CVE Feed

    Dashboard / CVE

    10
    Critical

    CVE-2015-2052

    Last Modified: 12 Apr 2025

    Stack-based buffer overflow in the DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remote attackers to execute arbitrary code via a long string in a GetDeviceSettings action to the HNAP interface.

    Published: 23 Feb 2015
    4.3
    Medium

    CVE-2015-2053

    Last Modified: 12 Apr 2025

    The log viewer in McAfee Agent (MA) before 4.8.0 Patch 3 and 5.0.0, when the "Accept connections only from the ePO server" option is disabled, allows remote attackers to conduct clickjacking attacks via a crafted web page, aka an "http-generic-click-jacking" vulnerability.

    Published: 23 Feb 2015
    4.3
    Medium

    CVE-2015-2054

    Last Modified: 12 Apr 2025

    CRLF injection vulnerability in export.cfg in the web-based administrative console for Sierra Wireless AirCard 760S, 762S, and 763S allows remote attackers to inject arbitrary headers via CRLF sequences in the save parameter.

    Published: 23 Feb 2015
    7.8
    High

    CVE-2015-2055

    Last Modified: 12 Apr 2025

    Zhone GPON 2520 with firmware R4.0.2.566b allows remote attackers to cause a denial of service via a long string in the oldpassword parameter.

    Published: 23 Feb 2015
    4.3
    Medium

    CVE-2014-7922

    Last Modified: 12 Apr 2025

    The GoogleAuthUtil.getToken method in the Google Play services SDK before 2015 sets parameters in OAuth token requests upon finding a corresponding _opt_ parameter in the Bundle extras argument, which allows attackers to bypass an intended consent dialog and retrieve tokens for arbitrary OAuth scopes including the SID and LSID scopes, and consequently obtain access to a Google account, via a crafted application, as demonstrated by setting the has_permission=1 parameter value upon finding _opt_has_permission in that argument.

    Published: 23 Feb 2015
    5
    Medium

    CVE-2015-0272

    Last Modified: 12 Apr 2025

    GNOME NetworkManager allows remote attackers to cause a denial of service (IPv6 traffic disruption) via a crafted MTU value in an IPv6 Router Advertisement (RA) message, a different vulnerability than CVE-2015-8215.

    Published: 23 Feb 2015
    7.5
    High

    CVE-2015-2059

    Last Modified: 12 Apr 2025

    The stringprep_utf8_to_ucs4 function in libin before 1.31, as used in jabberd2, allows context-dependent attackers to read system memory and possibly have other unspecified impact via invalid UTF-8 characters in a string, which triggers an out-of-bounds read.

    Published: 23 Feb 2015
    10
    Critical

    CVE-2015-0240

    Last Modified: 9 May 2025

    The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.

    Published: 23 Feb 2015
    5
    Medium

    CVE-2015-8215

    Last Modified: 12 Apr 2025

    net/ipv6/addrconf.c in the IPv6 stack in the Linux kernel before 4.0 does not validate attempted changes to the MTU value, which allows context-dependent attackers to cause a denial of service (packet loss) via a value that is (1) smaller than the minimum compliant value or (2) larger than the MTU of an interface, as demonstrated by a Router Advertisement (RA) message that is not validated by a daemon, a different vulnerability than CVE-2015-0272. NOTE: the scope of CVE-2015-0272 is limited to the NetworkManager product.

    Published: 23 Feb 2015
    5
    Medium

    CVE-2014-8121

    Last Modified: 12 Apr 2025

    DB_LOOKUP in nss_files/files-XXX.c in the Name Service Switch (NSS) in GNU C Library (aka glibc or libc6) 2.21 and earlier does not properly check if a file is open, which allows remote attackers to cause a denial of service (infinite loop) by performing a look-up on a database while iterating over it, which triggers the file pointer to be reset.

    Published: 23 Feb 2015
    7.2
    High

    CVE-2014-6184

    Last Modified: 12 Apr 2025

    Stack-based buffer overflow in dsmtca in the client in IBM Tivoli Storage Manager (TSM) 5.4 through 5.4.3.6, 5.5 through 5.5.4.3, 6.1 through 6.1.5.6, 6.2 before 6.2.5.4, and 6.3 before 6.3.2.3 on UNIX, Linux, and OS X allows local users to gain privileges via unspecified vectors.

