Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 54 066

Количество 54 066

redhat логотип

CVE-2015-5196

почти 11 лет назад

It was found that NTP's :config command could be used to set the pidfile and driftfile paths without any restrictions. A remote attacker could use this flaw to overwrite a file on the file system with a file containing the pid of the ntpd process (immediately) or the current estimated drift of the system clock (in hourly intervals).

CVSS2: 4
EPSS: Низкий
redhat логотип

CVE-2015-5195

почти 11 лет назад

ntp_openssl.m4 in ntpd in NTP before 4.2.7p112 allows remote attackers to cause a denial of service (segmentation fault) via a crafted statistics or filegen configuration command that is not enabled during compilation.

CVSS2: 4
EPSS: Низкий
redhat логотип

CVE-2015-5194

почти 11 лет назад

The log_config_command function in ntp_parser.y in ntpd in NTP before 4.2.7p42 allows remote attackers to cause a denial of service (ntpd crash) via crafted logconfig commands.

CVSS2: 4
EPSS: Низкий
redhat логотип

CVE-2015-5191

около 9 лет назад

VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

CVSS2: 3.6
EPSS: Низкий
redhat логотип

CVE-2015-5190

почти 11 лет назад

The pcsd web UI in PCS 0.9.139 and earlier allows remote authenticated users to execute arbitrary commands via "escape characters" in a URL.

CVSS2: 9.3
EPSS: Низкий
redhat логотип

CVE-2015-5189

почти 11 лет назад

Race condition in pcsd in PCS 0.9.139 and earlier uses a global variable to validate usernames, which allows remote authenticated users to gain privileges by sending a command that is checked for security after another user is authenticated.

CVSS2: 4.9
EPSS: Низкий
redhat логотип

CVE-2015-5188

почти 11 лет назад

Cross-site request forgery (CSRF) vulnerability in the Web Console (web-console) in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) before 2.0.0.CR9 allows remote attackers to hijack the authentication of administrators for requests that make arbitrary changes to an instance via vectors involving a file upload using a multipart/form-data submission.

CVSS2: 5.1
EPSS: Низкий
redhat логотип

CVE-2015-5187

около 11 лет назад

Candlepin allows remote attackers to obtain sensitive information by obtaining Java exception statements as a result of excessive web traffic.

CVSS2: 3.5
EPSS: Низкий
redhat логотип

CVE-2015-5186

около 11 лет назад

Audit before 2.4.4 in Linux does not sanitize escape characters in filenames.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2015-5185

почти 11 лет назад

The lookupProviders function in providerMgr.c in sblim-sfcb 1.3.4 and 1.3.18 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an empty className in a packet.

CVSS2: 2.7
EPSS: Низкий
redhat логотип

CVE-2015-5183

почти 11 лет назад

Console: HTTPOnly and Secure attributes not set on cookies in Red Hat AMQ.

EPSS: Низкий
redhat логотип

CVE-2015-5180

около 11 лет назад

res_query in libresolv in glibc before 2.25 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash).

CVSS2: 1.2
EPSS: Низкий
redhat логотип

CVE-2015-5179

около 11 лет назад

FreeIPA might display user data improperly via vectors involving non-printable characters.

CVSS2: 4
EPSS: Низкий
redhat логотип

CVE-2015-5178

почти 11 лет назад

The Management Console in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) does not send an X-Frame-Options HTTP header, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web page that contains a (1) FRAME or (2) IFRAME element.

CVSS2: 2.9
EPSS: Низкий
redhat логотип

CVE-2015-5177

около 11 лет назад

Double free vulnerability in the SLPDKnownDAAdd function in slpd/slpd_knownda.c in OpenSLP 1.2.1 allows remote attackers to cause a denial of service (crash) via a crafted package.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2015-5176

около 11 лет назад

The PortletRequestDispatcher in PortletBridge, as used in Red Hat JBoss Portal 6.2.0, does not properly enforce the security constraints of servlets, which allows remote attackers to gain access to resources via a request that asks to render a non-JSF resource.

CVSS2: 4.9
EPSS: Низкий
redhat логотип

CVE-2015-5174

больше 10 лет назад

Directory traversal vulnerability in RequestUtil.java in Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.65, and 8.x before 8.0.27 allows remote authenticated users to bypass intended SecurityManager restrictions and list a parent directory via a /.. (slash dot dot) in a pathname used by a web application in a getResource, getResourceAsStream, or getResourcePaths call, as demonstrated by the $CATALINA_BASE/webapps directory.

CVSS3: 4.3
EPSS: Средний
redhat логотип

CVE-2015-5169

почти 11 лет назад

Cross-site scripting (XSS) vulnerability in Apache Struts before 2.3.20.

CVSS2: 2.6
EPSS: Низкий
redhat логотип

CVE-2015-5166

около 11 лет назад

Use-after-free vulnerability in QEMU in Xen 4.5.x and earlier does not completely unplug emulated block devices, which allows local HVM guest users to gain privileges by unplugging a block device twice.

CVSS2: 2.9
EPSS: Низкий
redhat логотип

CVE-2015-5165

около 11 лет назад

The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory via unspecified vectors.

