CVE Feed

    Dashboard / CVE

    2.1
    Low

    CVE-2015-1970

    Last Modified: 12 Apr 2025

    The IBM WebSphere DataPower XC10 appliance 2.1 through 2.1.0.3 and 2.5 through 2.5.0.4 retains data on SSD cards, which might allow physically proximate attackers to obtain sensitive information by extracting a card and attaching it elsewhere.

    Published: 3 Aug 2015
    7.8
    High

    CVE-2015-1987

    Last Modified: 12 Apr 2025

    IBM MQ Light before 1.0.0.2 allows remote attackers to cause a denial of service (disk consumption) via a crafted byte sequence in authentication data, a different vulnerability than CVE-2015-1956 and CVE-2015-1958.

    Published: 3 Aug 2015
    4.3
    Medium

    CVE-2015-3440

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in wp-includes/wp-db.php in WordPress before 4.2.1 allows remote attackers to inject arbitrary web script or HTML via a long comment that is improperly stored because of limitations on the MySQL TEXT data type.

    Published: 3 Aug 2015
    Unknown

    CVE-2015-2212

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-5623. Reason: This candidate is a reservation duplicate of CVE-2015-5623. Notes: All CVE users should reference CVE-2015-5623 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 3 Aug 2015
    3.5
    Low

    CVE-2015-5622

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in WordPress before 4.2.3 allows remote authenticated users to inject arbitrary web script or HTML by leveraging the Author or Contributor role to place a crafted shortcode inside an HTML element, related to wp-includes/kses.php and wp-includes/shortcodes.php.

    Published: 3 Aug 2015
    4
    Medium

    CVE-2015-5623

    Last Modified: 12 Apr 2025

    WordPress before 4.2.3 does not properly verify the edit_posts capability, which allows remote authenticated users to bypass intended access restrictions and create drafts by leveraging the Subscriber role, as demonstrated by a post-quickdraft-save action to wp-admin/post.php.

    Published: 3 Aug 2015
    2.1
    Low

    CVE-2015-5084

    Last Modified: 12 Apr 2025

    The Siemens SIMATIC WinCC Sm@rtClient and Sm@rtClient Lite applications before 01.00.01.00 for Android do not properly store passwords, which allows physically proximate attackers to obtain sensitive information via unspecified vectors.

    Published: 3 Aug 2015
    4.3
    Medium

    CVE-2015-5537

    Last Modified: 12 Apr 2025

    The SSL layer of the HTTPS service in Siemens RuggedCom ROS before 4.2.0 and ROX II does not properly implement CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, a different vulnerability than CVE-2014-3566.

    Published: 3 Aug 2015
    6.5
    Medium

    CVE-2015-9253

    Last Modified: 21 Nov 2024

    An issue was discovered in PHP 7.3.x before 7.3.0alpha3, 7.2.x before 7.2.8, and before 7.1.20. The php-fpm master process restarts a child process in an endless loop when using program execution functions (e.g., passthru, exec, shell_exec, or system) with a non-blocking STDIN stream, causing this master process to consume 100% of the CPU, and consume disk space with a large volume of error logs, as demonstrated by an attack by a customer of a shared-hosting facility.

    Published: 3 Aug 2015
    9.3
    Critical

    CVE-2015-5165

    Last Modified: 12 Apr 2025

    The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory via unspecified vectors.

    Published: 3 Aug 2015
    7.2
    High

    CVE-2015-5166

    Last Modified: 12 Apr 2025

    Use-after-free vulnerability in QEMU in Xen 4.5.x and earlier does not completely unplug emulated block devices, which allows local HVM guest users to gain privileges by unplugging a block device twice.

    Published: 3 Aug 2015
    7.6
    High

    CVE-2015-20107

    Last Modified: 3 Nov 2025

    In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that call mailcap.findmatch with untrusted input (if they lack validation of user-provided filenames or arguments). The fix is also back-ported to 3.7, 3.8, 3.9

    Published: 2 Aug 2015
    5.5
    Medium

    CVE-2015-1490

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in the management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to read arbitrary files via a relative pathname in a client installation package.

