CVE Feed

    Dashboard / CVE

    4
    Medium

    CVE-2015-8228

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in the SFTP server in Huawei AR 120, 150, 160, 200, 500, 1200, 2200, 3200, and 3600 routers with software before V200R006SPH003 allows remote authenticated users to access arbitrary directories via unspecified vectors.

    Published: 24 Nov 2015
    10
    Critical

    CVE-2015-5053

    Last Modified: 12 Apr 2025

    The host memory mapping path feature in the NVIDIA GPU graphics driver R346 before 346.87 and R352 before 352.41 for Linux and R352 before 352.46 for GRID vGPU and vSGA does not properly restrict access to third-party device IO memory, which allows attackers to gain privileges, cause a denial of service (resource consumption), or possibly have unspecified other impact via unknown vectors related to the follow_pfn kernel-mode API call.

    Published: 24 Nov 2015
    7.5
    High

    CVE-2015-7808

    Last Modified: 12 Apr 2025

    The vB_Api_Hook::decodeArguments method in vBulletin 5 Connect 5.1.2 through 5.1.9 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via a crafted serialized object in the arguments parameter to ajax/api/hook/decodeArguments.

    Published: 24 Nov 2015
    6.6
    Medium

    CVE-2015-7869

    Last Modified: 12 Apr 2025

    Multiple integer overflows in the kernel mode driver for the NVIDIA GPU graphics driver R340 before 341.92, R352 before 354.35, and R358 before 358.87 on Windows and R304 before 304.131, R340 before 340.96, R352 before 352.63, and R358 before 358.16 on Linux allow local users to obtain sensitive information, cause a denial of service (crash), or possibly gain privileges via unknown vectors, which trigger uninitialized or out of bounds memory access. NOTE: this identifier has been SPLIT per ADT2 and ADT3 due to different vulnerability type and affected versions. See CVE-2015-8328 for the vulnerability in the NVAPI support layer in NVIDIA drivers for Windows.

    Published: 24 Nov 2015
    4
    Medium

    CVE-2015-8229

    Last Modified: 12 Apr 2025

    Huawei eSpace U2980 unified gateway with software before V100R001C10 and U2990 with software before V200R001C10 allow remote authenticated users to cause a denial of service via crafted signaling packets from a registered device.

    Published: 24 Nov 2015
    4.6
    Medium

    CVE-2015-0856

    Last Modified: 12 Apr 2025

    daemon/Greeter.cpp in sddm before 0.13.0 does not properly disable the KDE crash handler, which allows local users to gain privileges by crashing a greeter when using certain themes, as demonstrated by the plasma-workspace breeze theme.

    Published: 24 Nov 2015
    7.7
    High

    CVE-2015-7865

    Last Modified: 12 Apr 2025

    nvSCPAPISvr.exe in the Stereoscopic 3D Driver Service in the NVIDIA GPU graphics driver R340 before 341.92, R352 before 354.35, and R358 before 358.87 on Windows does not properly restrict access to the stereosvrpipe named pipe, which allows local users to gain privileges via a commandline in a number 2 command, which is stored in the HKEY_LOCAL_MACHINE explorer Run registry key, a different vulnerability than CVE-2011-4784.

    Published: 24 Nov 2015
    7.2
    High

    CVE-2015-7866

    Last Modified: 12 Apr 2025

    Unquoted Windows search path vulnerability in the Smart Maximize Helper (nvSmartMaxApp.exe) in the Control Panel in the NVIDIA GPU graphics driver R340 before 341.92, R352 before 354.35, and R358 before 358.87 on Windows allows local users to gain privileges via a Trojan horse application, as demonstrated by C:\Program.exe.

    Published: 24 Nov 2015
    7.2
    High

    CVE-2015-7985

    Last Modified: 12 Apr 2025

    Valve Steam 2.10.91.91 uses weak permissions (Users: read and write) for the Install folder, which allows local users to gain privileges via a Trojan horse steam.exe file.

    Published: 24 Nov 2015
    6.6
    Medium

    CVE-2015-8328

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the NVAPI support layer in the NVIDIA GPU graphics driver R340 before 341.92, R352 before 354.35, and R358 before 358.87 on Windows allows local users to obtain sensitive information, cause a denial of service (crash), or possibly gain privileges via unknown vectors. NOTE: this identifier was SPLIT from CVE-2015-7869 per ADT2 and ADT3 due to different vulnerability types and affected versions.