CVSS2: 3.3
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2015-5196

It was found that NTP's :config command could be used to set the pidfile and driftfile paths without any restrictions. A remote attacker could use this flaw to overwrite a file on the file system with a file containing the pid of the ntpd process (immediately) or the current estimated drift of the system clock (in hourly intervals).

CVSS2: 4
почти 11 лет назад
redhat логотип
CVE-2015-5195

ntp_openssl.m4 in ntpd in NTP before 4.2.7p112 allows remote attackers to cause a denial of service (segmentation fault) via a crafted statistics or filegen configuration command that is not enabled during compilation.

CVSS2: 4
7%
Низкий
почти 11 лет назад
redhat логотип
CVE-2015-5194

The log_config_command function in ntp_parser.y in ntpd in NTP before 4.2.7p42 allows remote attackers to cause a denial of service (ntpd crash) via crafted logconfig commands.

CVSS2: 4
6%
Низкий
почти 11 лет назад
redhat логотип
CVE-2015-5191

VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

CVSS2: 3.6
0%
Низкий
около 9 лет назад
redhat логотип
CVE-2015-5190

The pcsd web UI in PCS 0.9.139 and earlier allows remote authenticated users to execute arbitrary commands via "escape characters" in a URL.

CVSS2: 9.3
3%
Низкий
почти 11 лет назад
redhat логотип
CVE-2015-5189

Race condition in pcsd in PCS 0.9.139 and earlier uses a global variable to validate usernames, which allows remote authenticated users to gain privileges by sending a command that is checked for security after another user is authenticated.

CVSS2: 4.9
1%
Низкий
почти 11 лет назад
redhat логотип
CVE-2015-5188

Cross-site request forgery (CSRF) vulnerability in the Web Console (web-console) in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) before 2.0.0.CR9 allows remote attackers to hijack the authentication of administrators for requests that make arbitrary changes to an instance via vectors involving a file upload using a multipart/form-data submission.

CVSS2: 5.1
1%
Низкий
почти 11 лет назад
redhat логотип
CVE-2015-5187

Candlepin allows remote attackers to obtain sensitive information by obtaining Java exception statements as a result of excessive web traffic.

CVSS2: 3.5
2%
Низкий
около 11 лет назад
redhat логотип
CVE-2015-5186

Audit before 2.4.4 in Linux does not sanitize escape characters in filenames.

CVSS2: 4.3
3%
Низкий
около 11 лет назад
redhat логотип
CVE-2015-5185

The lookupProviders function in providerMgr.c in sblim-sfcb 1.3.4 and 1.3.18 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an empty className in a packet.

CVSS2: 2.7
3%
Низкий
почти 11 лет назад
redhat логотип
CVE-2015-5183

Console: HTTPOnly and Secure attributes not set on cookies in Red Hat AMQ.

2%
Низкий
почти 11 лет назад
redhat логотип
CVE-2015-5180

res_query in libresolv in glibc before 2.25 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash).

CVSS2: 1.2
6%
Низкий
около 11 лет назад
redhat логотип
CVE-2015-5179

FreeIPA might display user data improperly via vectors involving non-printable characters.

CVSS2: 4
1%
Низкий
около 11 лет назад
redhat логотип
CVE-2015-5178

The Management Console in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) does not send an X-Frame-Options HTTP header, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web page that contains a (1) FRAME or (2) IFRAME element.

CVSS2: 2.9
2%
Низкий
почти 11 лет назад
redhat логотип
CVE-2015-5177

Double free vulnerability in the SLPDKnownDAAdd function in slpd/slpd_knownda.c in OpenSLP 1.2.1 allows remote attackers to cause a denial of service (crash) via a crafted package.

CVSS2: 4.3
6%
Низкий
около 11 лет назад
redhat логотип
CVE-2015-5176

The PortletRequestDispatcher in PortletBridge, as used in Red Hat JBoss Portal 6.2.0, does not properly enforce the security constraints of servlets, which allows remote attackers to gain access to resources via a request that asks to render a non-JSF resource.

CVSS2: 4.9
2%
Низкий
около 11 лет назад
redhat логотип
CVE-2015-5174

Directory traversal vulnerability in RequestUtil.java in Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.65, and 8.x before 8.0.27 allows remote authenticated users to bypass intended SecurityManager restrictions and list a parent directory via a /.. (slash dot dot) in a pathname used by a web application in a getResource, getResourceAsStream, or getResourcePaths call, as demonstrated by the $CATALINA_BASE/webapps directory.

CVSS3: 4.3
13%
Средний
больше 10 лет назад
redhat логотип
CVE-2015-5169

Cross-site scripting (XSS) vulnerability in Apache Struts before 2.3.20.

CVSS2: 2.6
7%
Низкий
почти 11 лет назад
redhat логотип
CVE-2015-5166

Use-after-free vulnerability in QEMU in Xen 4.5.x and earlier does not completely unplug emulated block devices, which allows local HVM guest users to gain privileges by unplugging a block device twice.

CVSS2: 2.9
0%
Низкий
около 11 лет назад
redhat логотип
CVE-2015-5165

The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory via unspecified vectors.

CVSS2: 3.3
13%
Средний
около 11 лет назад

Уязвимостей на страницу