    Published: 1 Aug 2015
    3.5
    Low

    CVE-2015-1904

    Last Modified: 12 Apr 2025

    IBM Business Process Manager (BPM) 8.0.x through 8.0.1.3, 8.5.0 through 8.5.0.1, 8.5.5 through 8.5.5.0, and 8.5.6 through 8.5.6.0, when external Enterprise Content Management (ECM) integration is enabled with a certain technical system account configuration, allows remote authenticated users to bypass intended document-access restrictions via a (1) upload or (2) download action.

    Published: 1 Aug 2015
    4.3
    Medium

    CVE-2015-2870

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability on Chiyu BF-630, BF-630W, and BF-660C fingerprint access-control devices allows remote attackers to inject arbitrary web script or HTML via a SCRIPT element.

    Published: 1 Aug 2015
    7.5
    High

    CVE-2015-2871

    Last Modified: 12 Apr 2025

    Chiyu BF-660C fingerprint access-control devices allow remote attackers to bypass authentication and (1) read or (2) modify communication configuration settings via a request to net.htm, a different vulnerability than CVE-2015-5618.

    Published: 1 Aug 2015
    4
    Medium

    CVE-2015-4295

    Last Modified: 12 Apr 2025

    The Prime Collaboration Deployment component in Cisco Unified Communications Manager 10.5(3.10000.9) allows remote authenticated users to discover root credentials via a direct request to an unspecified URL, aka Bug ID CSCuv21819.

    Published: 1 Aug 2015
    7.5
    High

    CVE-2015-5618

    Last Modified: 12 Apr 2025

    Chiyu BF-630 and BF-630W fingerprint access-control devices allow remote attackers to bypass authentication and (1) read or (2) modify (a) Voice Time Set configuration settings via a request to voice.htm or (b) UniFinger configuration settings via a request to bf.htm, a different vulnerability than CVE-2015-2871.

    Published: 1 Aug 2015
    4
    Medium

    CVE-2015-1488

    Last Modified: 12 Apr 2025

    An unspecified action handler in the management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to read arbitrary files via unknown vectors.

    Published: 1 Aug 2015
    8.5
    High

    CVE-2015-1489

    Last Modified: 12 Apr 2025

    The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to gain privileges via unspecified vectors.

    Published: 1 Aug 2015
    6
    Medium

    CVE-2015-1491

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

    Published: 1 Aug 2015
    6
    Medium

    CVE-2015-2890

    Last Modified: 12 Apr 2025

    The BIOS implementation on Dell Latitude, OptiPlex, Precision Mobile Workstation, and Precision Workstation Client Solutions (CS) devices with model-dependent firmware before A21 does not enforce a BIOS_CNTL locking protection mechanism upon being woken from sleep, which allows local users to conduct EFI flash attacks by leveraging console access, a similar issue to CVE-2015-3692.

    Published: 1 Aug 2015
    1.7
    Low

    CVE-2015-1009

    Last Modified: 12 Apr 2025

    Schneider Electric InduSoft Web Studio before 7.1.3.5 Patch 5 and Wonderware InTouch Machine Edition through 7.1 SP3 Patch 4 use cleartext for project-window password storage, which allows local users to obtain sensitive information by reading a file.

    Published: 1 Aug 2015
    7.5
    High

    CVE-2015-1486

    Last Modified: 12 Apr 2025

    The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote attackers to bypass authentication via a crafted password-reset action that triggers a new administrative session.

    Published: 1 Aug 2015
    5.5
    Medium

    CVE-2015-1487

    Last Modified: 12 Apr 2025

    The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before 12.1-RU6-MP1 allows remote authenticated users to write to arbitrary files, and consequently obtain administrator privileges, via a crafted filename.

    Published: 1 Aug 2015
    8.5
    High

    CVE-2015-1492

    Last Modified: 12 Apr 2025

    Untrusted search path vulnerability in the client in Symantec Endpoint Protection 12.1 before 12.1-RU6-MP1 allows local users to gain privileges via a Trojan horse DLL in a client install package.

