CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2015-5695

    Last Modified: 20 Apr 2025

    Designate 2015.1.0 through 1.0.0.0b1 as packaged in OpenStack Kilo does not enforce RecordSets per domain, and Records per RecordSet quotas when processing an internal zone file transfer, which might allow remote attackers to cause a denial of service (infinite loop) via a crafted resource record set.

    Published: 28 Jul 2015
    4
    Medium

    CVE-2015-3289

    Last Modified: 12 Apr 2025

    OpenStack Glance before 2015.1.1 (kilo) allows remote authenticated users to cause a denial of service (disk consumption) by repeatedly using the import task flow API to create images and then deleting them.

    Published: 28 Jul 2015
    6.5
    Medium

    CVE-2015-5694

    Last Modified: 21 Nov 2024

    Designate does not enforce the DNS protocol limit concerning record set sizes

    Published: 28 Jul 2015
    7.2
    High

    CVE-2015-5154

    Last Modified: 12 Apr 2025

    Heap-based buffer overflow in the IDE subsystem in QEMU, as used in Xen 4.5.x and earlier, when the container has a CDROM drive enabled, allows local guest users to execute arbitrary code on the host via unspecified ATAPI commands.

    Published: 27 Jul 2015
    4.9
    Medium

    CVE-2015-1333

    Last Modified: 12 Apr 2025

    Memory leak in the __key_link_end function in security/keys/keyring.c in the Linux kernel before 4.1.4 allows local users to cause a denial of service (memory consumption) via many add_key system calls that refer to existing keys.

    Published: 27 Jul 2015
    6.8
    Medium

    CVE-2015-1872

    Last Modified: 12 Apr 2025

    The ff_mjpeg_decode_sof function in libavcodec/mjpegdec.c in FFmpeg before 2.5.4 does not validate the number of components in a JPEG-LS Start Of Frame segment, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Motion JPEG data.

    Published: 26 Jul 2015
    4.3
    Medium

    CVE-2015-3224

    Last Modified: 12 Apr 2025

    request.rb in Web Console before 2.1.3, as used with Ruby on Rails 3.x and 4.x, does not properly restrict the use of X-Forwarded-For headers in determining a client's IP address, which allows remote attackers to bypass the whitelisted_ips protection mechanism via a crafted request.

    Published: 26 Jul 2015
    5
    Medium

    CVE-2015-2847

    Last Modified: 12 Apr 2025

    Honeywell Tuxedo Touch before 5.2.19.0_VA relies on client-side authentication involving JavaScript, which allows remote attackers to bypass intended access restrictions by removing USERACCT requests from the client-server data stream.

    Published: 26 Jul 2015
    6.8
    Medium

    CVE-2015-2848

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Honeywell Tuxedo Touch before 5.2.19.0_VA allows remote attackers to hijack the authentication of arbitrary users for requests associated with home-automation commands, as demonstrated by a door-unlock command.

    Published: 26 Jul 2015
    5
    Medium

    CVE-2015-2975

    Last Modified: 12 Apr 2025

    Research Artisan Lite before 1.18 does not ensure that a user has authenticated, which allows remote attackers to perform unspecified actions via unknown vectors.

    Published: 26 Jul 2015
    5
    Medium

    CVE-2015-4945

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in the IBM Maximo Anywhere application 7.5.1 through 7.5.1.2 for Android allows attackers to bypass a passcode protection mechanism and obtain sensitive information via a crafted application.

    Published: 26 Jul 2015
    7.3
    High

    CVE-2015-6527

    Last Modified: 12 Apr 2025

    The php_str_replace_in_subject function in ext/standard/string.c in PHP 7.x before 7.0.0 allows remote attackers to execute arbitrary code via a crafted value in the third argument to the str_ireplace function.

    Published: 26 Jul 2015
    4.3
    Medium

    CVE-2015-2976

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Research Artisan Lite before 1.18 allow remote attackers to inject arbitrary web script or HTML via (1) a crafted HTML document or (2) a crafted URL that is mishandled during access-log analysis.

    Published: 25 Jul 2015
    2.1
    Low

    CVE-2015-5697

    Last Modified: 12 Apr 2025

    The get_bitmap_file function in drivers/md/md.c in the Linux kernel before 4.1.6 does not initialize a certain bitmap data structure, which allows local users to obtain sensitive information from kernel memory via a GET_BITMAP_FILE ioctl call.

