9.8
    Critical

    CVE-2015-5377

    Last Modified: 21 Nov 2024

    Elasticsearch before 1.6.1 allows remote attackers to execute arbitrary code via unspecified vectors involving the transport protocol. NOTE: ZDI appears to claim that CVE-2015-3253 and CVE-2015-5377 are the same vulnerability

    Published:16 Jul 2015
    7.8
    High

    CVE-2015-5374

    Last Modified: 16 Feb 2018

    A vulnerability has been identified in Firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Modbus TCP for EN100 Ethernet module : All versions < V1.11.00; Firmware variant DNP3 TCP for EN100 Ethernet module : All versions < V1.03; Firmware variant IEC 104 for EN100 Ethernet module : All versions < V1.21; EN100 Ethernet module included in SIPROTEC Merging Unit 6MU80 : All versions < 1.02.02. Specially crafted packets sent to port 50000/UDP could cause a denial-of-service of the affected device. A manual reboot may be required to recover the service of the device.

    Source:M. Can Kurnaz
    Published:18 Jul 2015
    5.8
    Medium

    CVE-2015-5354

    Last Modified: 30 Jun 2015

    Open redirect vulnerability in Novius OS 5.0.1 (Elche) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect parameter to admin/nos/login.

    Source:hyp3rlinx
    Published:1 Jul 2015
    7.5
    High

    CVE-2015-5353

    Last Modified: 30 Jun 2015

    Directory traversal vulnerability in Novius OS 5.0.1 (Elche) allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the tab parameter to admin/.

    Source:hyp3rlinx
    Published:1 Jul 2015
    6.1
    Medium

    CVE-2015-5347

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the getWindowOpenJavaScript function in org.apache.wicket.extensions.ajax.markup.html.modal.ModalWindow in Apache Wicket 1.5.x before 1.5.15, 6.x before 6.22.0, and 7.x before 7.2.0 might allow remote attackers to inject arbitrary web script or HTML via a ModalWindow title.

    Published:12 Apr 2016
    7.8
    High

    CVE-2015-5287

    Last Modified: 25 Sept 2019

    The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name, as demonstrated by /var/tmp/abrt/abrt-hax-coredump or /var/spool/abrt/abrt-hax-coredump.

    Source:Metasploit
    Published:23 Nov 2015
    5
    Medium

    CVE-2015-5285

    Last Modified: 11 Oct 2015

    CRLF injection vulnerability in Kallithea before 0.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the came_from parameter to _admin/login.

    Source:LiquidWorm
    Published:29 Oct 2015
    3.6
    Low

    CVE-2015-5273

    Last Modified: 17 Nov 2018

    The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users to write to arbitrary files via a symlink attack on unpacked.cpio in a pre-created directory with a predictable name in /var/tmp.

    Source:rebel
    Published:23 Nov 2015
    9.8
    Critical

    CVE-2015-5254

    Last Modified: 12 Apr 2025

    Apache ActiveMQ 5.x before 5.13.0 does not restrict the classes that can be serialized in the broker, which allows remote attackers to execute arbitrary code via a crafted serialized Java Message Service (JMS) ObjectMessage object.

    Published:8 Dec 2015
    4
    Medium

    CVE-2015-5253

    Last Modified: 12 Apr 2025

    The SAML Web SSO module in Apache CXF before 2.7.18, 3.0.x before 3.0.7, and 3.1.x before 3.1.3 allows remote authenticated users to bypass authentication via a crafted SAML response with a valid signed assertion, related to a "wrapping attack."

    Published:14 Nov 2015
    7.5
    High

    CVE-2015-5195

    Last Modified: 20 Apr 2025

    ntp_openssl.m4 in ntpd in NTP before 4.2.7p112 allows remote attackers to cause a denial of service (segmentation fault) via a crafted statistics or filegen configuration command that is not enabled during compilation.

    Published:25 Aug 2015
    6.8
    Medium

    CVE-2015-5161

    Last Modified: 15 Aug 2015

    The Zend_Xml_Security::scan in ZendXml before 1.0.1 and Zend Framework before 1.12.14, 2.x before 2.4.6, and 2.5.x before 2.5.2, when running under PHP-FPM in a threaded environment, allows remote attackers to bypass security checks and conduct XML external entity (XXE) and XML entity expansion (XEE) attacks via multibyte encoded characters.

