CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2015-3153

    Last Modified: 12 Apr 2025

    The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

    Published: 29 Apr 2015
    5
    Medium

    CVE-2015-1150

    Last Modified: 12 Apr 2025

    The Firewall component in Apple OS X Server before 4.1 uses an incorrect pathname in configuration files, which allows remote attackers to bypass network-access restrictions by sending packets for which custom-rule blocking was intended.

    Published: 28 Apr 2015
    5
    Medium

    CVE-2015-1151

    Last Modified: 12 Apr 2025

    Wiki Server in Apple OS X Server before 4.1 allows remote attackers to bypass intended restrictions on Activity and People pages by connecting from an iPad client.

    Published: 28 Apr 2015
    5.5
    Medium

    CVE-2015-8915

    Last Modified: 12 Apr 2025

    bsdcpio in libarchive before 3.2.0 allows remote attackers to cause a denial of service (invalid read and crash) via crafted cpio file.

    Published: 28 Apr 2015
    7.5
    High

    CVE-2015-1854

    Last Modified: 20 Apr 2025

    389 Directory Server before 1.3.3.10 allows attackers to bypass intended access restrictions and modify directory entries via a crafted ldapmodrdn call.

    Published: 28 Apr 2015
    2.7
    Low

    CVE-2015-2115

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in HP Capture and Route Software (HPCR) 1.3 before Patch 7, 1.3 FP1 before Patch 1, and 1.4 before Patch 1 allows remote authenticated users to obtain sensitive information via unknown vectors.

    Published: 27 Apr 2015
    6.8
    Medium

    CVE-2014-6090

    Last Modified: 12 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in the (1) DataMappingEditorCommands, (2) DatastoreEditorCommands, and (3) IEGEditorCommands servlets in IBM Curam Social Program Management (SPM) 5.2 SP6 before EP6, 6.0 SP2 before EP26, 6.0.3 before 6.0.3.0 iFix8, 6.0.4 before 6.0.4.5 iFix10, and 6.0.5 before 6.0.5.6 allow remote attackers to hijack the authentication of arbitrary users for requests that insert XSS sequences.

    Published: 27 Apr 2015
    4.3
    Medium

    CVE-2015-0176

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in MQ XR WebSockets Listener in WMQ Telemetry in IBM WebSphere MQ 8.0 before 8.0.0.2 allows remote attackers to inject arbitrary web script or HTML via a crafted URI that is included in an error response.

    Published: 27 Apr 2015
    5
    Medium

    CVE-2014-6092

    Last Modified: 12 Apr 2025

    IBM Curam Social Program Management (SPM) 5.2 before SP6 EP6, 6.0 SP2 before EP26, 6.0.4 before 6.0.4.6, and 6.0.5 before 6.0.5.6 requires failed-login handling for web-service accounts to have the same lockout policy as for standard user accounts, which makes it easier for remote attackers to cause a denial of service (web-service outage) by making many login attempts with a valid caseworker account name.

    Published: 27 Apr 2015
    5
    Medium

    CVE-2015-0113

    Last Modified: 12 Apr 2025

    The Jazz help system in IBM Rational Collaborative Lifecycle Management 4.0 through 5.0.2, Rational Quality Manager 4.0 through 4.0.7 and 5.0 through 5.0.2, Rational Team Concert 4.0 through 4.0.7 and 5.0 through 5.0.2, Rational Requirements Composer 4.0 through 4.0.7, Rational DOORS Next Generation 4.0 through 4.0.7 and 5.0 through 5.0.2, Rational Engineering Lifecycle Manager 4.0.3 through 4.0.7 and 5.0 through 5.0.2, Rational Rhapsody Design Manager 4.0 through 4.0.7 and 5.0 through 5.0.2, and Rational Software Architect Design Manager 4.0 through 4.0.7 and 5.0 through 5.0.2 allows remote attackers to read JSP source code via a crafted request.

    Published: 27 Apr 2015
    5.8
    Medium

    CVE-2015-2694

    Last Modified: 12 Apr 2025

    The kdcpreauth modules in MIT Kerberos 5 (aka krb5) 1.12.x and 1.13.x before 1.13.2 do not properly track whether a client's request has been validated, which allows remote attackers to bypass an intended preauthentication requirement by providing (1) zero bytes of data or (2) an arbitrary realm name, related to plugins/preauth/otp/main.c and plugins/preauth/pkinit/pkinit_srv.c.

