CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2015-5996

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability on Mediabridge Medialink MWN-WAPR300N devices with firmware 5.07.50 allows remote attackers to hijack the authentication of arbitrary users.

    Published: 31 Dec 2015
    6.1
    Medium

    CVE-2015-6017

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Forms/rpAuth_1 on ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0) allow remote attackers to inject arbitrary web script or HTML via the (1) LoginPassword or (2) hiddenPassword parameter.

    Published: 31 Dec 2015
    9.8
    Critical

    CVE-2015-6016

    Last Modified: 12 Apr 2025

    ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0), PMG5318-B20A devices with firmware 1.00AANC0b5, and NBG-418N devices have a default password of 1234 for the admin account, which allows remote attackers to obtain administrative access via unspecified vectors.

    Published: 31 Dec 2015
    8
    High

    CVE-2015-6020

    Last Modified: 12 Apr 2025

    ZyXEL PMG5318-B20A devices with firmware 1.00AANC0b5 allow remote authenticated users to obtain administrative privileges by leveraging access to the user account.

    Published: 31 Dec 2015
    5.3
    Medium

    CVE-2015-7279

    Last Modified: 12 Apr 2025

    Amped Wireless R10000 devices with firmware 2.5.2.11 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof responses by predicting this value.

    Published: 31 Dec 2015
    9.8
    Critical

    CVE-2015-7280

    Last Modified: 12 Apr 2025

    The web administration interface on ReadyNet WRT300N-DD devices with firmware 1.0.26 has a default password of admin for the admin account, which allows remote attackers to obtain administrative privileges by leveraging a LAN session.

    Published: 31 Dec 2015
    8.8
    High

    CVE-2015-7281

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability on ReadyNet WRT300N-DD devices with firmware 1.0.26 allows remote attackers to hijack the authentication of arbitrary users.

    Published: 31 Dec 2015
    5.8
    Medium

    CVE-2015-7282

    Last Modified: 12 Apr 2025

    ReadyNet WRT300N-DD devices with firmware 1.0.26 use the same source port number for every DNS query, which makes it easier for remote attackers to spoof responses by selecting that number for the destination port.

    Published: 31 Dec 2015
    8.1
    High

    CVE-2015-7283

    Last Modified: 12 Apr 2025

    The web administration interface on ZyXEL NBG-418N devices with firmware 1.00(AADZ.3)C0 has a default password of 1234 for the admin account, which allows remote attackers to obtain administrative privileges by leveraging a LAN session.

    Published: 31 Dec 2015
    5.3
    Medium

    CVE-2015-7447

    Last Modified: 12 Apr 2025

    IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF29, 8.0.0 before 8.0.0.1 CF20, and 8.5.0 before CF09 allows remote attackers to bypass intended Portal AccessControl REST API access restrictions and obtain sensitive information via unspecified vectors.

    Published: 31 Dec 2015
    7.5
    High

    CVE-2015-7248

    Last Modified: 12 Apr 2025

    ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allow remote attackers to discover usernames and password hashes by reading the cgi-bin/webproc HTML source code, a different vulnerability than CVE-2015-8703.

    Published: 30 Dec 2015
    6.1
    Medium

    CVE-2015-7782

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Let's PHP! Frame high-speed chat before 2015-09-22 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 30 Dec 2015
    6.5
    Medium

    CVE-2015-8703

    Last Modified: 12 Apr 2025

    ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE and ZXV10 W300 devices W300V1.0.0f_ER1_PE allow remote authenticated users to bypass intended access restrictions, and discover credentials and keys, by reading the configuration file, a different vulnerability than CVE-2015-7248.

    Published: 30 Dec 2015
    4.9
    Medium

    CVE-2015-7249

    Last Modified: 12 Apr 2025

    ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allow remote authenticated users to bypass intended access restrictions via a modified request, as demonstrated by leveraging the support account to change a password via a cgi-bin/webproc accountpsd action.

    Published: 30 Dec 2015
    4.3
    Medium

    CVE-2015-7784

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the BOKUBLOCK (1) BbAdminViewsControl213 plugin before 1.1 and (2) BbAdminViewsControl plugin before 2.1 for EC-CUBE allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

    Published: 30 Dec 2015
    6.1
    Medium

    CVE-2015-7790

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability on ASUS Japan WL-330NUL devices with firmware before 3.0.0.42 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 30 Dec 2015
    7.4
    High

    CVE-2015-5663

    Last Modified: 12 Apr 2025

    The file-execution functionality in WinRAR before 5.30 beta 5 allows local users to gain privileges via a Trojan horse file with a name similar to an extensionless filename that was selected by the user.