    Source:Dawid Golunski
    Published:25 Aug 2015
    3.5
    Low

    CVE-2015-5150

    Last Modified: 19 Jun 2015

    Multiple cross-site scripting (XSS) vulnerabilities in Zoho ManageEngine SupportCenter Plus 7.90 allow remote authenticated users to inject arbitrary web script or HTML via the (1) query parameter in the run_query_editor_query module to CustomReportHandler.do, (2) compAcct parameter to jsp/ResetADPwd.jsp, or (3) redirectTo parameter to jsp/CacheScreenWidth.jsp.

    Source:Vulnerability-Lab
    Published:30 Jun 2015
    5.5
    Medium

    CVE-2015-5149

    Last Modified: 19 Jun 2015

    Directory traversal vulnerability in Zoho ManageEngine SupportCenter Plus 7.90 allows remote authenticated users to write to arbitrary files via a .. (dot dot) in the component parameter in the Request component to workorder/Attachment.jsp.

    Source:Vulnerability-Lab
    Published:30 Jun 2015
    7.5
    High

    CVE-2015-5148

    Last Modified: 20 Jun 2015

    SQL injection vulnerability in LivelyCart 1.2.0 allows remote attackers to execute arbitrary SQL commands via the search_query parameter to product/search.

    Source:Manish Tanwar
    Published:30 Jun 2015
    10
    Critical

    CVE-2015-5134

    Last Modified: 19 Aug 2015

    Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-5127, CVE-2015-5130, CVE-2015-5539, CVE-2015-5540, CVE-2015-5550, CVE-2015-5551, CVE-2015-5556, CVE-2015-5557, CVE-2015-5559, CVE-2015-5561, CVE-2015-5563, CVE-2015-5564, and CVE-2015-5565.

    Source:Google Security Research
    Published:12 Aug 2015
    10
    Critical

    CVE-2015-5133

    Last Modified: 19 Aug 2015

    Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-5131 and CVE-2015-5132.

    Source:Google Security Research
    Published:12 Aug 2015
    10
    Critical

    CVE-2015-5132

    Last Modified: 19 Aug 2015

    Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-5131 and CVE-2015-5133.

    Source:Google Security Research
    Published:12 Aug 2015
    10
    Critical

    CVE-2015-5131

    Last Modified: 19 Aug 2015

    Buffer overflow in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-5132 and CVE-2015-5133.

    Source:Google Security Research
    Published:12 Aug 2015
    10
    Critical

    CVE-2015-5130

    Last Modified: 19 Aug 2015

    Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-5127, CVE-2015-5134, CVE-2015-5539, CVE-2015-5540, CVE-2015-5550, CVE-2015-5551, CVE-2015-5556, CVE-2015-5557, CVE-2015-5559, CVE-2015-5561, CVE-2015-5563, CVE-2015-5564, and CVE-2015-5565.

    Source:Google Security Research
    Published:12 Aug 2015
    10
    Critical

    CVE-2015-5127

    Last Modified: 19 Aug 2015

    Use-after-free vulnerability in Adobe Flash Player before 18.0.0.232 on Windows and OS X and before 11.2.202.508 on Linux, Adobe AIR before 18.0.0.199, Adobe AIR SDK before 18.0.0.199, and Adobe AIR SDK & Compiler before 18.0.0.199 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-5130, CVE-2015-5134, CVE-2015-5539, CVE-2015-5540, CVE-2015-5550, CVE-2015-5551, CVE-2015-5556, CVE-2015-5557, CVE-2015-5559, CVE-2015-5561, CVE-2015-5563, CVE-2015-5564, and CVE-2015-5565.

    Source:bilou
    Published:12 Aug 2015
    7.8
    High

    CVE-2015-5122

    Last Modified: 24 Jul 2015

    Use-after-free vulnerability in the DisplayObject class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.302 on Windows and OS X, 14.x through 18.0.0.203 on Windows and OS X, 11.x through 11.2.202.481 on Linux, and 12.x through 18.0.0.204 on Linux Chrome installations allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted Flash content that leverages improper handling of the opaqueBackground property, as exploited in the wild in July 2015.