    Published: 27 Apr 2015
    9.8
    Critical

    CVE-2015-4042

    Last Modified: 21 Nov 2024

    Integer overflow in the keycompare_mb function in sort.c in sort in GNU Coreutils through 8.23 might allow attackers to cause a denial of service (application crash) or possibly have unspecified other impact via long strings.

    Published: 27 Apr 2015
    6.8
    Medium

    CVE-2015-1774

    Last Modified: 12 Apr 2025

    The HWP filter in LibreOffice before 4.3.7 and 4.4.x before 4.4.2 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted HWP document, which triggers an out-of-bounds write.

    Published: 27 Apr 2015
    5
    Medium

    CVE-2015-3155

    Last Modified: 12 Apr 2025

    Foreman before 1.8.1 does not set the secure flag for the _session_id cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.

    Published: 27 Apr 2015
    7.8
    High

    CVE-2015-4041

    Last Modified: 21 Nov 2024

    The keycompare_mb function in sort.c in sort in GNU Coreutils through 8.23 on 64-bit platforms performs a size calculation without considering the number of bytes occupied by multibyte characters, which allows attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via long UTF-8 strings.

    Published: 27 Apr 2015
    9.3
    Critical

    CVE-2015-1885

    Last Modified: 12 Apr 2025

    WebSphereOauth20SP.ear in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.39, 8.0 before 8.0.0.11, 8.5 Liberty Profile before 8.5.5.5, and 8.5 Full Profile before 8.5.5.6, when the OAuth grant type requires sending a password, allows remote attackers to gain privileges via unspecified vectors.

    Published: 26 Apr 2015
    9
    Critical

    CVE-2015-2116

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in HP Storage Data Protector 7.x before 7.03 build 107 allows remote authenticated users to execute arbitrary code or cause a denial of service via unknown vectors.

    Published: 26 Apr 2015
    7.5
    High

    CVE-2015-2117

    Last Modified: 12 Apr 2025

    HP TippingPoint Security Management System (SMS) and TippingPoint Virtual Security Management System (vSMS) before 4.1 patch 3 and 4.2 before patch 1 do not require authentication for JBoss RMI requests, which allows remote attackers to execute arbitrary code by (1) uploading this code within an archive or (2) instantiating a class.

    Published: 26 Apr 2015
    4
    Medium

    CVE-2015-0174

    Last Modified: 12 Apr 2025

    The SNMP implementation in IBM WebSphere Application Server (WAS) 8.5 before 8.5.5.5 does not properly handle configuration data, which allows remote authenticated users to obtain sensitive information via unspecified vectors.

    Published: 26 Apr 2015
    5.5
    Medium

    CVE-2015-0175

    Last Modified: 12 Apr 2025

    IBM WebSphere Application Server (WAS) 8.5 Liberty Profile before 8.5.5.5 does not properly implement authData elements, which allows remote authenticated users to gain privileges via unspecified vectors.

    Published: 26 Apr 2015
    8.5
    High

    CVE-2015-1882

    Last Modified: 12 Apr 2025

    Multiple race conditions in IBM WebSphere Application Server (WAS) 8.5 Liberty Profile before 8.5.5.5 allow remote authenticated users to gain privileges by leveraging thread conflicts that result in Java code execution outside the context of the configured EJB Run-as user.

    Published: 26 Apr 2015
    6.5
    Medium

    CVE-2015-8896

    Last Modified: 20 Apr 2025

    Integer truncation issue in coders/pict.c in ImageMagick before 7.0.5-0 allows remote attackers to cause a denial of service (application crash) via a crafted .pict file.

    Published: 26 Apr 2015
    5.9
    Medium

    CVE-2015-3420

    Last Modified: 20 Apr 2025

    The ssl-proxy-openssl.c function in Dovecot before 2.2.17, when SSLv3 is disabled, allow remote attackers to cause a denial of service (login process crash) via vectors related to handshake failures.

    Published: 26 Apr 2015
    7.8
    High

    CVE-2015-1886

    Last Modified: 12 Apr 2025

    The Remote Document Conversion Service (DCS) in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF29, 8.0.0 before 8.0.0.1 CF16, and 8.5.0 through CF05 allows remote attackers to cause a denial of service (memory consumption) via crafted requests.