    Published: 24 Nov 2015
    5
    Medium

    CVE-2015-8329

    Last Modified: 12 Apr 2025

    SAP Manufacturing Integration and Intelligence (aka MII, formerly xMII) uses weak encryption (Base64 and DES), which allows attackers to conduct downgrade attacks and decrypt passwords via unspecified vectors, aka SAP Security Note 2240274.

    Published: 24 Nov 2015
    7.8
    High

    CVE-2015-8330

    Last Modified: 12 Apr 2025

    The PCo agent in SAP Plant Connectivity (PCo) allows remote attackers to cause a denial of service (memory corruption and agent crash) via crafted xMII requests, aka SAP Security Note 2238619.

    Published: 24 Nov 2015
    6.5
    Medium

    CVE-2015-6380

    Last Modified: 12 Apr 2025

    An unspecified script in the web interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote authenticated users to execute arbitrary OS commands via crafted parameters, aka Bug ID CSCux10622.

    Published: 24 Nov 2015
    7.8
    High

    CVE-2015-6377

    Last Modified: 12 Apr 2025

    Cisco Virtual Topology System (VTS) 2.0(0) and 2.0(1) allows remote attackers to cause a denial of service (CPU and memory consumption, and TCP port outage) via a flood of crafted TCP packets, aka Bug ID CSCux13379.

    Published: 24 Nov 2015
    5
    Medium

    CVE-2015-8213

    Last Modified: 12 Apr 2025

    The get_format function in utils/formats.py in Django before 1.7.x before 1.7.11, 1.8.x before 1.8.7, and 1.9.x before 1.9rc2 might allow remote attackers to obtain sensitive application secrets via a settings key in place of a date/time format setting, as demonstrated by SECRET_KEY.

    Published: 24 Nov 2015
    4.4
    Medium

    CVE-2015-7509

    Last Modified: 12 Apr 2025

    fs/ext4/namei.c in the Linux kernel before 3.7 allows physically proximate attackers to cause a denial of service (system crash) via a crafted no-journal filesystem, a related issue to CVE-2013-2015.

    Published: 24 Nov 2015
    9.8
    Critical

    CVE-2015-7510

    Last Modified: 20 Apr 2025

    Stack-based buffer overflow in the getpwnam and getgrnam functions of the NSS module nss-mymachines in systemd.

    Published: 24 Nov 2015
    4.3
    Medium

    CVE-2015-5256

    Last Modified: 12 Apr 2025

    Apache Cordova-Android before 4.1.0, when an application relies on a remote server, improperly implements a JavaScript whitelist protection mechanism, which allows attackers to bypass intended access restrictions via a crafted URI.

    Published: 23 Nov 2015
    5
    Medium

    CVE-2015-8320

    Last Modified: 12 Apr 2025

    Apache Cordova-Android before 3.7.0 improperly generates random values for BridgeSecret data, which makes it easier for attackers to conduct bridge hijacking attacks by predicting a value.

    Published: 23 Nov 2015
    6.8
    Medium

    CVE-2015-5451

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in HP Operations Orchestration Central 10.x before 10.22.001 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

    Published: 23 Nov 2015
    7.8
    High

    CVE-2015-5287

    Last Modified: 26 Aug 2026

    The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name, as demonstrated by /var/tmp/abrt/abrt-hax-coredump or /var/spool/abrt/abrt-hax-coredump.

    Published: 23 Nov 2015
    9.8
    Critical

    CVE-2015-8389

    Last Modified: 12 Apr 2025

    PCRE before 8.38 mishandles the /(?:|a|){100}x/ pattern and related patterns, which allows remote attackers to cause a denial of service (infinite recursion) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.

    Published: 23 Nov 2015
    7.5
    High

    CVE-2015-8395

    Last Modified: 12 Apr 2025

    PCRE before 8.38 mishandles certain references, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror, a related issue to CVE-2015-8384 and CVE-2015-8392.

