    arch/arm64/mm/dma-mapping.c in the Linux kernel before 4.0.3, as used in the ION subsystem in Android and other products, does not initialize certain data structures, which allows local users to obtain sensitive information from kernel memory by triggering a dma_mmap call.

    Published: 28 Jan 2016
    6.5
    Medium

    CVE-2016-7531

    Last Modified: 20 Apr 2025

    MagickCore/memory.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted PDB file.

    Published: 28 Jan 2016
    6.5
    Medium

    CVE-2016-7532

    Last Modified: 20 Apr 2025

    coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.

    Published: 28 Jan 2016
    5.3
    Medium

    CVE-2016-2042

    Last Modified: 12 Apr 2025

    phpMyAdmin 4.4.x before 4.4.15.3 and 4.5.x before 4.5.4 allows remote attackers to obtain sensitive information via a crafted request to (1) libraries/phpseclib/Crypt/AES.php or (2) libraries/phpseclib/Crypt/Rijndael.php, which reveals the full path in an error message.

    Published: 28 Jan 2016
    6.5
    Medium

    CVE-2016-7526

    Last Modified: 20 Apr 2025

    coders/wpg.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted file.

    Published: 28 Jan 2016
    6.5
    Medium

    CVE-2016-7529

    Last Modified: 20 Apr 2025

    coders/xcf.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted XCF file.

    Published: 28 Jan 2016
    6.5
    Medium

    CVE-2016-7530

    Last Modified: 20 Apr 2025

    The quantum handling code in ImageMagick allows remote attackers to cause a denial of service (divide-by-zero error or out-of-bounds write) via a crafted file.

    Published: 28 Jan 2016
    5.5
    Medium

    CVE-2016-2197

    Last Modified: 12 Apr 2025

    QEMU (aka Quick Emulator) built with an IDE AHCI emulation support is vulnerable to a null pointer dereference flaw. It occurs while unmapping the Frame Information Structure (FIS) and Command List Block (CLB) entries. A privileged user inside guest could use this flaw to crash the QEMU process instance resulting in DoS.

    Published: 28 Jan 2016
    7.5
    High

    CVE-2015-6421

    Last Modified: 12 Apr 2025

    cifs-ao in the CIFS optimization functionality on Cisco Wide Area Application Service (WAAS) and Virtual WAAS (vWAAS) devices 5.x before 5.3.5d and 5.4 and 5.5 before 5.5.3 allows remote attackers to cause a denial of service (resource consumption and device reload) via crafted network traffic, aka Bug ID CSCus85330.

    Published: 27 Jan 2016
    5.3
    Medium

    CVE-2016-1299

    Last Modified: 12 Apr 2025

    The web-management GUI implementation on Cisco Small Business SG300 devices 1.4.1.x allows remote attackers to cause a denial of service (HTTPS outage) via crafted HTTPS requests, aka Bug ID CSCuw87174.

    Published: 27 Jan 2016
    9.8
    Critical

    CVE-2015-6319

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the web-based management interface on Cisco RV220W devices allows remote attackers to execute arbitrary SQL commands via a crafted header in an HTTP request, aka Bug ID CSCuv29574.

    Published: 27 Jan 2016
    6.1
    Medium

    CVE-2016-1300

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Cisco Unity Connection (UC) 10.5(2.3009) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCux82582.

    Published: 27 Jan 2016
    9.8
    Critical

    CVE-2016-1896

    Last Modified: 12 Apr 2025

    Race condition in the initialization process on Lexmark printers with firmware ATL before ATL.02.049, CB before CB.02.049, PP before PP.02.049, and YK before YK.02.049 allows remote attackers to bypass authentication by leveraging incorrect detection of the security-jumper status.

    Published: 27 Jan 2016
    6.1
    Medium

    CVE-2016-0209

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.5.0 before CF09 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 27 Jan 2016
    6.1
    Medium

    CVE-2015-7439

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in InfoSphere Data Architect (IDA), as distributed in IBM Rational Software Architect 8.5 through 9.5, Rational Software Architect for WebSphere Software (RSA4WS) 8.5 through 9.5, and Rational Software Architect RealTime (RSART) 8.5 through 9.5, allows remote attackers to inject arbitrary web script or HTML via a crafted URL.