    Source:Metasploit
    Published:10 Jul 2015
    7.8
    High

    CVE-2015-5119

    Last Modified: 8 Jul 2015

    Use-after-free vulnerability in the ByteArray class in the ActionScript 3 (AS3) implementation in Adobe Flash Player 13.x through 13.0.0.296 and 14.x through 18.0.0.194 on Windows and OS X and 11.x through 11.2.202.468 on Linux allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted Flash content that overrides a valueOf function, as exploited in the wild in July 2015.

    Source:Metasploit
    Published:7 Jul 2015
    10
    Critical

    CVE-2015-5118

    Last Modified: 19 Aug 2015

    Heap-based buffer overflow in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3135 and CVE-2015-4432.

    Source:Google Security Research
    Published:8 Jul 2015
    5
    Medium

    CVE-2015-5116

    Last Modified: 19 Aug 2015

    Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3116, and CVE-2015-3125.

    Source:Google Security Research
    Published:8 Jul 2015
    Low

    CVE-2015-5112

    Last Modified: 24 May 2018

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2015. Notes: none

    Source:smgorelik
    Published:11 May 2017
    10
    Critical

    CVE-2015-5082

    Last Modified: 2 Jul 2015

    Endian Firewall before 3.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) NEW_PASSWORD_1 or (2) NEW_PASSWORD_2 parameter to cgi-bin/chpasswd.cgi.

    Source:Ben Lincoln
    Published:28 Sept 2015
    7.5
    High

    CVE-2015-5079

    Last Modified: 17 Jun 2015

    Directory traversal vulnerability in widgets/logs.php in BlackCat CMS before 1.1.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the dl parameter.

    Source:d4rkr0id
    Published:28 Feb 2018
    6.8
    Medium

    CVE-2015-5075

    Last Modified: 25 Sept 2015

    Cross-site request forgery (CSRF) vulnerability in X2Engine X2CRM before 5.2 allows remote attackers to hijack the authentication of administrators for requests that create an administrative account via a crafted request to index.php/users/create.

    Source:Portcullis
    Published:29 Sept 2015
    7.5
    High

    CVE-2015-5074

    Last Modified: 25 Sept 2015

    Incomplete blacklist vulnerability in the FileUploadsFilter class in protected/components/filters/FileUploadsFilter.php in X2Engine X2CRM before 5.0.9 allows remote authenticated users to execute arbitrary PHP code by uploading a file with a .pht extension.

    Source:Portcullis
    Published:29 Sept 2015
    4.3
    Medium

    CVE-2015-5066

    Last Modified: 24 Jun 2015

    Multiple cross-site scripting (XSS) vulnerabilities in the MetalGenix GeniXCMS 0.0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) content or (2) title field in an add action in the posts page to index.php or the (3) q parameter in the posts page to index.php.

    Source:hyp3rlinx
    Published:24 Jun 2015
    5
    Medium

    CVE-2015-5065

    Last Modified: 10 Oct 2016

    Absolute path traversal vulnerability in proxy.php in the google currency lookup in the Paypal Currency Converter Basic For WooCommerce plugin before 1.4 for WordPress allows remote attackers to read arbitrary files via a full pathname in the requrl parameter.

    Source:Kuroi'SH
    Published:24 Jun 2015
    1.5
    Low

    CVE-2015-4878

    Last Modified: 23 Nov 2015

    Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.5.0, 8.5.1, and 8.5.2 allows local users to affect availability via unknown vectors related to Outside In Filters, a different vulnerability than CVE-2015-4877.

    Source:Francis Provencher
    Published:21 Oct 2015
    1.5
    Low

    CVE-2015-4877

    Last Modified: 23 Nov 2015

    Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.5.0, 8.5.1, and 8.5.2 allows local users to affect availability via unknown vectors related to Outside In Filters, a different vulnerability than CVE-2015-4878.

    Source:Francis Provencher
    Published:21 Oct 2015
    4
    Medium

    CVE-2015-4870

    Last Modified: 30 May 2016

    Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and 5.6.26 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Parser.

    Source:Osanda Malith Jayathissa
    Published:21 Oct 2015
    9.8
    Critical

    CVE-2015-4852

    Last Modified: 29 Apr 2018

    The WLS Security component in Oracle WebLogic Server 10.3.6.0, 12.1.2.0, 12.1.3.0, and 12.2.1.0 allows remote attackers to execute arbitrary commands via a crafted serialized Java object in T3 protocol traffic to TCP port 7001, related to oracle_common/modules/com.bea.core.apache.commons.collections.jar. NOTE: the scope of this CVE is limited to the WebLogic Server product.