    Published: 23 Nov 2015
    3.6
    Low

    CVE-2015-5273

    Last Modified: 12 Apr 2025

    The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users to write to arbitrary files via a symlink attack on unpacked.cpio in a pre-created directory with a predictable name in /var/tmp.

    Published: 23 Nov 2015
    4.6
    Medium

    CVE-2015-8324

    Last Modified: 12 Apr 2025

    The ext4 implementation in the Linux kernel before 2.6.34 does not properly track the initialization of certain data structures, which allows physically proximate attackers to cause a denial of service (NULL pointer dereference and panic) via a crafted USB device, related to the ext4_fill_super function.

    Published: 23 Nov 2015
    7.5
    High

    CVE-2015-8381

    Last Modified: 12 Apr 2025

    The compile_regex function in pcre_compile.c in PCRE before 8.38 and pcre2_compile.c in PCRE2 before 10.2x mishandles the /(?J:(?|(:(?|(?'R')(\k'R')|((?'R')))H'Rk'Rf)|s(?'R'))))/ and /(?J:(?|(:(?|(?'R')(\z(?|(?'R')(\k'R')|((?'R')))k'R')|((?'R')))H'Ak'Rf)|s(?'R')))/ patterns, and related patterns with certain group references, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.

    Published: 23 Nov 2015
    9.8
    Critical

    CVE-2015-8383

    Last Modified: 12 Apr 2025

    PCRE before 8.38 mishandles certain repeated conditional groups, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.

    Published: 23 Nov 2015
    7.5
    High

    CVE-2015-8384

    Last Modified: 12 Apr 2025

    PCRE before 8.38 mishandles the /(?J)(?'d'(?'d'\g{d}))/ pattern and related patterns with certain recursive back references, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror, a related issue to CVE-2015-8392 and CVE-2015-8395.

    Published: 23 Nov 2015
    9.8
    Critical

    CVE-2015-8390

    Last Modified: 12 Apr 2025

    PCRE before 8.38 mishandles the [: and \\ substrings in character classes, which allows remote attackers to cause a denial of service (uninitialized memory read) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.

    Published: 23 Nov 2015
    9.8
    Critical

    CVE-2015-8391

    Last Modified: 12 Apr 2025

    The pcre_compile function in pcre_compile.c in PCRE before 8.38 mishandles certain [: nesting, which allows remote attackers to cause a denial of service (CPU consumption) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.

    Published: 23 Nov 2015
    9.8
    Critical

    CVE-2015-3210

    Last Modified: 12 Apr 2025

    Heap-based buffer overflow in PCRE 8.34 through 8.37 and PCRE2 10.10 allows remote attackers to execute arbitrary code via a crafted regular expression, as demonstrated by /^(?P=B)((?P=B)(?J:(?P<B>c)(?P<B>a(?P=B)))>WGXCREDITS)/, a different vulnerability than CVE-2015-8384.

    Published: 23 Nov 2015
    7.5
    High

    CVE-2015-8385

    Last Modified: 12 Apr 2025

    PCRE before 8.38 mishandles the /(?|(\k'Pm')|(?'Pm'))/ pattern and related patterns with certain forward references, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.

    Published: 23 Nov 2015
    9.8
    Critical

    CVE-2015-8386

    Last Modified: 12 Apr 2025

    PCRE before 8.38 mishandles the interaction of lookbehind assertions and mutually recursive subpatterns, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.

    Published: 23 Nov 2015
    7.3
    High

    CVE-2015-8387

    Last Modified: 12 Apr 2025

    PCRE before 8.38 mishandles (?123) subroutine calls and related subroutine calls, which allows remote attackers to cause a denial of service (integer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.

    Published: 23 Nov 2015
    7.5
    High

    CVE-2015-8392

    Last Modified: 12 Apr 2025

    PCRE before 8.38 mishandles certain instances of the (?| substring, which allows remote attackers to cause a denial of service (unintended recursion and buffer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror, a related issue to CVE-2015-8384 and CVE-2015-8395.

    Published: 23 Nov 2015
    7.5
    High

    CVE-2015-8393

    Last Modified: 12 Apr 2025

    pcregrep in PCRE before 8.38 mishandles the -q option for binary files, which might allow remote attackers to obtain sensitive information via a crafted file, as demonstrated by a CGI script that sends stdout data to a client.

