- EPSS 0.69%
- Veröffentlicht 21.01.2016 03:00:51
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL 5.6.27 and earlier and 5.7.9 allows remote authenticated users to affect availability via vectors related to DML, a different vulnerability than CVE-2016-0504.
CVE-2016-0502
- EPSS 0.56%
- Veröffentlicht 21.01.2016 03:00:50
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL 5.5.31 and earlier and 5.6.11 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.
CVE-2016-1494
- EPSS 5.09%
- Veröffentlicht 13.01.2016 15:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The verify function in the RSA package for Python (Python-RSA) before 3.3 allows attackers to spoof signatures with a small public exponent via crafted signature padding, aka a BERserk attack.
CVE-2015-7575
- EPSS 2.01%
- Veröffentlicht 09.01.2016 02:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Mozilla Network Security Services (NSS) before 3.20.2, as used in Mozilla Firefox before 43.0.2 and Firefox ESR 38.x before 38.5.2, does not reject MD5 signatures in Server Key Exchange messages in TLS 1.2 Handshake Protocol traffic, which makes it e...
CVE-2015-8547
- EPSS 2.36%
- Veröffentlicht 08.01.2016 19:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
The CoreUserInputHandler::doMode function in core/coreuserinputhandler.cpp in Quassel 0.10.0 allows remote attackers to cause a denial of service (application crash) via the "/op *" command in a query.
CVE-2015-7758
- EPSS 0.05%
- Veröffentlicht 08.01.2016 19:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
Gummi 0.6.5 allows local users to write to arbitrary files via a symlink attack on a temporary dot file that uses the name of an existing file and a (1) .aux, (2) .log, (3) .out, (4) .pdf, or (5) .toc extension for the file name, as demonstrated by ....
CVE-2015-8651
- EPSS 89.78%
- Veröffentlicht 28.12.2015 23:59:19
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0....
- EPSS 0.74%
- Veröffentlicht 16.12.2015 11:59:21
- Zuletzt bearbeitet 12.04.2025 10:46:40
The WebExtension APIs in Mozilla Firefox before 43.0 allow remote attackers to gain privileges, and possibly obtain sensitive information or conduct cross-site scripting (XSS) attacks, via a crafted web site.
CVE-2015-7222
- EPSS 3.35%
- Veröffentlicht 16.12.2015 11:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer underflow in the Metadata::setData function in MetaData.cpp in libstagefright in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect memory all...
- EPSS 1.48%
- Veröffentlicht 16.12.2015 11:59:19
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in the nsDeque::GrowCapacity function in xpcom/glue/nsDeque.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact by triggering a deque size change.