    Published: 30 Dec 2015
    7.5
    High

    CVE-2015-7250

    Last Modified: 12 Apr 2025

    Absolute path traversal vulnerability in cgi-bin/webproc on ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allows remote attackers to read arbitrary files via a full pathname in the getpage parameter.

    Published: 30 Dec 2015
    9.8
    Critical

    CVE-2015-7251

    Last Modified: 12 Apr 2025

    ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE have a hardcoded password of root for the root account, which allows remote attackers to obtain administrative access via a TELNET session.

    Published: 30 Dec 2015
    6.1
    Medium

    CVE-2015-7252

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in cgi-bin/webproc on ZTE ZXHN H108N R1A devices before ZTE.bhs.ZXHNH108NR1A.k_PE allows remote attackers to inject arbitrary web script or HTML via the errorpage parameter.

    Published: 30 Dec 2015
    4.3
    Medium

    CVE-2015-7787

    Last Modified: 12 Apr 2025

    ASUS Japan WL-330NUL devices with firmware before 3.0.0.42 allow remote attackers to discover the WPA2-PSK passphrase via unspecified vectors.

    Published: 30 Dec 2015
    7.3
    High

    CVE-2015-7788

    Last Modified: 12 Apr 2025

    ASUS Japan WL-330NUL devices with firmware before 3.0.0.42 allow remote attackers to execute arbitrary commands via unspecified vectors.

    Published: 30 Dec 2015
    4.3
    Medium

    CVE-2015-7789

    Last Modified: 12 Apr 2025

    ASUS Japan WL-330NUL devices with firmware before 3.0.0.42 allow remote attackers to cause a denial of service via unspecified vectors.

    Published: 30 Dec 2015
    9.8
    Critical

    CVE-2015-7792

    Last Modified: 12 Apr 2025

    Corega CG-WLBARGS devices allow remote attackers to perform administrative operations via unspecified vectors.

    Published: 30 Dec 2015
    5.8
    Medium

    CVE-2015-7793

    Last Modified: 12 Apr 2025

    Corega CG-WLBARAGM devices provide an open proxy service, which allows remote attackers to trigger outbound network traffic via unspecified vectors.

    Published: 30 Dec 2015
    5.8
    Medium

    CVE-2015-7794

    Last Modified: 12 Apr 2025

    Corega CG-WLNCM4G devices provide an open DNS resolver, which allows remote attackers to cause a denial of service (traffic amplification) via crafted queries.

    Published: 30 Dec 2015
    7.1
    High

    CVE-2015-8743

    Last Modified: 12 Apr 2025

    QEMU (aka Quick Emulator) built with the NE2000 device emulation support is vulnerable to an OOB r/w access issue. It could occur while performing 'ioport' r/w operations. A privileged (CAP_SYS_RAWIO) user/process could use this flaw to leak or corrupt QEMU memory bytes.

    Published: 30 Dec 2015
    9.8
    Critical

    CVE-2016-10229

    Last Modified: 20 Apr 2025

    udp.c in the Linux kernel before 4.5 allows remote attackers to execute arbitrary code via UDP traffic that triggers an unsafe second checksum calculation during execution of a recv system call with the MSG_PEEK flag.

    Published: 30 Dec 2015
    6.3
    Medium

    CVE-2015-7791

    Last Modified: 12 Apr 2025

    Multiple SQL injection vulnerabilities in admin.php in the Collne Welcart plugin before 1.5.3 for WordPress allow remote authenticated users to execute arbitrary SQL commands via the (1) search[column] or (2) switch parameter.

