disclosures

Vulnerability Disclosures

  • CVE-2015-2894 - Up.time Agent - Format string
  • CVE-2015-2895 - Up.time Agent - Buffer overflow
  • CVE-2015-2896 - Up.time Agent - Information exposure
  • CVE-2015-2910 - EventSentry - Directory Traversal
  • CVE-2015-2911 - EventSentry - Information Exposure
  • CVE-2015-8277 - Flexera
  • CVE-2016-1553 - ArcGIS buffer overflow
  • CVE-2016-1554 - ArgGIS code injection from scripting
  • CVE-2016-5061 - Aternity XSS
  • CVE-2016-5062 - Aternity RCE
  • CVE-2017-8952 - HPE SiteScope Authentication issue, Remote Arbitrary Code Execution (duplicate of ZDI-12-176 findings in new version)
  • CVE-2017-8949 - HPE SiteScope Cryptographic Issue, Local Disclosure of Sensitive Information
  • CVE-2017-8950 - HPE SiteScope Cryptographic Issue, Local Disclosure of Sensitive Information
  • CVE-2017-8951 - HPE SiteScope Local Bypass Security Restrictions