Show filters
249 Total Results
Displaying 211-220 of 249
Sort by:
Attacker Value
Unknown
CVE-2015-6496
Disclosure Date: August 24, 2015 (last updated October 05, 2023)
conntrackd in conntrack-tools 1.4.2 and earlier does not ensure that the optional kernel modules are loaded before using them, which allows remote attackers to cause a denial of service (crash) via a (1) DCCP, (2) SCTP, or (3) ICMPv6 packet.
0
Attacker Value
Unknown
CVE-2014-8270
Disclosure Date: December 12, 2014 (last updated October 05, 2023)
BMC Track-It! 11.3 allows remote attackers to gain privileges and execute arbitrary code by creating an account whose name matches that of a local system account, then performing a password reset.
0
Attacker Value
Unknown
CVE-2014-4881
Disclosure Date: October 16, 2014 (last updated October 05, 2023)
The PartyTrack library for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-4872
Disclosure Date: October 10, 2014 (last updated October 05, 2023)
BMC Track-It! 11.3.0.355 does not require authentication on TCP port 9010, which allows remote attackers to upload arbitrary files, execute arbitrary code, or obtain sensitive credential and configuration information via a .NET Remoting request to (1) FileStorageService or (2) ConfigurationService.
0
Attacker Value
Unknown
CVE-2014-4873
Disclosure Date: October 10, 2014 (last updated October 05, 2023)
SQL injection vulnerability in TrackItWeb/Grid/GetData in BMC Track-It! 11.3.0.355 allows remote authenticated users to execute arbitrary SQL commands via crafted POST data.
0
Attacker Value
Unknown
CVE-2014-4874
Disclosure Date: October 10, 2014 (last updated October 05, 2023)
BMC Track-It! 11.3.0.355 allows remote authenticated users to read arbitrary files by visiting the TrackItWeb/Attachment page.
0
Attacker Value
Unknown
CVE-2014-5982
Disclosure Date: September 22, 2014 (last updated October 05, 2023)
The RunKeeper - GPS Track Run Walk (aka com.fitnesskeeper.runkeeper.pro) application 4.7 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2012-0700
Disclosure Date: January 31, 2013 (last updated October 05, 2023)
The client in InfoSphere FastTrack 8.1 through 8.7 in IBM InfoSphere Information Server 8.1, 8.5 before FP3, and 8.7 does not properly store credentials, which allows local users to bypass intended access restrictions via unspecified vectors.
0
Attacker Value
Unknown
CVE-2010-5252
Disclosure Date: September 07, 2012 (last updated October 05, 2023)
Untrusted search path vulnerability in HTTrack 3.43-9 allows local users to gain privileges via a Trojan horse httrack-plugin.dll file in the current working directory, as demonstrated by a directory that contains a .whtt file. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2012-2562
Disclosure Date: May 22, 2012 (last updated October 04, 2023)
The Xelex MobileTrack application 2.3.7 and earlier for Android does not verify the origin of SMS commands, which allows remote attackers to execute a (1) LOCATE, (2) TRACK, (3) UPDATECFG, (4) UPDATEACCT, (5) STAT, (6) TERM, or (7) WIPE command via an SMS message.
0