    Published: 29 Dec 2015
    6.1
    Medium

    CVE-2015-7786

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the NTT DATA Smart Sourcing JavaScript module 2003-11-26 through 2013-07-09 for Web Analytics Service allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8711

    Last Modified: 12 Apr 2025

    epan/dissectors/packet-nbap.c in the NBAP dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate conversation data, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8718

    Last Modified: 12 Apr 2025

    Double free vulnerability in epan/dissectors/packet-nlm.c in the NLM dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1, when the "Match MSG/RES packets for async NLM" option is enabled, allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8725

    Last Modified: 12 Apr 2025

    The dissect_diameter_base_framed_ipv6_prefix function in epan/dissectors/packet-diameter.c in the DIAMETER dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the IPv6 prefix length, which allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8733

    Last Modified: 12 Apr 2025

    The ngsniffer_process_record function in wiretap/ngsniffer.c in the Sniffer file parser in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the relationships between record lengths and record header lengths, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted file.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8741

    Last Modified: 12 Apr 2025

    The dissect_ppi function in epan/dissectors/packet-ppi.c in the PPI dissector in Wireshark 2.0.x before 2.0.1 does not initialize a packet-header data structure, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.3
    Medium

    CVE-2016-5104

    Last Modified: 12 Apr 2025

    The socket_create function in common/socket.c in libimobiledevice and libusbmuxd allows remote attackers to bypass intended access restrictions and communicate with services on iOS devices by connecting to an IPv4 TCP socket.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8712

    Last Modified: 12 Apr 2025

    The dissect_hsdsch_channel_info function in epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 1.12.x before 1.12.9 does not validate the number of PDUs, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8719

    Last Modified: 12 Apr 2025

    The dissect_dns_answer function in epan/dissectors/packet-dns.c in the DNS dissector in Wireshark 1.12.x before 1.12.9 mishandles the EDNS0 Client Subnet option, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8726

    Last Modified: 12 Apr 2025

    wiretap/vwr.c in the VeriWave file parser in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate certain signature and Modulation and Coding Scheme (MCS) data, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted file.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8728

    Last Modified: 12 Apr 2025

    The Mobile Identity parser in (1) epan/dissectors/packet-ansi_a.c in the ANSI A dissector and (2) epan/dissectors/packet-gsm_a_common.c in the GSM A dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 improperly uses the tvb_bcd_dig_to_wmem_packet_str function, which allows remote attackers to cause a denial of service (buffer overflow and application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8734

    Last Modified: 12 Apr 2025

    The dissect_nwp function in epan/dissectors/packet-nwp.c in the NWP dissector in Wireshark 2.0.x before 2.0.1 mishandles the packet type, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8742

    Last Modified: 12 Apr 2025

    The dissect_CPMSetBindings function in epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.1 does not validate the column size, which allows remote attackers to cause a denial of service (memory consumption or application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8730

    Last Modified: 12 Apr 2025

    epan/dissectors/packet-nbap.c in the NBAP dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the number of items, which allows remote attackers to cause a denial of service (invalid read operation and application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8713

    Last Modified: 12 Apr 2025

    epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 1.12.x before 1.12.9 does not properly reserve memory for channel ID mappings, which allows remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8714

    Last Modified: 12 Apr 2025

    The dissect_dcom_OBJREF function in epan/dissectors/packet-dcom.c in the DCOM dissector in Wireshark 1.12.x before 1.12.9 does not initialize a certain IPv4 data structure, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8715

    Last Modified: 12 Apr 2025

    epan/dissectors/packet-alljoyn.c in the AllJoyn dissector in Wireshark 1.12.x before 1.12.9 does not check for empty arguments, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8716

    Last Modified: 12 Apr 2025

    The init_t38_info_conv function in epan/dissectors/packet-t38.c in the T.38 dissector in Wireshark 1.12.x before 1.12.9 does not ensure that a conversation exists, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8717

    Last Modified: 12 Apr 2025

    The dissect_sdp function in epan/dissectors/packet-sdp.c in the SDP dissector in Wireshark 1.12.x before 1.12.9 does not prevent use of a negative media count, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8720

    Last Modified: 12 Apr 2025

    The dissect_ber_GeneralizedTime function in epan/dissectors/packet-ber.c in the BER dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 improperly checks an sscanf return value, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 29 Dec 2015
    5.5
    Medium

    CVE-2015-8721

    Last Modified: 12 Apr 2025

    Buffer overflow in the tvb_uncompress function in epan/tvbuff_zlib.c in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 allows remote attackers to cause a denial of service (application crash) via a crafted packet with zlib compression.

    Published: 29 Dec 2015