CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2015-3708

    Last Modified: 12 Apr 2025

    kextd in kext tools in Apple OS X before 10.10.4 allows attackers to write to arbitrary files via a crafted app that conducts a symlink attack.

    Published: 3 Jul 2015
    6.9
    Medium

    CVE-2015-3709

    Last Modified: 12 Apr 2025

    Race condition in kext tools in Apple OS X before 10.10.4 allows local users to bypass intended signature requirements for kernel extensions by leveraging improper pathname validation.

    Published: 3 Jul 2015
    4.3
    Medium

    CVE-2015-3710

    Last Modified: 12 Apr 2025

    Mail in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to trigger a refresh operation, and consequently cause a visit to an arbitrary web site, via a crafted HTML e-mail message.

    Published: 3 Jul 2015
    4.3
    Medium

    CVE-2015-3711

    Last Modified: 12 Apr 2025

    The NTFS implementation in Apple OS X before 10.10.4 allows attackers to obtain sensitive memory-layout information for the kernel via a crafted app.

    Published: 3 Jul 2015
    9.3
    Critical

    CVE-2015-3712

    Last Modified: 12 Apr 2025

    The NVIDIA graphics driver in Apple OS X before 10.10.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (out-of-bounds write) via a crafted app.

    Published: 3 Jul 2015
    6.8
    Medium

    CVE-2015-3713

    Last Modified: 12 Apr 2025

    QuickTime in Apple OS X before 10.10.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted movie file.

    Published: 3 Jul 2015
    5
    Medium

    CVE-2015-3714

    Last Modified: 12 Apr 2025

    Apple OS X before 10.10.4 does not properly consider custom resource rules during app signature verification, which allows attackers to bypass intended launch restrictions via a modified app.

    Published: 3 Jul 2015
    6.8
    Medium

    CVE-2015-3719

    Last Modified: 12 Apr 2025

    TrueTypeScaler in FontParser in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file, a different vulnerability than CVE-2015-3694.

    Published: 3 Jul 2015
    4.3
    Medium

    CVE-2015-3720

    Last Modified: 12 Apr 2025

    The kernel in Apple OS X before 10.10.4 does not properly manage memory in kernel-extension APIs, which allows attackers to obtain sensitive memory-layout information via a crafted app.

    Published: 3 Jul 2015
    4.3
    Medium

    CVE-2015-3721

    Last Modified: 12 Apr 2025

    The kernel in Apple iOS before 8.4 and OS X before 10.10.4 does not properly handle HFS parameters, which allows attackers to obtain sensitive memory-layout information via a crafted app.

    Published: 3 Jul 2015
    4.3
    Medium

    CVE-2015-3722

    Last Modified: 12 Apr 2025

    Application Store in Apple iOS before 8.4 does not ensure the uniqueness of bundle IDs, which allows attackers to cause a denial of service (ID collision and launch outage) via a crafted universal provisioning profile app.

    Published: 3 Jul 2015
    6.8
    Medium

    CVE-2015-3723

    Last Modified: 12 Apr 2025

    CoreGraphics in Apple iOS before 8.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted ICC profile in a PDF document, a different vulnerability than CVE-2015-3724.

    Published: 3 Jul 2015
    6.8
    Medium

    CVE-2015-3724

    Last Modified: 12 Apr 2025

    CoreGraphics in Apple iOS before 8.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted ICC profile in a PDF document, a different vulnerability than CVE-2015-3723.

    Published: 3 Jul 2015
    4.8
    Medium

    CVE-2015-3728

    Last Modified: 12 Apr 2025

    The WiFi Connectivity feature in Apple iOS before 8.4 allows remote Wi-Fi access points to trigger an automatic association, with an arbitrary security type, by operating with a recognized ESSID within an 802.11 network's coverage area.

    Published: 3 Jul 2015
    7.5
    High

    CVE-2015-5380

    Last Modified: 12 Apr 2025

    The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in Google V8, as used in Node.js before 0.12.6, io.js before 1.8.3 and 2.x before 2.3.3, and other products, does not verify that there is memory available for a UTF-16 surrogate pair, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted byte sequence.

    Published: 3 Jul 2015
    5.4
    Medium

    CVE-2015-4228

    Last Modified: 12 Apr 2025

    Cisco Digital Content Manager (DCM) 15.0.0 might allow remote ad servers to cause a denial of service (reboot) via malformed ad messages, aka Bug ID CSCur13999.