    Published: 24 Apr 2015
    4.3
    Medium

    CVE-2015-1908

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF29, 8.0.0 before 8.0.0.1 CF16, and 8.5.0 through CF05, as used in Web Content Manager and other products, allows remote attackers to inject arbitrary web script or HTML via a crafted URL.

    Published: 24 Apr 2015
    6.8
    Medium

    CVE-2015-3417

    Last Modified: 12 Apr 2025

    Use-after-free vulnerability in the ff_h264_free_tables function in libavcodec/h264.c in FFmpeg before 2.3.6 allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted H.264 data in an MP4 file, as demonstrated by an HTML VIDEO element that references H.264 data.

    Published: 24 Apr 2015
    6.8
    Medium

    CVE-2012-2930

    Last Modified: 12 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in TinyWebGallery (TWG) before 1.8.8 allow remote attackers to hijack the authentication of administrators for requests that (1) add a user via an adduser action to admin/index.php or (2) conduct static PHP code injection attacks in .htusers.php via the user parameter to admin/index.php.

    Published: 24 Apr 2015
    4.3
    Medium

    CVE-2012-2932

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in TinyWebGallery (TWG) before 1.8.8 allow remote attackers to inject arbitrary web script or HTML via the selitems[] parameter in a (1) copy, (2) chmod, or (3) arch action to admin/index.php or (4) searchitem parameter in a search action to admin/index.php.

    Published: 24 Apr 2015
    5.8
    Medium

    CVE-2011-4403

    Last Modified: 12 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in Zen Cart 1.3.9h allow remote attackers to hijack the authentication of administrators for requests that (1) delete a product via a delete_product_confirm action to product.php or (2) disable a product via a setflag action to categories.php.

    Published: 24 Apr 2015
    5
    Medium

    CVE-2012-5451

    Last Modified: 12 Apr 2025

    Multiple stack-based buffer overflows in HttpUtils.dll in TVMOBiLi before 2.1.0.3974 allow remote attackers to cause a denial of service (tvMobiliService service crash) via a long string in a (1) GET or (2) HEAD request to TCP port 30888.

    Published: 24 Apr 2015
    5
    Medium

    CVE-2015-0846

    Last Modified: 12 Apr 2025

    django-markupfield before 1.3.2 uses the default docutils RESTRUCTUREDTEXT_FILTER_SETTINGS settings, which allows remote attackers to include and read arbitrary files via unspecified vectors.

    Published: 24 Apr 2015
    4.3
    Medium

    CVE-2015-0910

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in TAGAWA Takao TransmitMail 1.0.11 through 1.5.8 allows remote attackers to inject arbitrary web script or HTML via a crafted filename.

    Published: 24 Apr 2015
    5
    Medium

    CVE-2015-0911

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in TAGAWA Takao TransmitMail 1.0.11 through 1.5.8 allows remote attackers to read arbitrary files via vectors related to attachment handling.

    Published: 24 Apr 2015
    4.3
    Medium

    CVE-2015-3337

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in Elasticsearch before 1.4.5 and 1.5.x before 1.5.2, when a site plugin is enabled, allows remote attackers to read arbitrary files via unspecified vectors.

    Published: 24 Apr 2015
    7.5
    High

    CVE-2015-3418

    Last Modified: 29 Aug 2025

    The ProcPutImage function in dix/dispatch.c in X.Org Server (aka xserver and xorg-server) before 1.16.4 allows attackers to cause a denial of service (divide-by-zero and crash) via a zero-height PutImage request.

    Published: 24 Apr 2015
    5.8
    Medium

    CVE-2015-0706

    Last Modified: 12 Apr 2025

    Open redirect vulnerability in Cisco FireSIGHT System Software 5.3.1.1, 5.3.1.2, and 6.0.0 in FireSIGHT Management Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted HTTP header, aka Bug IDs CSCut06060, CSCut06056, and CSCus98966.

    Published: 23 Apr 2015
    3.5
    Low

    CVE-2015-0707

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Cisco FireSIGHT System Software 5.3.1.1 and 6.0.0 in FireSIGHT Management Center allows remote authenticated users to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCus85425.

    Published: 23 Apr 2015
    5.5
    Medium

    CVE-2015-8894

    Last Modified: 20 Apr 2025

    Double free vulnerability in coders/tga.c in ImageMagick 7.0.0 and later allows remote attackers to cause a denial of service (application crash) via a crafted tga file.

