CVE Feed

    Dashboard / CVE

    9.3
    Critical

    CVE-2015-2504

    Last Modified: 12 Apr 2025

    Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, 4.5.2, and 4.6 improperly counts objects before performing an array copy, which allows remote attackers to (1) execute arbitrary code via a crafted XAML browser application (XBAP) or (2) bypass Code Access Security restrictions via a crafted .NET Framework application, aka ".NET Elevation of Privilege Vulnerability."

    Published: 9 Sept 2015
    5
    Medium

    CVE-2015-2505

    Last Modified: 12 Apr 2025

    Outlook Web Access (OWA) in Microsoft Exchange Server 2013 Cumulative Update 8 and 9 and SP1 allows remote attackers to obtain sensitive stacktrace information via a crafted request, aka "Exchange Information Disclosure Vulnerability."

    Published: 9 Sept 2015
    9.3
    Critical

    CVE-2015-2509

    Last Modified: 12 Apr 2025

    Windows Media Center in Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8, and Windows 8.1 allows user-assisted remote attackers to execute arbitrary code via a crafted Media Center link (mcl) file, aka "Windows Media Center RCE Vulnerability."

    Published: 9 Sept 2015
    6.9
    Medium

    CVE-2015-2511

    Last Modified: 12 Apr 2025

    The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-2517, CVE-2015-2518, and CVE-2015-2546.

    Published: 9 Sept 2015
    7.2
    High

    CVE-2015-2512

    Last Modified: 12 Apr 2025

    The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Font Driver Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-2507.

    Published: 9 Sept 2015
    4.3
    Medium

    CVE-2015-2516

    Last Modified: 12 Apr 2025

    Windows Journal in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows remote attackers to cause a denial of service (data loss) via a crafted .jnt file, aka "Windows Journal DoS Vulnerability."

    Published: 9 Sept 2015
    6.9
    Medium

    CVE-2015-2517

    Last Modified: 12 Apr 2025

    The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-2511, CVE-2015-2518, and CVE-2015-2546.

    Published: 9 Sept 2015
    6.9
    Medium

    CVE-2015-2518

    Last Modified: 12 Apr 2025

    The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-2511, CVE-2015-2517, and CVE-2015-2546.

    Published: 9 Sept 2015
    9.3
    Critical

    CVE-2015-2521

    Last Modified: 12 Apr 2025

    Microsoft Excel 2007 SP3, Excel 2010 SP2, Office Compatibility Pack SP3, and Excel Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."

    Published: 9 Sept 2015
    3.5
    Low

    CVE-2015-2522

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Microsoft SharePoint Foundation 2013 SP1 allows remote authenticated users to inject arbitrary web script or HTML via crafted content, aka "Microsoft SharePoint XSS Spoofing Vulnerability."

    Published: 9 Sept 2015
    9.3
    Critical

    CVE-2015-2523

    Last Modified: 12 Apr 2025

    Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel for Mac 2011 and 2016, Office Compatibility Pack SP3, and Excel Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."

    Published: 9 Sept 2015
    7.2
    High

    CVE-2015-2525

    Last Modified: 12 Apr 2025

    Task Scheduler in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to bypass intended filesystem restrictions and delete arbitrary files via unspecified vectors, aka "Windows Task File Deletion Elevation of Privilege Vulnerability."

    Published: 9 Sept 2015
    9.3
    Critical

    CVE-2015-2530

    Last Modified: 12 Apr 2025

    Windows Journal in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows remote attackers to execute arbitrary code via a crafted .jnt file, aka "Windows Journal RCE Vulnerability," a different vulnerability than CVE-2015-2513 and CVE-2015-2514.

    Published: 9 Sept 2015
    4.3
    Medium

    CVE-2015-2531

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the jQuery engine in Microsoft Lync Server 2013 and Skype for Business Server 2015 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Skype for Business Server and Lync Server XSS Information Disclosure Vulnerability."

    Published: 9 Sept 2015
    4.3
    Medium

    CVE-2015-2532

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Microsoft Lync Server 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Lync Server XSS Information Disclosure Vulnerability."

    Published: 9 Sept 2015
    4.3
    Medium

    CVE-2015-2536

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Microsoft Lync Server 2013 and Skype for Business Server 2015 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Skype for Business Server and Lync Server XSS Elevation of Privilege Vulnerability."

    Published: 9 Sept 2015
    3.5
    Low

    CVE-2015-5240

    Last Modified: 12 Apr 2025

    Race condition in OpenStack Neutron before 2014.2.4 and 2015.1 before 2015.1.2, when using the ML2 plugin or the security groups AMQP API, allows remote authenticated users to bypass IP anti-spoofing controls by changing the device owner of a port to start with network: before the security group rules are applied.

    Published: 8 Sept 2015
    7.8
    High

    CVE-2015-5260

    Last Modified: 12 Apr 2025

    Heap-based buffer overflow in SPICE before 0.12.6 allows guest OS users to cause a denial of service (heap-based memory corruption and QEMU-KVM crash) or possibly execute arbitrary code on the host via QXL commands related to the surface_id parameter.

