CVE-2014-5209
- EPSS 0.53%
- Veröffentlicht 08.01.2020 01:15:09
- Zuletzt bearbeitet 21.11.2024 02:11:37
An Information Disclosure vulnerability exists in NTP 4.2.7p25 private (mode 6/7) messages via a GET_RESTRICT control message, which could let a malicious user obtain sensitive information.
- EPSS 76.24%
- Veröffentlicht 07.12.2015 20:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The iControl API in F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.0 before 11.5.3 HF2 and 11.6.0 before 11.6.0 HF6, BIG-IP AAM 11.4.0 before 11.5.3 HF2 and 11.6.0 before 11.6.0 HF6, BIG-IP Edge Gateway, WebAccelerator, and WO...
- EPSS 0.98%
- Veröffentlicht 06.11.2015 18:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The datastor kernel module in F5 BIG-IP Analytics, APM, ASM, Link Controller, and LTM 11.1.0 before 12.0.0, BIG-IP AAM 11.4.0 before 12.0.0, BIG-IP AFM, PEM 11.3.0 before 12.0.0, BIG-IP Edge Gateway, WebAccelerator, and WOM 11.1.0 through 11.3.0, BIG...
CVE-2015-5058
- EPSS 0.82%
- Veröffentlicht 24.08.2015 14:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Memory leak in the virtual server component in F5 Big-IP LTM, AAM, AFM, Analytics, APM, ASM, GTM, Link Controller, and PEM 11.5.x before 11.5.1 HF10, 11.5.3 before HF1, and 11.6.0 before HF5, BIG-IQ Cloud, Device, and Security 4.4.0 through 4.5.0, an...
CVE-2015-4637
- EPSS 0.38%
- Veröffentlicht 16.07.2015 14:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The REST API in F5 BIG-IQ Cloud, Device, and Security 4.4.0 and 4.5.0 before HF2 and ADC 4.5.0 before HF2, when configured for LDAP remote authentication and the LDAP server allows anonymous BIND operations, allows remote attackers to obtain an authe...
CVE-2015-4047
- EPSS 3.59%
- Veröffentlicht 29.05.2015 15:59:19
- Zuletzt bearbeitet 12.04.2025 10:46:40
racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) via a series of crafted UDP requests.
CVE-2014-0101
- EPSS 3.09%
- Veröffentlicht 11.03.2014 13:01:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of...