12 results (0.012 seconds)

CVSS: 6.8EPSS: 0%CPEs: 1EXPL: 0

15 Feb 2017 — A remote denial of service vulnerability in HPE Version Control Repository Manager (VCRM) in all versions prior to 7.6 was found. Se ha encontrado una vulnerabilidad de denegación de servicio remoto en HPE Version Control Repository Manager (VCRM) en todas las versiones anteriores a la 7.6. Several potential security vulnerabilities have been identified in HPE Insight Control. The vulnerabilities could be exploited remotely resulting in remote denial of Service (DoS), cross-site request forgery (CSRF), remo... • http://www.securityfocus.com/bid/96395 •

CVSS: 8.0EPSS: 0%CPEs: 1EXPL: 0

16 Dec 2016 — A Cross-Site Request Forgery (CSRF) vulnerability in HPE Version Control Repository Manager (VCRM) was found. The problem impacts all versions prior to 7.6. Se ha encontrado una vulnerabilidad de Cross-Site Request Forgery (CSRF) en HPE Version Control Repository Manager (VCRM). El problema afecta a todas las versiones anteriores a la 7.6. Several potential security vulnerabilities have been identified in HPE Insight Control. • http://www.securityfocus.com/bid/94949 • CWE-352: Cross-Site Request Forgery (CSRF) •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

16 Dec 2016 — A remote malicious file upload vulnerability in HPE Version Control Repository Manager (VCRM) was found. The problem impacts all versions prior to 7.6. Se ha encontrado una vulnerabilidad de subida remota de archivos maliciosos en HPE Version Control Repository Manager (VCRM). El problema afecta a todas las versiones anteriores a la 7.6. Several potential security vulnerabilities have been identified in HPE Insight Control. • http://www.securityfocus.com/bid/94949 • CWE-434: Unrestricted Upload of File with Dangerous Type •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 0

16 Dec 2016 — A remote information disclosure in HPE Version Control Repository Manager (VCRM) was found. The problem impacts all versions prior to 7.6. Se ha encontrado una revelación de información remota en HPE Version Control Repository Manager (VCRM). El problema afecta a todas las versiones anteriores a la 7.6. Several potential security vulnerabilities have been identified in HPE Insight Control. • http://www.securityfocus.com/bid/94949 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 8.1EPSS: 0%CPEs: 1EXPL: 0

26 Aug 2015 — Buffer overflow in HP Version Control Repository Manager (VCRM) before 7.5.0 allows remote authenticated users to modify data or cause a denial of service via unspecified vectors. Desbordamiento de buffer en HP Version Control Repository Manager (VCRM) en versiones anteriores a 7.5.0, permite a usuarios remotos autenticados modificar datos o provocar una denegación de servicio a través de vectores no especificados. Potential security vulnerabilities have been identified with HP Version Control Repository Ma... • http://www.securitytracker.com/id/1033378 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

26 Aug 2015 — HP Version Control Repository Manager (VCRM) before 7.5.0 allows remote authenticated users to execute arbitrary code or cause a denial of service via unspecified vectors. Vulnerabilidad en HP Version Control Repository Manager (VCRM) en versiones anteriores a 7.5.0, permite a usuarios remotos autenticados ejecutar código arbitrario o provocar una denegación de servicio a través de vectores no especificados. Potential security vulnerabilities have been identified with HP Version Control Repository Manager (... • http://www.securitytracker.com/id/1033378 •

CVSS: 6.8EPSS: 0%CPEs: 1EXPL: 0

26 Aug 2015 — HP Version Control Repository Manager (VCRM) before 7.5.0 allows remote authenticated users to obtain sensitive information via unspecified vectors. Vulnerabilidad en HP Version Control Repository Manager (VCRM) en versiones anteriores a 7.5.0, permite a usuarios remotos autenticados obtener información sensible a través de vectores no especificados. Potential security vulnerabilities have been identified with HP Version Control Repository Manager (VCRM) on Windows and Linux. The vulnerabilities could be ex... • http://www.securitytracker.com/id/1033378 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 8.0EPSS: 0%CPEs: 1EXPL: 0

26 Aug 2015 — Cross-site request forgery (CSRF) vulnerability in HP Version Control Repository Manager (VCRM) before 7.5.0 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors. Vulnerabilidad de CSRF en HP Version Control Repository Manager (VCRM) en versiones anteriores a 7.5.0, permite a usuarios remotos autenticados secuestrar la autenticación de víctimas no especificadas a través de vectores desconocidos. Potential security vulnerabilities have been identified with... • http://www.securitytracker.com/id/1033378 • CWE-352: Cross-Site Request Forgery (CSRF) •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

26 Aug 2015 — HP Version Control Repository Manager (VCRM) before 7.5.0 allows remote authenticated users to gain privileges and obtain sensitive information via unspecified vectors. Vulnerabilidad en HP Version Control Repository Manager (VCRM) en versiones anteriores a 7.5.0, permite a usuarios remotos autenticados escalar privilegios y obtener información sensible a través de vectores no especificados. Potential security vulnerabilities have been identified with HP Version Control Repository Manager (VCRM) on Windows ... • http://www.securitytracker.com/id/1033378 • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 10.0EPSS: 42%CPEs: 22EXPL: 2

23 Jun 2015 — Heap-based buffer overflow in Adobe Flash Player before 13.0.0.296 and 14.x through 18.x before 18.0.0.194 on Windows and OS X and before 11.2.202.468 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in June 2015. Desbordamiento de buffer basado en memoria dinámica en Adobe Flash Player anterior a 13.0.0.296 y 14.x hasta 18.x anterior a 18.0.0.194 en Windows y OS X y anterior a 11.2.202.468 en Linux permite a atacantes remotos ejecutar código arbit... • https://packetstorm.news/files/id/132525 • CWE-787: Out-of-bounds Write •