    Published: 22 Feb 2015
    4.3
    Medium

    CVE-2015-7941

    Last Modified: 12 Apr 2025

    libxml2 2.9.2 does not properly stop parsing invalid input, which allows context-dependent attackers to cause a denial of service (out-of-bounds read and libxml2 crash) via crafted XML data to the (1) xmlParseEntityDecl or (2) xmlParseConditionalSections function in parser.c, as demonstrated by non-terminated entities.

    Published: 22 Feb 2015
    8.1
    High

    CVE-2015-8983

    Last Modified: 20 Apr 2025

    Integer overflow in the _IO_wstr_overflow function in libio/wstrops.c in the GNU C Library (aka glibc or libc6) before 2.22 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors related to computing a size in bytes, which triggers a heap-based buffer overflow.

    Published: 22 Feb 2015
    7.1
    High

    CVE-2015-0631

    Last Modified: 12 Apr 2025

    Race condition in the SSL implementation on Cisco Intrusion Prevention System (IPS) devices allows remote attackers to cause a denial of service by making many management-interface HTTPS connections during the key-regeneration phase of an upgrade, aka Bug ID CSCui25688.

    Published: 21 Feb 2015
    7.1
    High

    CVE-2015-0618

    Last Modified: 12 Apr 2025

    Cisco IOS XR 5.0.1 and 5.2.1 on Network Convergence System (NCS) 6000 devices and 5.1.3 and 5.1.4 on Carrier Routing System X (CRS-X) devices allows remote attackers to cause a denial of service (line-card reload) via malformed IPv6 packets with extension headers, aka Bug ID CSCuq95241.

    Published: 21 Feb 2015
    4.3
    Medium

    CVE-2015-0624

    Last Modified: 12 Apr 2025

    The web framework in Cisco AsyncOS on Email Security Appliance (ESA), Content Security Management Appliance (SMA), and Web Security Appliance (WSA) devices allows remote attackers to trigger redirects via a crafted HTTP header, aka Bug IDs CSCur44412, CSCur44415, CSCur89630, CSCur89636, CSCur89633, and CSCur89639.

    Published: 21 Feb 2015
    Unknown

    CVE-2015-2010

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2015-0010. Reason: This candidate is a duplicate of CVE-2015-0010. A typo caused the wrong ID to be used. Notes: All CVE users should reference CVE-2015-0010 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 20 Feb 2015
    4.3
    Medium

    CVE-2015-0167

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in textAngular-sanitize.js in textAngular before 1.3.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors to the editor.

    Published: 20 Feb 2015
    6.8
    Medium

    CVE-2015-2039

    Last Modified: 12 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in the Acobot Live Chat & Contact Form plugin 2.0 for WordPress allow remote attackers to hijack the authentication of administrators for requests that (1) change plugin settings or (2) conduct cross-site scripting (XSS) attacks via the acobot_token parameter in the acobot page to wp-admin/options-general.php.

    Published: 20 Feb 2015
    4.3
    Medium

    CVE-2015-2040

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Contact Form DB (aka CFDB and contact-form-7-to-database-extension) plugin 2.8.26 for WordPress allows remote attackers to inject arbitrary web script or HTML via the submit_time parameter in the CF7DBPluginSubmissions page to wp-admin/admin.php.

    Published: 20 Feb 2015
    6
    Medium

    CVE-2015-1517

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in Piwigo before 2.7.4, when all filters are activated, allows remote authenticated users to execute arbitrary SQL commands via the filter_level parameter in a "Refresh photo set" action in the batch_manager page to admin.php.

    Published: 20 Feb 2015
    4.3
    Medium

    CVE-2015-2034

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the administrative backend in Piwigo before 2.7.4 allows remote attackers to inject arbitrary web script or HTML via the page parameter to admin.php.

    Published: 20 Feb 2015
    6.5
    Medium

    CVE-2015-2035

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the administrative backend in Piwigo before 2.7.4 allows remote administrators to execute arbitrary SQL commands via the user parameter in the history page to admin.php.

    Published: 20 Feb 2015
    10
    Critical

    CVE-2015-2033

    Last Modified: 12 Apr 2025

    Anyterm Daemon in Infoblox Network Automation NetMRI before NETMRI-23483 allows remote attackers to execute arbitrary commands with root privileges via a crafted terminal/anyterm-module request.