    Published: 8 Sept 2015
    4.3
    Medium

    CVE-2015-2989

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in index.php in LEMON-S PHP Twit BBS allows remote attackers to inject arbitrary web script or HTML via the imagetitle parameter.

    Published: 7 Sept 2015
    6.8
    Medium

    CVE-2015-5624

    Last Modified: 12 Apr 2025

    Buffer overflow in the ExecCall method in c2lv6.ocx in the FreeBit ELPhoneBtnV6 ActiveX control allows remote attackers to execute arbitrary code via a crafted HTML document, related to the discontinued "Click to Live" service.

    Published: 7 Sept 2015
    4.3
    Medium

    CVE-2015-5625

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in OpenDocMan before 1.3.4 allows remote attackers to inject arbitrary web script or HTML via the redirection parameter.

    Published: 7 Sept 2015
    6.8
    Medium

    CVE-2015-7696

    Last Modified: 12 Apr 2025

    Info-ZIP UnZip 6.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly execute arbitrary code via a crafted password-protected ZIP archive, possibly related to an Extra-Field size value.

    Published: 7 Sept 2015
    4.3
    Medium

    CVE-2015-7697

    Last Modified: 12 Apr 2025

    Info-ZIP UnZip 6.0 allows remote attackers to cause a denial of service (infinite loop) via empty bzip2 data in a ZIP archive.

    Published: 7 Sept 2015
    7.5
    High

    CVE-2015-6824

    Last Modified: 12 Apr 2025

    The sws_init_context function in libswscale/utils.c in FFmpeg before 2.7.2 does not initialize certain pixbuf data structures, which allows remote attackers to cause a denial of service (segmentation violation) or possibly have unspecified other impact via crafted video data.

    Published: 6 Sept 2015
    7.5
    High

    CVE-2015-6825

    Last Modified: 12 Apr 2025

    The ff_frame_thread_init function in libavcodec/pthread_frame.c in FFmpeg before 2.7.2 mishandles certain memory-allocation failures, which allows remote attackers to cause a denial of service (invalid pointer access) or possibly have unspecified other impact via a crafted file, as demonstrated by an AVI file.

    Published: 6 Sept 2015
    7.5
    High

    CVE-2015-6823

    Last Modified: 12 Apr 2025

    The allocate_buffers function in libavcodec/alac.c in FFmpeg before 2.7.2 does not initialize certain context data, which allows remote attackers to cause a denial of service (segmentation violation) or possibly have unspecified other impact via crafted Apple Lossless Audio Codec (ALAC) data.

    Published: 6 Sept 2015
    7.5
    High

    CVE-2015-6818

    Last Modified: 12 Apr 2025

    The decode_ihdr_chunk function in libavcodec/pngdec.c in FFmpeg before 2.7.2 does not enforce uniqueness of the IHDR (aka image header) chunk in a PNG image, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via a crafted image with two or more of these chunks.

    Published: 6 Sept 2015
    7.5
    High

    CVE-2015-6819

    Last Modified: 12 Apr 2025

    Multiple integer underflows in the ff_mjpeg_decode_frame function in libavcodec/mjpegdec.c in FFmpeg before 2.7.2 allow remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted MJPEG data.

    Published: 6 Sept 2015
    7.5
    High

    CVE-2015-6820

    Last Modified: 12 Apr 2025

    The ff_sbr_apply function in libavcodec/aacsbr.c in FFmpeg before 2.7.2 does not check for a matching AAC frame syntax element before proceeding with Spectral Band Replication calculations, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted AAC data.

    Published: 6 Sept 2015
    7.5
    High

    CVE-2015-6821

    Last Modified: 12 Apr 2025

    The ff_mpv_common_init function in libavcodec/mpegvideo.c in FFmpeg before 2.7.2 does not properly maintain the encoding context, which allows remote attackers to cause a denial of service (invalid pointer access) or possibly have unspecified other impact via crafted MPEG data.

    Published: 6 Sept 2015
    7.5
    High

    CVE-2015-6822

    Last Modified: 12 Apr 2025

    The destroy_buffers function in libavcodec/sanm.c in FFmpeg before 2.7.2 does not properly maintain height and width values in the video context, which allows remote attackers to cause a denial of service (segmentation violation and application crash) or possibly have unspecified other impact via crafted LucasArts Smush video data.

    Published: 6 Sept 2015
    7.5
    High

    CVE-2015-6826

    Last Modified: 12 Apr 2025

    The ff_rv34_decode_init_thread_copy function in libavcodec/rv34.c in FFmpeg before 2.7.2 does not initialize certain structure members, which allows remote attackers to cause a denial of service (invalid pointer access) or possibly have unspecified other impact via crafted (1) RV30 or (2) RV40 RealVideo data.

    Published: 6 Sept 2015
    9.8
    Critical

    CVE-2015-0573

    Last Modified: 12 Apr 2025

    drivers/media/platform/msm/broadcast/tsc.c in the TSC driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to cause a denial of service (invalid pointer dereference) or possibly have unspecified other impact via a crafted application that makes a TSC_GET_CARD_STATUS ioctl call.