    Published: 27 Jan 2016
    4.1
    Medium

    CVE-2015-7487

    Last Modified: 12 Apr 2025

    IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.9 IFIX002, and 7.6.0 before 7.6.0.3 IFIX001; Maximo Asset Management 7.5.0 before 7.5.0.9 IFIX002, 7.5.1, and 7.6.0 before 7.6.0.3 IFIX001 for SmartCloud Control Desk; and Maximo Asset Management 7.1 through 7.1.1.13 and 7.2 for Tivoli IT Asset Management for IT and certain other products allow local users to obtain sensitive information by leveraging administrative privileges and reading log files.

    Published: 27 Jan 2016
    5.9
    Medium

    CVE-2015-7488

    Last Modified: 12 Apr 2025

    IBM Spectrum Scale 4.1.1.x before 4.1.1.4 and 4.2.x before 4.2.0.1, in certain LDAP File protocol configurations, allows remote attackers to discover an LDAP password via unspecified vectors.

    Published: 27 Jan 2016
    7.5
    High

    CVE-2016-10196

    Last Modified: 25 Nov 2025

    Stack-based buffer overflow in the evutil_parse_sockaddr_port function in evutil.c in libevent before 2.1.6-beta allows attackers to cause a denial of service (segmentation fault) via vectors involving a long string in brackets in the ip_as_string argument.

    Published: 27 Jan 2016
    9.1
    Critical

    CVE-2015-5041

    Last Modified: 12 Apr 2025

    The J9 JVM in IBM SDK, Java Technology Edition 6 before SR16 FP20, 6 R1 before SR8 FP20, 7 before SR9 FP30, and 7 R1 before SR3 FP30 allows remote attackers to obtain sensitive information or inject data by invoking non-public interface methods.

    Published: 27 Jan 2016
    5.5
    Medium

    CVE-2015-8818

    Last Modified: 12 Apr 2025

    The cpu_physical_memory_write_rom_internal function in exec.c in QEMU (aka Quick Emulator) does not properly skip MMIO regions, which allows local privileged guest users to cause a denial of service (guest crash) via unspecified vectors.

    Published: 27 Jan 2016
    7.3
    High

    CVE-2016-0755

    Last Modified: 12 Apr 2025

    The ConnectionExists function in lib/url.c in libcurl before 7.47.0 does not properly re-use NTLM-authenticated proxy connections, which might allow remote attackers to authenticate as other users via a request, a similar issue to CVE-2014-0015.

    Published: 27 Jan 2016
    9.8
    Critical

    CVE-2016-10195

    Last Modified: 20 Apr 2025

    The name_parse function in evdns.c in libevent before 2.1.6-beta allows remote attackers to have unspecified impact via vectors involving the label_len variable, which triggers an out-of-bounds stack read.

    Published: 27 Jan 2016
    5.5
    Medium

    CVE-2015-8817

    Last Modified: 12 Apr 2025

    QEMU (aka Quick Emulator) built to use 'address_space_translate' to map an address to a MemoryRegionSection is vulnerable to an OOB r/w access issue. It could occur while doing pci_dma_read/write calls. Affects QEMU versions >= 1.6.0 and <= 2.3.1. A privileged user inside guest could use this flaw to crash the guest instance resulting in DoS.

    Published: 27 Jan 2016
    6.5
    Medium

    CVE-2016-2089

    Last Modified: 12 Apr 2025

    The jas_matrix_clip function in jas_seq.c in JasPer 1.900.1 allows remote attackers to cause a denial of service (invalid read and application crash) via a crafted JPEG 2000 image.

    Published: 27 Jan 2016
    4.1
    Medium

    CVE-2016-1490

    Last Modified: 12 Apr 2025

    The Wifi hotspot in Lenovo SHAREit before 3.2.0 for Windows allows remote attackers to obtain sensitive file names via a crafted file request to /list.