    Published: 1 Aug 2015
    6.4
    Medium

    CVE-2015-4289

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in Cisco AnyConnect Secure Mobility Client 4.0(2049) allows remote head-end systems to write to arbitrary files via a crafted configuration attribute, aka Bug ID CSCut93920.

    Published: 1 Aug 2015
    7.8
    High

    CVE-2015-4291

    Last Modified: 12 Apr 2025

    Cisco IOS XE 2.x before 2.4.3 and 2.5.x before 2.5.1 on ASR 1000 devices allows remote attackers to cause a denial of service (Embedded Services Processor crash) via a crafted series of fragmented (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCtd72617.

    Published: 1 Aug 2015
    4.3
    Medium

    CVE-2015-4292

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the management interface in Cisco Prime Central for Hosted Collaboration Solution (PC4HCS) 10.6(2) allows remote attackers to inject arbitrary web script or HTML via an unspecified value, aka Bug ID CSCuv45818.

    Published: 1 Aug 2015
    4.3
    Medium

    CVE-2015-4294

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Cisco IM and Presence Service before 10.5 MR1 allows remote attackers to inject arbitrary web script or HTML by constructing a crafted URL that leverages incomplete filtering of HTML elements, aka Bug ID CSCut41766.

    Published: 1 Aug 2015
    9.8
    Critical

    CVE-2014-9939

    Last Modified: 20 Apr 2025

    ihex.c in GNU Binutils before 2.26 contains a stack buffer overflow when printing bad bytes in Intel Hex objects.

    Published: 31 Jul 2015
    9.8
    Critical

    CVE-2015-6834

    Last Modified: 12 Apr 2025

    Multiple use-after-free vulnerabilities in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 allow remote attackers to execute arbitrary code via vectors related to (1) the Serializable interface, (2) the SplObjectStorage class, and (3) the SplDoublyLinkedList class, which are mishandled during unserialization.

    Published: 31 Jul 2015
    5
    Medium

    CVE-2015-4293

    Last Modified: 12 Apr 2025

    The packet-reassembly implementation in Cisco IOS XE 3.13S and earlier allows remote attackers to cause a denial of service (CPU consumption or packet loss) via fragmented (1) IPv4 or (2) IPv6 packets that trigger ATTN-3-SYNC_TIMEOUT errors after reassembly failures, aka Bug ID CSCuo37957.

    Published: 30 Jul 2015
    6.8
    Medium

    CVE-2014-7912

    Last Modified: 12 Apr 2025

    The get_option function in dhcp.c in dhcpcd before 6.2.0, as used in dhcpcd 5.x in Android before 5.1 and other products, does not validate the relationship between length fields and the amount of data, which allows remote DHCP servers to execute arbitrary code or cause a denial of service (memory corruption) via a large length value of an option in a DHCPACK message.

    Published: 30 Jul 2015
    6.8
    Medium

    CVE-2014-7913

    Last Modified: 12 Apr 2025

    The print_option function in dhcp-common.c in dhcpcd through 6.9.1, as used in dhcp.c in dhcpcd 5.x in Android before 5.1 and other products, misinterprets the return value of the snprintf function, which allows remote DHCP servers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted message.

    Published: 30 Jul 2015
    7.5
    High

    CVE-2015-2977

    Last Modified: 12 Apr 2025

    Webservice-DIC yoyaku_v41 allows remote attackers to create arbitrary files, and consequently execute arbitrary code, via unspecified vectors.

    Published: 29 Jul 2015
    5
    Medium

    CVE-2015-2978

    Last Modified: 12 Apr 2025

    Webservice-DIC yoyaku_v41 allows remote attackers to bypass authentication and complete a conference-room reservation via unspecified vectors, as demonstrated by an "unintentional reservation."

    Published: 29 Jul 2015
    7.5
    High

    CVE-2015-2979

    Last Modified: 12 Apr 2025

    Webservice-DIC yoyaku_v41 allows remote attackers to execute arbitrary OS commands via unspecified vectors.

