CVE-2015-1177
Cross-site scripting (XSS) vulnerability in Exponent CMS 2.3.2.
Source: CVE-2015-1177
CVE-2017-8380
Buffer overflow in the "megasas_mmio_write" function in Qemu 2.9.0 allows remote attackers to have unspecified impact via unknown vectors.
Source: CVE-2017-8380
CVE-2016-7030
FreeIPA uses a default password policy that locks an account after 5 unsuccessful authentication attempts, which allows remote attackers to cause a denial of service by locking out the account in which system services run on.
Source: CVE-2016-7030
CVE-2016-0634
The expansion of ‘h’ in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in ‘hostname’ of a machine.
Source: CVE-2016-0634
CVE-2015-1445
HTTP header injection in the httpd package in fli4l before 3.10.1 and 4.0 before 2015-01-30.
Source: CVE-2015-1445
CVE-2015-0974
Untrusted search path vulnerability in ZTE Datacard MF19 0V1.0.0B04 allows local users to gain privilege by modifying the ‘Ucell Internet’ directory to reference a malicious mms_dll_r.dll or mediaplayerdll.dll.
Source: CVE-2015-0974
CVE-2015-0928
libhtp 0.5.15 allows remote attackers to cause a denial of service (NULL pointer dereference).
Source: CVE-2015-0928
CVE-2015-2046
Cross-site scripting (XSS) vulnerability in MantisBT 1.2.13 and later before 1.2.20.
Source: CVE-2015-2046
CVE-2015-3976
Cross-site scripting (XSS) vulnerability in GE Multilink ML810/3000/3100 series switch 5.2.0 and earlier, and GE Multilink ML800/1200/1600/2400 4.2.1 and earlier.
Source: CVE-2015-3976