    Published: 2 Jul 2015
    3.5
    Low

    CVE-2015-3443

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the basic dashboard in Thycotic Secret Server 8.6.x, 8.7.x, and 8.8.x before 8.8.000005 allows remote authenticated users to inject arbitrary web script or HTML via a password entry, which is not properly handled when toggling the password mask.

    Published: 2 Jul 2015
    6.8
    Medium

    CVE-2015-4238

    Last Modified: 12 Apr 2025

    The SNMP implementation in Cisco Adaptive Security Appliance (ASA) Software 8.4(7) and 8.6(1.2) allows remote authenticated users to cause a denial of service (device reload) by sending many SNMP requests during a time of high network traffic, aka Bug ID CSCul02601.

    Published: 2 Jul 2015
    Unknown

    CVE-2015-3157

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 2 Jul 2015
    3.5
    Low

    CVE-2015-5365

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Zurmo CRM 3.0.2 allows remote authenticated users to inject arbitrary web script or HTML via the "What's going on?" profile field.

    Published: 2 Jul 2015
    6.5
    Medium

    CVE-2015-4233

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in Cisco Unified MeetingPlace 8.6(1.2) allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug ID CSCuu54037.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2724

    Last Modified: 12 Apr 2025

    Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

    Published: 2 Jul 2015
    7.5
    High

    CVE-2015-2743

    Last Modified: 12 Apr 2025

    PDF.js in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 enables excessive privileges for internal Workers, which might allow remote attackers to execute arbitrary code by leveraging a Same Origin Policy bypass.

    Published: 2 Jul 2015
    4.3
    Medium

    CVE-2015-2721

    Last Modified: 12 Apr 2025

    Mozilla Network Security Services (NSS) before 3.19, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1, and other products, does not properly determine state transitions for the TLS state machine, which allows man-in-the-middle attackers to defeat cryptographic protection mechanisms by blocking messages, as demonstrated by removing a forward-secrecy property by blocking a ServerKeyExchange message, aka a "SMACK SKIP-TLS" issue.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2725

    Last Modified: 12 Apr 2025

    Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0, Firefox ESR 38.x before 38.1, and Thunderbird before 38.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

    Published: 2 Jul 2015
    4.3
    Medium

    CVE-2015-2730

    Last Modified: 12 Apr 2025

    Mozilla Network Security Services (NSS) before 3.19.1, as used in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and other products, does not properly perform Elliptical Curve Cryptography (ECC) multiplications, which makes it easier for remote attackers to spoof ECDSA signatures via unspecified vectors.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2731

    Last Modified: 12 Apr 2025

    Use-after-free vulnerability in the CSPService::ShouldLoad function in the microtask implementation in Mozilla Firefox before 39.0, Firefox ESR 38.x before 38.1, and Thunderbird before 38.1 allows remote attackers to execute arbitrary code by leveraging client-side JavaScript that triggers removal of a DOM object on the basis of a Content Policy.

    Published: 2 Jul 2015
    9.3
    Critical

    CVE-2015-2736

    Last Modified: 12 Apr 2025

    The nsZipArchive::BuildFileList function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which allows remote attackers to have an unspecified impact via a crafted ZIP archive.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2737

    Last Modified: 12 Apr 2025

    The rx::d3d11::SetBufferData function in the Direct3D 11 implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 reads data from uninitialized memory locations, which has unspecified impact and attack vectors.

    Published: 2 Jul 2015
    4.3
    Medium

    CVE-2015-2741

    Last Modified: 12 Apr 2025

    Mozilla Firefox before 39.0, Firefox ESR 38.x before 38.1, and Thunderbird before 38.1 do not enforce key pinning upon encountering an X.509 certificate problem that generates a user dialog, which allows user-assisted man-in-the-middle attackers to bypass intended access restrictions by triggering a (1) expired certificate or (2) mismatched hostname for a domain with pinning enabled.

    Published: 2 Jul 2015
    7.5
    High

    CVE-2015-3279

    Last Modified: 12 Apr 2025

    Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.71 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted line size in a print job, which triggers a heap-based buffer overflow.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2722

    Last Modified: 12 Apr 2025

    Use-after-free vulnerability in the CanonicalizeXPCOMParticipant function in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 allows remote attackers to execute arbitrary code via vectors involving attachment of an XMLHttpRequest object to a shared worker.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2726

    Last Modified: 12 Apr 2025

    Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

    Published: 2 Jul 2015
    6.8
    Medium

    CVE-2015-2727

    Last Modified: 12 Apr 2025

    Mozilla Firefox 38.0 and Firefox ESR 38.0 allow user-assisted remote attackers to read arbitrary files or execute arbitrary JavaScript code with chrome privileges via a crafted web site that is accessed with unspecified mouse and keyboard actions. NOTE: this vulnerability exists because of a CVE-2015-0821 regression.

