Total
32783 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2015-3641 | 1 Bitcoin | 1 Bitcoin Core | 2024-11-21 | 7.5 High |
bitcoind and Bitcoin-Qt prior to 0.10.2 allow attackers to cause a denial of service (disabled functionality such as a client application crash) via an "Easy" attack. | ||||
CVE-2015-3159 | 1 Redhat | 2 Automatic Bug Reporting Tool, Enterprise Linux | 2024-11-21 | 7.8 High |
The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT) does not properly handle the process environment before invoking abrt-action-install-debuginfo, which allows local users to gain privileges. | ||||
CVE-2015-2929 | 1 Torproject | 1 Tor | 2024-11-21 | 7.5 High |
The Hidden Service (HS) client implementation in Tor before 0.2.4.27, 0.2.5.x before 0.2.5.12, and 0.2.6.x before 0.2.6.7 allows remote servers to cause a denial of service (assertion failure and application exit) via a malformed HS descriptor. | ||||
CVE-2015-2928 | 1 Torproject | 1 Tor | 2024-11-21 | 7.5 High |
The Hidden Service (HS) server implementation in Tor before 0.2.4.27, 0.2.5.x before 0.2.5.12, and 0.2.6.x before 0.2.6.7 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via unspecified vectors. | ||||
CVE-2015-2179 | 1 Xaviershay-dm-rails Porject | 1 Xaviershay-dm-rails | 2024-11-21 | 5.5 Medium |
The xaviershay-dm-rails gem 0.10.3.8 for Ruby allows local users to discover MySQL credentials by listing a process and its arguments. | ||||
CVE-2014-9908 | 1 Google | 1 Android | 2024-11-21 | 6.5 Medium |
A Denial of Service vulnerability exists in Google Android 4.4.4, 5.0.2, and 5.1.1, which allows malicious users to block Bluetooh access (Android Bug ID A-28672558). | ||||
CVE-2014-9530 | 1 Nwjs | 1 Nw | 2024-11-21 | 9.8 Critical |
A vulnerability exists in nw.js before 0.11.3 when calling nw methods from normal frames, which has an unspecified impact. | ||||
CVE-2014-6059 | 1 Vasyltech | 1 Advanced Access Manager | 2024-11-21 | 7.2 High |
WordPress Advanced Access Manager Plugin before 2.8.2 has an Arbitrary File Overwrite Vulnerability | ||||
CVE-2014-5329 | 1 Tripodworks | 6 Gigapod 2010, Gigapod 2010 Firmware, Gigapod 3 and 3 more | 2024-11-21 | 7.5 High |
GIGAPOD file servers (Appliance model and Software model) provide two web interfaces, 80/tcp and 443/tcp for user operation, and 8001/tcp for administrative operation. 8001/tcp is served by a version of Apache HTTP server containing a flaw in handling HTTP requests (CVE-2011-3192), which may lead to a denial-of-service (DoS) condition. | ||||
CVE-2014-5278 | 1 Docker | 1 Docker | 2024-11-21 | 5.3 Medium |
A vulnerability exists in Docker before 1.2 via container names, which may collide with and override container IDs. | ||||
CVE-2014-5013 | 1 Dompdf Project | 1 Dompdf | 2024-11-21 | 8.8 High |
DOMPDF before 0.6.2 allows remote code execution, a related issue to CVE-2014-2383. | ||||
CVE-2014-5012 | 1 Dompdf Project | 1 Dompdf | 2024-11-21 | 6.5 Medium |
DOMPDF before 0.6.2 allows denial of service. | ||||
CVE-2014-4968 | 1 Boatmob | 1 Boat Browser | 2024-11-21 | 8.8 High |
The WebView class and use of the WebView.addJavascriptInterface method in the Boat Browser application 8.0 and 8.0.1 for Android allow remote attackers to execute arbitrary code via a crafted web site, a related issue to CVE-2012-6636. | ||||
CVE-2014-3979 | 1 Bytemark | 1 Symbiosis | 2024-11-21 | 7.5 High |
Bytemark Symbiosis allows remote attackers to cause a denial of service via a crafted username, which triggers the firewall to blacklist the IP. | ||||
CVE-2014-3539 | 1 Rope Project | 1 Rope | 2024-11-21 | 9.8 Critical |
base/oi/doa.py in the Rope library in CPython (aka Python) allows remote attackers to execute arbitrary code by leveraging an unsafe call to pickle.load. | ||||
CVE-2014-125093 | 1 Getadmiral | 1 Ad Blocking Detector | 2024-11-21 | 4.3 Medium |
A vulnerability has been found in Ad Blocking Detector Plugin up to 1.2.1 on WordPress and classified as problematic. This vulnerability affects unknown code of the file ad-blocking-detector.php. The manipulation leads to information disclosure. The attack can be initiated remotely. Upgrading to version 1.2.2 is able to address this issue. The patch is identified as 3312b9cd79e5710d1e282fc9216a4e5ab31b3d94. It is recommended to upgrade the affected component. VDB-222610 is the identifier assigned to this vulnerability. | ||||
CVE-2013-7325 | 1 Debian | 2 Debian Linux, Devscripts | 2024-11-21 | 8.8 High |
An issue exists in uscan in devscripts before 2.13.19, which could let a remote malicious user execute arbitrary code via a crafted tarball. | ||||
CVE-2013-4108 | 1 Cryptocat Project | 1 Cryptocat | 2024-11-21 | 9.8 Critical |
Multiple unspecified vulnerabilities in Cryptocat Project Cryptocat 2.0.18 have unknown impact and attack vectors. | ||||
CVE-2013-3725 | 1 Invisioncommunity | 1 Invision Power Board | 2024-11-21 | 9.8 Critical |
Invision Power Board (IPB) through 3.x allows admin account takeover leading to code execution. | ||||
CVE-2013-2646 | 1 Tp-link | 2 Tl-wr1043nd, Tl-wr1043nd Firmware | 2024-11-21 | 7.5 High |
TP-LINK TL-WR1043ND V1_120405 devices contain an unspecified denial of service vulnerability. |