Show filters
511 Total Results
Displaying 51-60 of 511
Sort by:
Attacker Value
Unknown
CVE-2015-0408
Disclosure Date: January 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI.
0
Attacker Value
Unknown
CVE-2015-0407
Disclosure Date: January 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to Swing.
0
Attacker Value
Unknown
CVE-2015-0410
Disclosure Date: January 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in the Java SE, Java SE Embedded, JRockit component in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allows remote attackers to affect availability via unknown vectors related to Security.
0
Attacker Value
Unknown
CVE-2015-0400
Disclosure Date: January 21, 2015 (last updated October 05, 2023)
Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to Libraries.
0
Attacker Value
Unknown
CVE-2015-0221
Disclosure Date: January 16, 2015 (last updated October 05, 2023)
The django.views.static.serve view in Django before 1.4.18, 1.6.x before 1.6.10, and 1.7.x before 1.7.3 reads files an entire line at a time, which allows remote attackers to cause a denial of service (memory consumption) via a long line in a file.
0
Attacker Value
Unknown
CVE-2015-0220
Disclosure Date: January 16, 2015 (last updated October 05, 2023)
The django.util.http.is_safe_url function in Django before 1.4.18, 1.6.x before 1.6.10, and 1.7.x before 1.7.3 does not properly handle leading whitespaces, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted URL, related to redirect URLs, as demonstrated by a "\njavascript:" URL.
0
Attacker Value
Unknown
CVE-2015-0222
Disclosure Date: January 16, 2015 (last updated October 05, 2023)
ModelMultipleChoiceField in Django 1.6.x before 1.6.10 and 1.7.x before 1.7.3, when show_hidden_initial is set to True, allows remote attackers to cause a denial of service by submitting duplicate values, which triggers a large number of SQL queries.
0
Attacker Value
Unknown
CVE-2014-9471
Disclosure Date: January 16, 2015 (last updated October 05, 2023)
The parse_datetime function in GNU coreutils allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted date string, as demonstrated by the "--date=TZ="123"345" @1" string to the touch or date command.
0
Attacker Value
Unknown
CVE-2014-8150
Disclosure Date: January 15, 2015 (last updated October 05, 2023)
CRLF injection vulnerability in libcurl 6.0 through 7.x before 7.40.0, when using an HTTP proxy, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in a URL.
0
Attacker Value
Unknown
CVE-2014-8738
Disclosure Date: January 15, 2015 (last updated October 05, 2023)
The _bfd_slurp_extended_name_table function in bfd/archive.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (invalid write, segmentation fault, and crash) via a crafted extended name table in an archive.
0