    Published: 2 Jul 2015
    7.5
    High

    CVE-2015-2728

    Last Modified: 12 Apr 2025

    The IndexedDatabaseManager class in the IndexedDB implementation in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 misinterprets an unspecified IDBDatabase field as a pointer, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors, related to a "type confusion" issue.

    Published: 2 Jul 2015
    5
    Medium

    CVE-2015-2729

    Last Modified: 12 Apr 2025

    The AudioParamTimeline::AudioNodeInputValue function in the Web Audio implementation in Mozilla Firefox before 39.0 and Firefox ESR 38.x before 38.1 does not properly calculate an oscillator rendering range, which allows remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via unspecified vectors.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2733

    Last Modified: 12 Apr 2025

    Use-after-free vulnerability in the CanonicalizeXPCOMParticipant function in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 allows remote attackers to execute arbitrary code via vectors involving attachment of an XMLHttpRequest object to a dedicated worker.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2734

    Last Modified: 12 Apr 2025

    The CairoTextureClientD3D9::BorrowDrawTarget function in the Direct3D 9 implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 reads data from uninitialized memory locations, which has unspecified impact and attack vectors.

    Published: 2 Jul 2015
    9.3
    Critical

    CVE-2015-2735

    Last Modified: 12 Apr 2025

    nsZipArchive.cpp in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which allows remote attackers to have an unspecified impact via a crafted ZIP archive.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2738

    Last Modified: 12 Apr 2025

    The YCbCrImageDataDeserializer::ToDataSourceSurface function in the YCbCr implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 reads data from uninitialized memory locations, which has unspecified impact and attack vectors.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2739

    Last Modified: 12 Apr 2025

    The ArrayBufferBuilder::append function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which has unspecified impact and attack vectors.

    Published: 2 Jul 2015
    10
    Critical

    CVE-2015-2740

    Last Modified: 12 Apr 2025

    Buffer overflow in the nsXMLHttpRequest::AppendToResponseText function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 might allow remote attackers to cause a denial of service or have unspecified other impact via unknown vectors.

    Published: 2 Jul 2015
    4.6
    Medium

    CVE-2015-3256

    Last Modified: 12 Apr 2025

    PolicyKit (aka polkit) before 0.113 allows local users to cause a denial of service (memory corruption and polkitd daemon crash) and possibly gain privileges via unspecified vectors, related to "javascript rule evaluation."

    Published: 2 Jul 2015
    7.5
    High

    CVE-2015-5353

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in Novius OS 5.0.1 (Elche) allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the tab parameter to admin/.

    Published: 1 Jul 2015
    5.8
    Medium

    CVE-2015-5354

    Last Modified: 12 Apr 2025

    Open redirect vulnerability in Novius OS 5.0.1 (Elche) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect parameter to admin/nos/login.

    Published: 1 Jul 2015
    4.3
    Medium

    CVE-2015-5355

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in GetSimple CMS before 3.3.6 allow remote attackers to inject arbitrary web script or HTML via the (1) post-content or (2) post-title parameter to admin/edit.php.

    Published: 1 Jul 2015
    4.3
    Medium

    CVE-2015-5356

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in admin/filebrowser.php in GetSimple CMS before 3.3.6 allows remote attackers to inject arbitrary web script or HTML via the func parameter.

    Published: 1 Jul 2015
    5.8
    Medium

    CVE-2014-1750

    Last Modified: 12 Apr 2025

    Open redirect vulnerability in nokia-mapsplaces.php in the Nokia Maps & Places plugin 1.6.6 for WordPress allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the href parameter to page/place.html. NOTE: this was originally reported as a cross-site scripting (XSS) vulnerability, but this may be inaccurate.

    Published: 1 Jul 2015
    6.4
    Medium

    CVE-2014-1836

    Last Modified: 12 Apr 2025

    Absolute path traversal vulnerability in htdocs/libraries/image-editor/image-edit.php in ImpressCMS before 1.3.6 allows remote attackers to delete arbitrary files via a full pathname in the image_path parameter in a cancel action.

    Published: 1 Jul 2015
    5
    Medium

    CVE-2015-2141

    Last Modified: 12 Apr 2025

    The InvertibleRWFunction::CalculateInverse function in rw.cpp in libcrypt++ 5.6.2 does not properly blind private key operations for the Rabin-Williams digital signature algorithm, which allows remote attackers to obtain private keys via a timing attack.

    Published: 1 Jul 2015