    Published: 25 Jul 2015
    7.1
    High

    CVE-2015-0681

    Last Modified: 12 Apr 2025

    The TFTP server in Cisco IOS 12.2(44)SQ1, 12.2(33)XN1, 12.4(25e)JAM1, 12.4(25e)JAO5m, 12.4(23)JY, 15.0(2)ED1, 15.0(2)EY3, 15.1(3)SVF4a, and 15.2(2)JB1 and IOS XE 2.5.x, 2.6.x, 3.1.xS, 3.2.xS, 3.3.xS, 3.4.xS, and 3.5.xS before 3.6.0S; 3.1.xSG, 3.2.xSG, and 3.3.xSG before 3.4.0SG; 3.2.xSE before 3.3.0SE; 3.2.xXO before 3.3.0XO; 3.2.xSQ; 3.3.xSQ; and 3.4.xSQ allows remote attackers to cause a denial of service (device hang or reload) via multiple requests that trigger improper memory management, aka Bug ID CSCts66733.

    Published: 24 Jul 2015
    4.3
    Medium

    CVE-2015-2973

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in the Welcart plugin before 1.4.18 for WordPress allow remote attackers to inject arbitrary web script or HTML via the usces_referer parameter to (1) classes/usceshop.class.php, (2) includes/edit-form-advanced.php, (3) includes/edit-form-advanced30.php, (4) includes/edit-form-advanced34.php, (5) includes/member_edit_form.php, (6) includes/order_edit_form.php, (7) includes/order_list.php, or (8) includes/usces_item_master_list.php, related to admin.php.

    Published: 24 Jul 2015
    9
    Critical

    CVE-2015-4235

    Last Modified: 12 Apr 2025

    Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3o) and 1.1 before 1.1(1j) and Nexus 9000 ACI devices with software before 11.0(4o) and 11.1 before 11.1(1j) do not properly restrict access to the APIC filesystem, which allows remote authenticated users to obtain root privileges via unspecified use of the APIC cluster-management configuration feature, aka Bug IDs CSCuu72094 and CSCuv11991.

    Published: 24 Jul 2015
    10
    Critical

    CVE-2015-4262

    Last Modified: 12 Apr 2025

    The password-change feature in Cisco Unified MeetingPlace Web Conferencing before 8.5(5) MR3 and 8.6 before 8.6(2) does not check the session ID or require entry of the current password, which allows remote attackers to reset arbitrary passwords via a crafted HTTP request, aka Bug ID CSCuu51839.

    Published: 24 Jul 2015
    7.5
    High

    CVE-2015-9541

    Last Modified: 21 Nov 2024

    Qt through 5.14 allows an exponential XML entity expansion attack via a crafted SVG document that is mishandled in QXmlStreamReader, a related issue to CVE-2003-1564.

    Published: 24 Jul 2015
    7.8
    High

    CVE-2015-4527

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in EMC Avamar Server 7.x before 7.1.2 and Avamar Virtual Addition (AVE) 7.x before 7.1.2 allows remote attackers to read arbitrary files by using the Avamar Desktop/Laptop client interface to send crafted parameters.

    Published: 23 Jul 2015
    5
    Medium

    CVE-2015-4285

    Last Modified: 12 Apr 2025

    The Local Packet Transport Services (LPTS) implementation in Cisco IOS XR 5.1.2, 5.1.3, 5.2.1, and 5.2.2 on ASR9k devices makes incorrect decisions about the opening of TCP and UDP ports during the processing of flow base entries, which allows remote attackers to cause a denial of service (resource consumption) by sending traffic to these ports continuously, aka Bug ID CSCur88273.

    Published: 23 Jul 2015
    5.1
    Medium

    CVE-2015-3246

    Last Modified: 26 Aug 2026

    libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, directly modifies /etc/passwd, which allows local users to cause a denial of service (inconsistent file state) by causing an error during the modification. NOTE: this issue can be combined with CVE-2015-3245 to gain privileges.

    Published: 23 Jul 2015
    8.1
    High

    CVE-2013-2103

    Last Modified: 21 Nov 2024

    OpenShift cartridge allows remote URL retrieval

    Published: 23 Jul 2015
    5.5
    Medium

    CVE-2013-4280

    Last Modified: 21 Nov 2024

    Insecure temporary file vulnerability in RedHat vsdm 4.9.6.