    Published: 20 Feb 2015
    4.3
    Medium

    CVE-2015-0881

    Last Modified: 12 Apr 2025

    CRLF injection vulnerability in Squid before 3.1.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted header in a response.

    Published: 20 Feb 2015
    5.8
    Medium

    CVE-2015-0878

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in CREAR AL-Mail32 before 1.13d allows remote attackers to write to arbitrary files via a crafted filename of an attachment.

    Published: 20 Feb 2015
    4.3
    Medium

    CVE-2015-0879

    Last Modified: 12 Apr 2025

    CREAR AL-Mail32 before 1.13d allows remote attackers to cause a denial of service (application crash) via a (1) CON, (2) AUX, or (3) NUL device name in the filename of an attachment.

    Published: 20 Feb 2015
    6.8
    Medium

    CVE-2015-0880

    Last Modified: 12 Apr 2025

    Buffer overflow in CREAR AL-Mail32 before 1.13d allows remote attackers to execute arbitrary code via a long filename of an attachment.

    Published: 20 Feb 2015
    7.2
    High

    CVE-2015-0584

    Last Modified: 12 Apr 2025

    The image-upgrade implementation on Cisco Desktop Collaboration Experience (aka Collaboration Desk Experience or DX) DX650 endpoints allows local users to execute arbitrary OS commands via an unspecified parameter, aka Bug ID CSCus38947.

    Published: 20 Feb 2015
    5
    Medium

    CVE-2015-0628

    Last Modified: 12 Apr 2025

    The proxy engine on Cisco Web Security Appliance (WSA) devices allows remote attackers to bypass intended proxying restrictions via a malformed HTTP method, aka Bug ID CSCus79174.

    Published: 20 Feb 2015
    4.6
    Medium

    CVE-2015-2041

    Last Modified: 12 Apr 2025

    net/llc/sysctl_net_llc.c in the Linux kernel before 3.19 uses an incorrect data type in a sysctl table, which allows local users to obtain potentially sensitive information from kernel memory or possibly have unspecified other impact by accessing a sysctl entry.

    Published: 20 Feb 2015
    5
    Medium

    CVE-2015-5276

    Last Modified: 12 Apr 2025

    The std::random_device class in libstdc++ in the GNU Compiler Collection (aka GCC) before 4.9.4 does not properly handle short reads from blocking sources, which makes it easier for context-dependent attackers to predict the random values via unspecified vectors.

    Published: 20 Feb 2015
    5.9
    Medium

    CVE-2014-3706

    Last Modified: 20 Apr 2025

    ovirt-engine, as used in Red Hat MRG 3, allows man-in-the-middle attackers to spoof servers by leveraging failure to verify key attributes in vdsm X.509 certificates.

    Published: 20 Feb 2015
    4.6
    Medium

    CVE-2015-2042

    Last Modified: 12 Apr 2025

    net/rds/sysctl.c in the Linux kernel before 3.19 uses an incorrect data type in a sysctl table, which allows local users to obtain potentially sensitive information from kernel memory or possibly have unspecified other impact by accessing a sysctl entry.

    Published: 20 Feb 2015
    4.3
    Medium

    CVE-2014-9468

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in InstantASP InstantForum.NET 4.1.3, 4.1.2, 4.1.1, 4.0.0, 4.1.0, and 3.4.0 allow remote attackers to inject arbitrary web script or HTML via the SessionID parameter to (1) Join.aspx or (2) Logon.aspx.

    Published: 19 Feb 2015
    7.5
    High

    CVE-2015-1592

    Last Modified: 12 Apr 2025

    Movable Type Pro, Open Source, and Advanced before 5.2.12 and Pro and Advanced 6.0.x before 6.0.7 does not properly use the Perl Storable::thaw function, which allows remote attackers to include and execute arbitrary local Perl files and possibly execute arbitrary code via unspecified vectors.

    Published: 19 Feb 2015
    4.3
    Medium

    CVE-2014-8690

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Exponent CMS before 2.1.4 patch 6, 2.2.x before 2.2.3 patch 9, and 2.3.x before 2.3.1 patch 4 allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO, the (2) src parameter in a none action to index.php, or the (3) "First Name" or (4) "Last Name" field to users/edituser.