    Source:SlidingWindow
    Published:18 Nov 2015
    10
    Critical

    CVE-2015-4843

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.

    Published:20 Oct 2015
    7
    High

    CVE-2015-4685

    Last Modified: 30 Jun 2015

    Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allows local users with access to the plcm account to gain privileges via a script in /var/polycom/cma/upgrade/scripts, related to a sudo misconfiguration.

    Source:SEC Consult
    Published:19 Sept 2017
    6.5
    Medium

    CVE-2015-4684

    Last Modified: 30 Jun 2015

    Multiple directory traversal vulnerabilities in Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allow (1) remote authenticated users to read arbitrary files via a .. (dot dot) in the Modifier parameter to PlcmRmWeb/FileDownload; or remote authenticated administrators to upload arbitrary files via the (2) Filename or (3) SE_FNAME parameter to PlcmRmWeb/FileUpload or to read and remove arbitrary files via the (4) filePathName parameter in an importSipUriReservations SOAP request to PlcmRmWeb/JUserManager.

    Source:SEC Consult
    Published:19 Sept 2017
    9.8
    Critical

    CVE-2015-4683

    Last Modified: 30 Jun 2015

    Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allows attackers to obtain sensitive information and potentially gain privileges by leveraging use of session identifiers as parameters with HTTP GET requests.

    Source:SEC Consult
    Published:19 Sept 2017
    6.5
    Medium

    CVE-2015-4682

    Last Modified: 30 Jun 2015

    Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allows remote authenticated users to obtain the installation path via an HTTP POST request to PlcmRmWeb/JConfigManager.

    Source:SEC Consult
    Published:19 Sept 2017
    7.8
    High

    CVE-2015-4681

    Last Modified: 30 Jun 2015

    Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allows local users to have unspecified impact via vectors related to weak passwords.

    Source:SEC Consult
    Published:19 Sept 2017
    6.8
    Medium

    CVE-2015-4677

    Last Modified: 10 Jun 2015

    Cross-site request forgery (CSRF) vulnerability in FiverrScript (aka Fiverr Script) 7.2 allows remote attackers to hijack the authentication of administrators for requests that create a new admin via a request to administrator/admins_create.php.

    Source:Mahmoud Gamal
    Published:19 Jun 2015
    7.8
    High

    CVE-2015-4669

    Last Modified: 27 Jul 2015

    The MySQL "root" user in Xsuite 2.x does not have a password set, which allows local users to access databases on the system.

    Source:modzero
    Published:25 Sept 2017
    6.1
    Medium

    CVE-2015-4668

    Last Modified: 27 Jul 2015

    Open redirect vulnerability in Xsuite 2.4.4.5 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirurl parameter.

    Source:modzero
    Published:25 Sept 2017
    9.8
    Critical

    CVE-2015-4667

    Last Modified: 27 Jul 2015

    Multiple hardcoded credentials in Xsuite 2.x.

    Source:modzero
    Published:25 Sept 2017
    5
    Medium

    CVE-2015-4666

    Last Modified: 27 Jul 2015

    Directory traversal vulnerability in opm/read_sessionlog.php in Xceedium Xsuite 2.4.4.5 and earlier allows remote attackers to read arbitrary files via a ....// (quadruple dot double slash) in the logFile parameter.

    Source:modzero
    Published:13 Aug 2015
    4.3
    Medium

    CVE-2015-4665

    Last Modified: 27 Jul 2015

    Cross-site scripting (XSS) vulnerability in ajax_cmd.php in Xceedium Xsuite 2.4.4.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the fileName parameter.

    Source:modzero
    Published:13 Aug 2015
    9.8
    Critical

    CVE-2015-4664

    Last Modified: 27 Jul 2015

    An improper input validation vulnerability in CA Privileged Access Manager 2.4.4.4 and earlier allows remote attackers to execute arbitrary commands.

    Source:modzero
    Published:18 Jun 2018
    6.8
    Medium

    CVE-2015-4659

    Last Modified: 12 Jun 2015

    Cross-site request forgery (CSRF) vulnerability in ClickHeat 1.14 and earlier allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via a config action to index.php.

    Source:David Shanahan
    Published:18 Jun 2015