    Published: 23 Jul 2015
    5
    Medium

    CVE-2012-2150

    Last Modified: 12 Apr 2025

    xfs_metadump in xfsprogs before 3.2.4 does not properly obfuscate file data, which allows remote attackers to obtain sensitive information by reading a generated image.

    Published: 23 Jul 2015
    2.1
    Low

    CVE-2015-3245

    Last Modified: 12 Apr 2025

    Incomplete blacklist vulnerability in the chfn function in libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, allows local users to cause a denial of service (/etc/passwd corruption) via a newline character in the GECOS field.

    Published: 23 Jul 2015
    6.5
    Medium

    CVE-2015-5745

    Last Modified: 21 Nov 2024

    Buffer overflow in the send_control_msg function in hw/char/virtio-serial-bus.c in QEMU before 2.4.0 allows guest users to cause a denial of service (QEMU process crash) via a crafted virtio control message.

    Published: 23 Jul 2015
    7.5
    High

    CVE-2013-1793

    Last Modified: 21 Nov 2024

    openstack-utils openstack-db has insecure password creation

    Published: 23 Jul 2015
    4.3
    Medium

    CVE-2015-3208

    Last Modified: 13 Feb 2025

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 23 Jul 2015
    6.8
    Medium

    CVE-2015-3228

    Last Modified: 12 Apr 2025

    Integer overflow in the gs_heap_alloc_bytes function in base/gsmalloc.c in Ghostscript 9.15 and earlier allows remote attackers to cause a denial of service (crash) via a crafted Postscript (ps) file, as demonstrated by using the ps2pdf command, which triggers an out-of-bounds read or write.

    Published: 23 Jul 2015
    7.2
    High

    CVE-2015-5602

    Last Modified: 12 Apr 2025

    sudoedit in Sudo before 1.8.15 allows local users to gain privileges via a symlink attack on a file whose full path is defined using multiple wildcards in /etc/sudoers, as demonstrated by "/home/*/*/file.txt."

    Published: 23 Jul 2015
    5
    Medium

    CVE-2015-5605

    Last Modified: 12 Apr 2025

    The regular-expression implementation in Google V8, as used in Google Chrome before 44.0.2403.89, mishandles interrupts, which allows remote attackers to cause a denial of service (application crash) via crafted JavaScript code, as demonstrated by an error in garbage collection during allocation of a stack-overflow exception message.

    Published: 23 Jul 2015
    4.3
    Medium

    CVE-2014-0611

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in WebAccess in Novell GroupWise 2012 before Support Pack 4 and 2014 before Support Pack 2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 22 Jul 2015
    6.8
    Medium

    CVE-2015-4281

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server 2.5 MR1 allows remote attackers to hijack the authentication of arbitrary users, aka Bug IDs CSCus56150 and CSCus56146.

    Published: 22 Jul 2015
    5
    Medium

    CVE-2015-4284

    Last Modified: 12 Apr 2025

    The Concurrent Data Management Replication process in Cisco IOS XR 5.3.0 on ASR 9000 devices allows remote attackers to cause a denial of service (BGP process reload) via malformed BGPv4 packets, aka Bug ID CSCur70670.

    Published: 22 Jul 2015
    1.3
    Low

    CVE-2015-5464

    Last Modified: 12 Apr 2025

    The Gemalto SafeNet Luna HSM allows remote authenticated users to bypass intended key-export restrictions by leveraging (1) crypto-user or (2) crypto-officer access to an HSM partition.

    Published: 22 Jul 2015
    7.2
    High

    CVE-2015-3290

    Last Modified: 12 Apr 2025

    arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform improperly relies on espfix64 during nested NMI processing, which allows local users to gain privileges by triggering an NMI within a certain instruction window.

    Published: 22 Jul 2015
    7.5
    High

    CVE-2015-8879

    Last Modified: 12 Apr 2025

    The odbc_bindcols function in ext/odbc/php_odbc.c in PHP before 5.6.12 mishandles driver behavior for SQL_WVARCHAR columns, which allows remote attackers to cause a denial of service (application crash) in opportunistic circumstances by leveraging use of the odbc_fetch_array function to access a certain type of Microsoft SQL Server table.

