Show filters
224 Total Results
Displaying 151-160 of 224
Sort by:
Attacker Value
Unknown

CVE-2017-8933

Disclosure Date: May 15, 2017 (last updated November 08, 2023)
Libmenu-cache 1.0.2 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (menu unavailability).
0
Attacker Value
Unknown

CVE-2017-7443

Disclosure Date: April 05, 2017 (last updated November 26, 2024)
apt-cacher before 1.7.15 and apt-cacher-ng before 3.4 allow HTTP response splitting via encoded newline characters, related to lack of blocking for the %0[ad] regular expression.
0
Attacker Value
Unknown

CVE-2014-8731

Disclosure Date: March 23, 2017 (last updated November 26, 2024)
PHPMemcachedAdmin 1.2.2 and earlier allows remote attackers to execute arbitrary PHP code via vectors related "serialized data and the last part of the concatenated filename," which creates a file in webroot.
0
Attacker Value
Unknown

CVE-2016-8704

Disclosure Date: January 06, 2017 (last updated November 25, 2024)
An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multiple commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.
0
Attacker Value
Unknown

CVE-2016-8705

Disclosure Date: January 06, 2017 (last updated November 25, 2024)
Multiple integer overflows in process_bin_update function in Memcached, which is responsible for processing multiple commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.
0
Attacker Value
Unknown

CVE-2016-8706

Disclosure Date: January 06, 2017 (last updated November 25, 2024)
An integer overflow in process_bin_sasl_auth function in Memcached, which is responsible for authentication commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.
0
Attacker Value
Unknown

CVE-2015-5723

Disclosure Date: June 07, 2016 (last updated November 08, 2023)
Doctrine Annotations before 1.2.7, Cache before 1.3.2 and 1.4.x before 1.4.2, Common before 2.4.3 and 2.5.x before 2.5.1, ORM before 2.4.8 or 2.5.x before 2.5.1, MongoDB ODM before 1.0.2, and MongoDB ODM Bundle before 3.0.1 use world-writable permissions for cache directories, which allows local users to execute arbitrary PHP code with additional privileges by leveraging an application with the umask set to 0 and that executes cache entries as code.
0
Attacker Value
Unknown

CVE-2015-8852

Disclosure Date: April 25, 2016 (last updated November 25, 2024)
Varnish 3.x before 3.0.7, when used in certain stacked installations, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a header line terminated by a \r (carriage return) character in conjunction with multiple Content-Length headers in an HTTP request.
0
Attacker Value
Unknown

CVE-2015-0972

Disclosure Date: June 23, 2015 (last updated October 05, 2023)
Pearson ProctorCache before 2015.1.17 uses the same hardcoded password across different customers' installations, which allows remote attackers to modify test metadata or cause a denial of service (test disruption) by leveraging knowledge of this password.
0
Attacker Value
Unknown

CVE-2014-9414

Disclosure Date: December 24, 2014 (last updated October 05, 2023)
The W3 Total Cache plugin before 0.9.4.1 for WordPress does not properly handle empty nonces, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and hijack the authentication of administrators for requests that change the mobile site redirect URI via the mobile_groups[*][redirect] parameter and an empty _wpnonce parameter in the w3tc_mobile page to wp-admin/admin.php.
0