    Published: 29 Jul 2015
    5
    Medium

    CVE-2015-4286

    Last Modified: 12 Apr 2025

    The web framework in Cisco UCS Central Software 1.3(0.99) allows remote attackers to read arbitrary files via a crafted HTTP request, aka Bug ID CSCuu41377.

    Published: 29 Jul 2015
    4.9
    Medium

    CVE-2015-4290

    Last Modified: 12 Apr 2025

    The kernel extension in Cisco AnyConnect Secure Mobility Client 4.0(2049) on OS X allows local users to cause a denial of service (panic) via vectors involving contiguous memory locations, aka Bug ID CSCut12255.

    Published: 29 Jul 2015
    5
    Medium

    CVE-2015-2974

    Last Modified: 12 Apr 2025

    LEMON-S PHP Gazou BBS plus before 2.36 allows remote attackers to upload arbitrary HTML documents via vectors involving a crafted image file.

    Published: 29 Jul 2015
    5
    Medium

    CVE-2015-4287

    Last Modified: 12 Apr 2025

    Cisco Firepower Extensible Operating System 1.1(1.86) on Firepower 9000 devices allows remote attackers to bypass intended access restrictions and obtain sensitive device information by visiting an unspecified web page, aka Bug ID CSCuu82230.

    Published: 29 Jul 2015
    4.3
    Medium

    CVE-2015-0732

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Cisco AsyncOS on the Web Security Appliance (WSA) 9.0.0-193; Email Security Appliance (ESA) 8.5.6-113, 9.1.0-032, 9.1.1-000, and 9.6.0-000; and Content Security Management Appliance (SMA) 9.1.0-033 allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug IDs CSCuu37430, CSCuu37420, CSCut71981, and CSCuv50167.

    Published: 29 Jul 2015
    4.3
    Medium

    CVE-2015-4288

    Last Modified: 12 Apr 2025

    The LDAP implementation on the Cisco Web Security Appliance (WSA) 8.5.0-000, Email Security Appliance (ESA) 8.5.7-042, and Content Security Management Appliance (SMA) 8.3.6-048 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate, aka Bug IDs CSCuo29561, CSCuv40466, and CSCuv40470.

    Published: 29 Jul 2015
    9.8
    Critical

    CVE-2015-5740

    Last Modified: 20 Apr 2025

    The net/http library in net/http/transfer.go in Go before 1.4.3 does not properly parse HTTP headers, which allows remote attackers to conduct HTTP request smuggling attacks via a request with two Content-length headers.

    Published: 29 Jul 2015
    9.8
    Critical

    CVE-2015-5739

    Last Modified: 20 Apr 2025

    The net/http library in net/textproto/reader.go in Go before 1.4.3 does not properly parse HTTP header keys, which allows remote attackers to conduct HTTP request smuggling attacks via a space instead of a hyphen, as demonstrated by "Content Length" instead of "Content-Length."

    Published: 29 Jul 2015
    9.8
    Critical

    CVE-2015-5741

    Last Modified: 21 Nov 2024

    The net/http library in net/http/transfer.go in Go before 1.4.3 does not properly parse HTTP headers, which allows remote attackers to conduct HTTP request smuggling attacks via a request that contains Content-Length and Transfer-Encoding header fields.

    Published: 29 Jul 2015
    5.1
    Medium

    CVE-2015-8945

    Last Modified: 12 Apr 2025

    openshift-node in OpenShift Origin 1.1.6 and earlier improperly stores router credentials as envvars in the pod when the --credentials option is used, which allows local users to obtain sensitive private key information by reading the systemd journal.

    Published: 29 Jul 2015
    7.2
    High

    CVE-2015-5164

    Last Modified: 20 Apr 2025

    The Qpid server on Red Hat Satellite 6 does not properly restrict message types, which allows remote authenticated users with administrative access on a managed content host to execute arbitrary code via a crafted message, related to a pickle processing problem in pulp.

    Published: 28 Jul 2015
    7.8
    High

    CVE-2015-5477

    Last Modified: 12 Apr 2025

    named in ISC BIND 9.x before 9.9.7-P2 and 9.10.x before 9.10.2-P3 allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via TKEY queries.

    Published: 28 Jul 2015