    Published: 23 Nov 2015
    9.8
    Critical

    CVE-2015-8394

    Last Modified: 12 Apr 2025

    PCRE before 8.38 mishandles the (?(<digits>) and (?(R<digits>) conditions, which allows remote attackers to cause a denial of service (integer overflow) or possibly have unspecified other impact via a crafted regular expression, as demonstrated by a JavaScript RegExp object encountered by Konqueror.

    Published: 23 Nov 2015
    4.3
    Medium

    CVE-2015-5859

    Last Modified: 12 Apr 2025

    The CFNetwork HTTPProtocol component in Apple iOS before 9 and OS X before 10.11 does not properly recognize the HSTS preload list during a Safari private-browsing session, which makes it easier for remote attackers to obtain sensitive information by sniffing the network.

    Published: 22 Nov 2015
    4.3
    Medium

    CVE-2015-5787

    Last Modified: 12 Apr 2025

    The kernel in Apple iOS before 8.4.1 does not properly restrict debugging features, which allows attackers to bypass background-execution limitations via a crafted app.

    Published: 22 Nov 2015
    7.5
    High

    CVE-2015-7036

    Last Modified: 12 Apr 2025

    The fts3_tokenizer function in SQLite, as used in Apple iOS before 8.4 and OS X before 10.10.4, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a SQL command that triggers an API call with a crafted pointer value in the second argument.

    Published: 22 Nov 2015
    5.3
    Medium

    CVE-2016-2845

    Last Modified: 12 Apr 2025

    The Content Security Policy (CSP) implementation in Blink, as used in Google Chrome before 49.0.2623.75, does not ignore a URL's path component in the case of a ServiceWorker fetch, which allows remote attackers to obtain sensitive information about visited web pages by reading CSP violation reports, related to FrameFetchContext.cpp and ResourceFetcher.cpp.

    Published: 22 Nov 2015
    10
    Critical

    CVE-2015-7912

    Last Modified: 12 Apr 2025

    The Ice Faces servlet in ag_server_service.exe in the AggreGate Server Service in Tibbo AggreGate before 5.30.06 allows remote attackers to upload and execute arbitrary Java code via a crafted XML document.

    Published: 21 Nov 2015
    2.1
    Low

    CVE-2015-6375

    Last Modified: 12 Apr 2025

    The debug-logging (aka debug cns) feature in Cisco Networking Services (CNS) for IOS 15.2(2)E3 allows local users to obtain sensitive information by reading an unspecified file, aka Bug ID CSCux18010.

    Published: 21 Nov 2015
    7.2
    High

    CVE-2015-7913

    Last Modified: 12 Apr 2025

    ag_server_service.exe in the AggreGate Server Service in Tibbo AggreGate before 5.30.06 allows local users to execute arbitrary Java code with SYSTEM privileges by using the Apache Axis AdminService deployment method to publish a class.

    Published: 21 Nov 2015
    6.8
    Medium

    CVE-2015-6376

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Cisco TelePresence Video Communication Server (VCS) X8.5.1 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuv72412.

    Published: 21 Nov 2015
    9.3
    Critical

    CVE-2015-7289

    Last Modified: 12 Apr 2025

    Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 have a hardcoded administrator password derived from a serial number, which makes it easier for remote attackers to obtain access via the web management interface, SSH, TELNET, or SNMP.

    Published: 21 Nov 2015
    4.3
    Medium

    CVE-2015-7290

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in adv_pwd_cgi in the web management interface on Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 allows remote attackers to inject arbitrary web script or HTML via the pwd parameter.

    Published: 21 Nov 2015
    6.8
    Medium

    CVE-2015-7291

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in adv_pwd_cgi in the web management interface on Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 allows remote attackers to hijack the authentication of arbitrary users.

    Published: 21 Nov 2015
    4.3
    Medium

    CVE-2015-7777

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in index.php in JosephErnest Void before 2015-10-02 allows remote attackers to inject arbitrary web script or HTML via a crafted URI.

    Published: 21 Nov 2015
    4.3
    Medium

    CVE-2009-5149

    Last Modified: 12 Apr 2025

    Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 have predictable technician passwords, which makes it easier for remote attackers to obtain access via the web management interface, related to a "password of the day" issue.

    Published: 21 Nov 2015