    Published: 23 Apr 2015
    5
    Medium

    CVE-2015-3451

    Last Modified: 12 Apr 2025

    The _clone function in XML::LibXML before 2.0119 does not properly set the expand_entities option, which allows remote attackers to conduct XML external entity (XXE) attacks via crafted XML data to the (1) new or (2) load_xml function.

    Published: 23 Apr 2015
    6.4
    Medium

    CVE-2015-3294

    Last Modified: 12 Apr 2025

    The tcp_request function in Dnsmasq before 2.73rc4 does not properly handle the return value of the setup_reply function, which allows remote attackers to read process memory and cause a denial of service (out-of-bounds read and crash) via a malformed DNS request.

    Published: 23 Apr 2015
    4
    Medium

    CVE-2015-3404

    Last Modified: 12 Apr 2025

    The Certify module before 6.x-2.3 for Drupal does not properly perform node access checks, which allows remote authenticated users to bypass intended access restrictions and obtain sensitive PDF certificate information via vectors related to "showing (and creating) the PDF certificates."

    Published: 22 Apr 2015
    6.9
    Medium

    CVE-2015-1484

    Last Modified: 12 Apr 2025

    Unquoted Windows search path vulnerability in the agent in Symantec Workspace Streaming (SWS) 6.1 before SP8 MP2 HF7 and 7.5 before SP1 HF4, when AppMgrService.exe is configured as a service, allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory, as demonstrated by program.exe.

    Published: 22 Apr 2015
    6.5
    Medium

    CVE-2015-1889

    Last Modified: 12 Apr 2025

    The Big SQL component in IBM InfoSphere BigInsights 3.0 through 3.0.0.2 allows remote authenticated users to bypass intended HDFS data-access restrictions via (1) a crafted CREATE HADOOP TABLE statement referencing the data of an arbitrary user or (2) an import of a certain Hive table definition with the HCAT_SYNC_OBJECTS procedure.

    Published: 22 Apr 2015
    6.8
    Medium

    CVE-2015-0704

    Last Modified: 12 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in API features in Cisco Unified MeetingPlace 8.6(1.9) allow remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCus95884.

    Published: 22 Apr 2015
    6.8
    Medium

    CVE-2015-0705

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in the SOAP API endpoints of the web-services directory in Cisco Unified MeetingPlace 8.6(1.9) allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts, aka Bug ID CSCus97494.

    Published: 22 Apr 2015
    5.8
    Medium

    CVE-2015-1863

    Last Modified: 12 Apr 2025

    Heap-based buffer overflow in wpa_supplicant 1.0 through 2.4 allows remote attackers to cause a denial of service (crash), read memory, or possibly execute arbitrary code via crafted SSID information in a management frame when creating or updating P2P entries.

    Published: 22 Apr 2015
    7.8
    High

    CVE-2015-3151

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in abrt-dbus in Automatic Bug Reporting Tool (ABRT) allows local users to read, write to, or change ownership of arbitrary files via unspecified vectors to the (1) NewProblem, (2) GetInfo, (3) SetElement, or (4) DeleteElement method.

    Published: 22 Apr 2015
    5
    Medium

    CVE-2015-3143

    Last Modified: 12 Apr 2025

    cURL and libcurl 7.10.6 through 7.41.0 does not properly re-use NTLM connections, which allows remote attackers to connect as other users via an unauthenticated request, a similar issue to CVE-2014-0015.

    Published: 22 Apr 2015
    9
    Critical

    CVE-2015-3144

    Last Modified: 12 Apr 2025

    The fix_hostname function in cURL and libcurl 7.37.0 through 7.41.0 does not properly calculate an index, which allows remote attackers to cause a denial of service (out-of-bounds read or write and crash) or possibly have other unspecified impact via a zero-length host name, as demonstrated by "http://:80" and ":80."

    Published: 22 Apr 2015
    7.5
    High

    CVE-2015-3145

    Last Modified: 12 Apr 2025

    The sanitize_cookie_path function in cURL and libcurl 7.31.0 through 7.41.0 does not properly calculate an index, which allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly have other unspecified impact via a cookie path containing only a double-quote character.

    Published: 22 Apr 2015