    Published: 22 Jul 2015
    2.1
    Low

    CVE-2015-3291

    Last Modified: 12 Apr 2025

    arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform does not properly determine when nested NMI processing is occurring, which allows local users to cause a denial of service (skipped NMI) by modifying the rsp register, issuing a syscall instruction, and triggering an NMI.

    Published: 22 Jul 2015
    7.2
    High

    CVE-2015-5157

    Last Modified: 12 Apr 2025

    arch/x86/entry/entry_64.S in the Linux kernel before 4.1.6 on the x86_64 platform mishandles IRET faults in processing NMIs that occurred during userspace execution, which might allow local users to gain privileges by triggering an NMI.

    Published: 22 Jul 2015
    5.5
    Medium

    CVE-2015-5158

    Last Modified: 12 Apr 2025

    Stack-based buffer overflow in hw/scsi/scsi-bus.c in QEMU, when built with SCSI-device emulation support, allows guest OS users with CAP_SYS_RAWIO permissions to cause a denial of service (instance crash) via an invalid opcode in a SCSI command descriptor block.

    Published: 22 Jul 2015
    7.5
    High

    CVE-2015-5179

    Last Modified: 20 Apr 2025

    FreeIPA might display user data improperly via vectors involving non-printable characters.

    Published: 22 Jul 2015
    7.5
    High

    CVE-2015-4554

    Last Modified: 12 Apr 2025

    Multiple unspecified vulnerabilities in TIBCO Spotfire Client and Spotfire Web Player Client in Spotfire Analyst before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Analytics Platform for AWS 6.5 and 7.0.x before 7.0.1; Spotfire Automation Services before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Deployment Kit before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Desktop before 6.5.2 and 7.0.x before 7.0.1; Spotfire Desktop Language Packs 7.0.x before 7.0.1; Spotfire Professional before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; Spotfire Web Player before 5.5.2, 6.0.x before 6.0.3, 6.5.x before 6.5.3, and 7.0.x before 7.0.1; and Silver Fabric Enabler for Spotfire Web Player before 2.1.1 allow remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors.

    Published: 21 Jul 2015
    4
    Medium

    CVE-2015-1905

    Last Modified: 12 Apr 2025

    The REST API in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.3, 8.5.0 through 8.5.0.1, 8.5.5 through 8.5.5.0, and 8.5.6 through 8.5.6.0 allows remote authenticated users to bypass intended access restrictions on task-variable value changes via unspecified vectors.

    Published: 21 Jul 2015
    3.5
    Low

    CVE-2015-1906

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the REST API in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.3, 8.5.0 through 8.5.0.1, 8.5.5 through 8.5.5.0, and 8.5.6 through 8.5.6.0 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.

    Published: 21 Jul 2015
    6
    Medium

    CVE-2015-2134

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in HP System Management Homepage (SMH) before 7.5.0 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors.

    Published: 21 Jul 2015
    8.3
    High

    CVE-2015-5611

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Uconnect before 15.26.1, as used in certain Fiat Chrysler Automobiles (FCA) from 2013 to 2015 models, allows remote attackers in the same cellular network to control vehicle movement, cause human harm or physical damage, or modify dashboard settings via vectors related to modification of entertainment-system firmware and access of the CAN bus due to insufficient "Radio security protection," as demonstrated on a 2014 Jeep Cherokee Limited FWD.

    Published: 21 Jul 2015
    4
    Medium

    CVE-2015-5610

    Last Modified: 12 Apr 2025

    The RSM (aka RSMWinService) service in SolarWinds N-Able N-Central before 9.5.1.4514 uses the same password decryption key across different customers' installations, which makes it easier for remote authenticated users to obtain the cleartext domain-administrator password by locating the encrypted password within HTML source code and then leveraging knowledge of this key from another installation.

    Published: 21 Jul 2015
    5
    Medium

    CVE-2015-2869

    Last Modified: 12 Apr 2025

    The FileInfo plugin before 2.22 for Ghisler Total Commander allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via (1) a large Size value in the Archive Member Header of a COFF Archive Library file, (2) a large Number Of Symbols value in the 1st Linker Member of a COFF Archive Library file, (3) a large Resource Table Count value in the LE Header of a Linear Executable file, or (4) a large value in a certain Object field in a Resource Table Entry in a Linear Executable file.

    Published: 21 Jul 2015
    Unknown

    CVE-2015-4246

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue in customer-controlled software. Notes: none

    Published: 21 Jul 2015