Show filters
769 Total Results
Displaying 261-270 of 769
Sort by:
Attacker Value
Unknown

CVE-2015-4826

Disclosure Date: October 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Types.
0
Attacker Value
Unknown

CVE-2015-4815

Disclosure Date: October 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect availability via vectors related to Server : DDL.
0
Attacker Value
Unknown

CVE-2015-4802

Disclosure Date: October 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Partition, a different vulnerability than CVE-2015-4792.
0
Attacker Value
Unknown

CVE-2015-4830

Disclosure Date: October 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect integrity via unknown vectors related to Server : Security : Privileges.
0
Attacker Value
Unknown

CVE-2015-5707

Disclosure Date: October 19, 2015 (last updated October 05, 2023)
Integer overflow in the sg_start_req function in drivers/scsi/sg.c in the Linux kernel 2.6.x through 4.x before 4.1 allows local users to cause a denial of service or possibly have unspecified other impact via a large iov_count value in a write request.
0
Attacker Value
Unknown

CVE-2015-5234

Disclosure Date: October 09, 2015 (last updated October 05, 2023)
IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly sanitize applet URLs, which allows remote attackers to inject applets into the .appletTrustSettings configuration file and bypass user approval to execute the applet via a crafted web page, possibly related to line breaks.
0
Attacker Value
Unknown

CVE-2015-5235

Disclosure Date: October 09, 2015 (last updated October 05, 2023)
IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly determine the origin of unsigned applets, which allows remote attackers to bypass the approval process or trick users into approving applet execution via a crafted web page.
0
Attacker Value
Unknown

CVE-2015-5154

Disclosure Date: August 12, 2015 (last updated October 05, 2023)
Heap-based buffer overflow in the IDE subsystem in QEMU, as used in Xen 4.5.x and earlier, when the container has a CDROM drive enabled, allows local guest users to execute arbitrary code on the host via unspecified ATAPI commands.
0
Attacker Value
Unknown

CVE-2015-1274

Disclosure Date: July 23, 2015 (last updated October 05, 2023)
Google Chrome before 44.0.2403.89 does not ensure that the auto-open list omits all dangerous file types, which makes it easier for remote attackers to execute arbitrary code by providing a crafted file and leveraging a user's previous "Always open files of this type" choice, related to download_commands.cc and download_prefs.cc.
0
Attacker Value
Unknown

CVE-2015-1288

Disclosure Date: July 23, 2015 (last updated October 05, 2023)
The Spellcheck API implementation in Google Chrome before 44.0.2403.89 does not use an HTTPS session for downloading a Hunspell dictionary, which allows man-in-the-middle attackers to deliver incorrect spelling suggestions or possibly have unspecified other impact via a crafted file, a related issue to CVE-2015-1263.
0