    Published: 19 Feb 2015
    4.3
    Medium

    CVE-2015-1603

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Adminsystems CMS before 4.0.2 allow remote attackers to inject arbitrary web script or HTML via the (1) page parameter to index.php or (2) id parameter in a users_users action to asys/site/system.php.

    Published: 19 Feb 2015
    6.8
    Medium

    CVE-2015-1614

    Last Modified: 12 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in the Image Metadata Cruncher plugin for WordPress allow remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the (1) image_metadata_cruncher[alt] or (2) image_metadata_cruncher[caption] parameter in an update action in the image_metadata_cruncher_title page to wp-admin/options.php or (3) custom image meta tag to the image metadata cruncher page.

    Published: 19 Feb 2015
    5
    Medium

    CVE-2014-9465

    Last Modified: 12 Apr 2025

    senddocument.php in Zarafa WebApp before 2.0 beta 3 and WebAccess in Zarafa Collaboration Platform (ZCP) 7.x before 7.1.12 beta 1 and 7.2.x before 7.2.0 beta 1 allows remote attackers to cause a denial of service (/tmp disk consumption) by uploading a large number of files.

    Published: 19 Feb 2015
    7.2
    High

    CVE-2015-1515

    Last Modified: 12 Apr 2025

    The dwall.sys driver in SoftSphere DefenseWall Personal Firewall 3.24 allows local users to write data to arbitrary memory locations, and consequently gain privileges, via a crafted 0x00222000, 0x00222004, 0x00222008, 0x0022200c, or 0x00222010 IOCTL call.

    Published: 19 Feb 2015
    6.8
    Medium

    CVE-2015-1585

    Last Modified: 12 Apr 2025

    Fat Free CRM before 0.13.6 allows remote attackers to conduct cross-site request forgery (CSRF) attacks via a request without the authenticity_token, as demonstrated by a crafted HTML page that creates a new administrator account.

    Published: 19 Feb 2015
    7.5
    High

    CVE-2015-1587

    Last Modified: 12 Apr 2025

    Unrestricted file upload vulnerability in file_to_index.php in Maarch LetterBox 2.8 and earlier and GEC/GED 1.4 and earlier allows remote attackers to execute arbitrary PHP code by uploading a file with a PHP extension, then accessing it via a request to a predictable filename in tmp/.

    Published: 19 Feb 2015
    6.5
    Medium

    CVE-2015-1604

    Last Modified: 12 Apr 2025

    Unrestricted file upload vulnerability in asys/site/files.php in Adminsystems CMS before 4.0.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in upload/files/.

    Published: 19 Feb 2015
    4.3
    Medium

    CVE-2015-1879

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Google Doc Embedder plugin before 2.5.19 for WordPress allows remote attackers to inject arbitrary web script or HTML via the profile parameter in an edit action in the gde-settings page to wp-admin/options-general.php.

    Published: 19 Feb 2015
    4.3
    Medium

    CVE-2014-6301

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in the tables-management module in PNMsoft Sequence Kinetics before 7.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 19 Feb 2015
    5
    Medium

    CVE-2014-6302

    Last Modified: 12 Apr 2025

    The Monitoring Administration pages in PNMsoft Sequence Kinetics before 7.7 allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

    Published: 19 Feb 2015
    5
    Medium

    CVE-2014-6303

    Last Modified: 12 Apr 2025

    The Monitoring Administration pages in PNMsoft Sequence Kinetics before 7.7 do not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (resource consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564.

    Published: 19 Feb 2015
    5
    Medium

    CVE-2014-6304

    Last Modified: 12 Apr 2025

    The Form Controls CSS file in PNMsoft Sequence Kinetics before 7.7 allows remote attackers to obtain sensitive source-code information via unspecified vectors.

    Published: 19 Feb 2015
    6.4
    Medium

    CVE-2014-5286

    Last Modified: 12 Apr 2025

    The ActiveMatrix Policy Manager Authentication module in TIBCO ActiveMatrix Policy Agent 3.x before 3.1.2, ActiveMatrix Policy Manager 3.x before 3.1.2, ActiveMatrix Management Agent 1.x before 1.2.1 for WCF, and ActiveMatrix Management Agent 1.x before 1.2.1 for WebSphere allows remote attackers to gain privileges and obtain sensitive information via unspecified vectors.

    Published: 19 Feb 2015