    Published: 26 Jan 2016
    8.8
    High

    CVE-2016-1491

    Last Modified: 12 Apr 2025

    The Wifi hotspot in Lenovo SHAREit before 3.2.0 for Windows, when configured to receive files, has a hardcoded password of 12345678, which makes it easier for remote attackers to obtain access by leveraging a position within the WLAN coverage area.

    Published: 26 Jan 2016
    6.1
    Medium

    CVE-2016-1926

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the charts module in Greenbone Security Assistant (GSA) 6.x before 6.0.8 allows remote attackers to inject arbitrary web script or HTML via the aggregate_type parameter in a get_aggregate command to omp.

    Published: 26 Jan 2016
    6.1
    Medium

    CVE-2016-1492

    Last Modified: 12 Apr 2025

    The Wifi hotspot in Lenovo SHAREit before 3.5.48_ww for Android, when configured to receive files, does not require a password, which makes it easier for remote attackers to obtain access by leveraging a position within the WLAN coverage area.

    Published: 26 Jan 2016
    5
    Medium

    CVE-2016-0869

    Last Modified: 12 Apr 2025

    Heap-based buffer overflow in MICROSYS PROMOTIC before 8.3.11 allows remote authenticated users to cause a denial of service via a malformed HTML document.

    Published: 26 Jan 2016
    8.8
    High

    CVE-2015-8379

    Last Modified: 12 Apr 2025

    CakePHP 2.x and 3.x before 3.1.5 might allow remote attackers to bypass the CSRF protection mechanism via the _method parameter.

    Published: 26 Jan 2016
    8
    High

    CVE-2016-1489

    Last Modified: 12 Apr 2025

    Lenovo SHAREit before 3.2.0 for Windows and SHAREit before 3.5.48_ww for Android transfer files in cleartext, which allows remote attackers to (1) obtain sensitive information by sniffing the network or (2) conduct man-in-the-middle (MITM) attacks via unspecified vectors.

    Published: 26 Jan 2016
    6.1
    Medium

    CVE-2016-1298

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unified Contact Center Express 10.0(1), 10.5(1), 10.6(1), and 11.0(1) allow remote attackers to inject arbitrary web script or HTML via vectors related to permalinks, aka Bug ID CSCux92033.

    Published: 26 Jan 2016
    6.1
    Medium

    CVE-2015-6337

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0.10 allows remote attackers to inject arbitrary web script or HTML via a crafted hostname in an SNMP response, aka Bug ID CSCuw47238.

    Published: 26 Jan 2016
    10
    Critical

    CVE-2016-1931

    Last Modified: 12 Apr 2025

    Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 44.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to uninitialized memory encountered during brotli data compression, and other vectors.

    Published: 26 Jan 2016
    4.7
    Medium

    CVE-2016-1947

    Last Modified: 12 Apr 2025

    Mozilla Firefox 43.x mishandles attempts to connect to the Application Reputation service, which makes it easier for remote attackers to trigger an unintended download by leveraging the absence of reputation data.

    Published: 26 Jan 2016
    9.8
    Critical

    CVE-2016-0746

    Last Modified: 12 Apr 2025

    Use-after-free vulnerability in the resolver in nginx 0.6.18 through 1.8.0 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (worker process crash) or possibly have unspecified other impact via a crafted DNS response related to CNAME response processing.

    Published: 26 Jan 2016
    9.8
    Critical

    CVE-2016-1930

    Last Modified: 12 Apr 2025

    Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 44.0 and Firefox ESR 38.x before 38.6 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

    Published: 26 Jan 2016
    5.3
    Medium

    CVE-2016-1939

    Last Modified: 12 Apr 2025

    Mozilla Firefox before 44.0 stores cookies with names containing vertical tab characters, which allows remote attackers to obtain sensitive information by reading HTTP Cookie headers. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-7208.

    Published: 26 Jan 2016