    Published: 6 Sept 2015
    4.3
    Medium

    CVE-2015-2985

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in guide-park.com BBS X102 1.03 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 5 Sept 2015
    4.3
    Medium

    CVE-2015-2986

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in rakuto.net hitSuji (rktSNS2) 0.2.2b allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 5 Sept 2015
    4
    Medium

    CVE-2015-2990

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in zhtml.cgi in NEOJAPAN desknet NEO 2.0R1.0 through 2.5R1.4 allows remote authenticated users to read arbitrary files via a crafted parameter.

    Published: 5 Sept 2015
    6.8
    Medium

    CVE-2015-2991

    Last Modified: 12 Apr 2025

    Buffer overflow in NScripter before 3.00 allows remote attackers to execute arbitrary code via crafted save data.

    Published: 5 Sept 2015
    5
    Medium

    CVE-2015-6276

    Last Modified: 12 Apr 2025

    Cisco TelePresence IX5000 8.0.3 stores a private key associated with an X.509 certificate under the web root with insufficient access control, which allows remote attackers to obtain cleartext versions of HTTPS traffic or spoof devices via a direct request to the certificate directory, aka Bug ID CSCuu63501.

    Published: 5 Sept 2015
    3.5
    Low

    CVE-2015-6815

    Last Modified: 21 Nov 2024

    The process_tx_desc function in hw/net/e1000.c in QEMU before 2.4.0.1 does not properly process transmit descriptor data when sending a network packet, which allows attackers to cause a denial of service (infinite loop and guest crash) via unspecified vectors.

    Published: 5 Sept 2015
    5.5
    Medium

    CVE-2015-8777

    Last Modified: 12 Apr 2025

    The process_envvars function in elf/rtld.c in the GNU C Library (aka glibc or libc6) before 2.23 allows local users to bypass a pointer-guarding protection mechanism via a zero value of the LD_POINTER_GUARD environment variable.

    Published: 5 Sept 2015
    7.8
    High

    CVE-2015-6812

    Last Modified: 12 Apr 2025

    Invision Power Services IPS Community Suite (aka Invision Power Board, IPB, or Power Board) before 4.0.12.1 allows remote attackers to cause a denial of service (loop and memory consumption) via a crafted URL.

    Published: 4 Sept 2015
    2.1
    Low

    CVE-2015-6807

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Mass Contact module 6.x-1.x before 6.x-1.6 and 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with the "administer mass contact" permission to inject arbitrary web script or HTML via a category label.

    Published: 4 Sept 2015
    9.4
    Critical

    CVE-2014-9605

    Last Modified: 12 Apr 2025

    WebUpgrade in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to bypass authentication and create a system backup tarball, restart the server, or stop the filters on the server via a ' (single quote) character in the login and password parameters to webupgrade/webupgrade.php. NOTE: this was originally reported as an SQL injection vulnerability, but this may be inaccurate.

    Published: 4 Sept 2015
    4.3
    Medium

    CVE-2015-5612

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in October CMS build 271 and earlier allows remote attackers to inject arbitrary web script or HTML via the caption tag of a profile image.

    Published: 4 Sept 2015
    5
    Medium

    CVE-2015-5688

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in lib/app/index.js in Geddy before 13.0.8 for Node.js allows remote attackers to read arbitrary files via a ..%2f (dot dot encoded slash) in the PATH_INFO to the default URI.

    Published: 4 Sept 2015
    3.5
    Low

    CVE-2015-6808

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Spotlight module 7.x-1.x before 7.x-1.5 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via a node title.

    Published: 4 Sept 2015
    4.3
    Medium

    CVE-2015-6809

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in BEdita before 3.6.0 allow remote attackers to inject arbitrary web script or HTML via the (1) cfg[projectName] parameter to index.php/admin/saveConfig, the (2) data[stats_provider_url] parameter to index.php/areas/saveArea, or the (3) data[description] parameter to index.php/areas/saveSection.

    Published: 4 Sept 2015
    3.5
    Low

    CVE-2015-6810

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Invision Power Services IPS Community Suite (aka Invision Power Board, IPB, or Power Board) 4.x before 4.0.12.1 allows remote authenticated users to inject arbitrary web script or HTML via the event_location[address] array parameter to calendar/submit/.

    Published: 4 Sept 2015
    7.5
    High

    CVE-2015-6811

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the Sophos Cyberoam CR500iNG-XP firewall appliance with CyberoamOS 10.6.2 MR-1 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter to login.xml.

    Published: 4 Sept 2015
    9
    Critical

    CVE-2015-4544

    Last Modified: 12 Apr 2025

    EMC Documentum Content Server before 7.1P20 and 7.2.x before 7.2P04 does not properly verify authorization for dm_job object access, which allows remote authenticated users to obtain superuser privileges via crafted object operations. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-4626.

    Published: 4 Sept 2015