|
273221
|
- |
|
airdroid
|
airdroid
|
The SAND STUDIO AirDroid application 1.1.0 and earlier for Android mishandles implicit intents, which allows attackers to obtain sensitive information via a crafted application.
|
CWE-200
Information Exposure
|
CVE-2015-5661
|
2024-11-21 11:33 |
2015-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273222
|
- |
|
avast
|
avast_antivirus
|
Directory traversal vulnerability in Avast before 150918-0 allows remote attackers to delete or write to arbitrary files via a crafted entry in a ZIP archive.
|
CWE-22
Path Traversal
|
CVE-2015-5662
|
2024-11-21 11:33 |
2015-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273223
|
- |
|
hp
|
smart_profile_server_data_analytics_layer
|
Multiple cross-site scripting (XSS) vulnerabilities in HP Smart Profile Server Data Analytics Layer (SPS DAL) 2.3 before 2.3.5 allow remote attackers to inject arbitrary web script or HTML via unspec…
|
CWE-79
Cross-site Scripting
|
CVE-2015-5444
|
2024-11-21 11:33 |
2015-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273224
|
- |
|
veeam
|
veeam_backup_\&_replication
|
VeeamVixProxy in Veeam Backup & Replication (B&R) before 8.0 update 3 stores local administrator credentials in log files with world-readable permissions, which allows local users to obtain sensitive…
|
CWE-200
Information Exposure
|
CVE-2015-5742
|
2024-11-21 11:33 |
2015-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273225
|
- |
|
extplorer
|
extplorer
|
Cross-site request forgery (CSRF) vulnerability in eXtplorer before 2.1.8 allows remote attackers to hijack the authentication of arbitrary users for requests that execute PHP code.
|
CWE-352
Origin Validation Error
|
CVE-2015-5660
|
2024-11-21 11:33 |
2015-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273226
|
- |
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Co…
|
CWE-416
Use After Free
|
CVE-2015-5586
|
2024-11-21 11:33 |
2015-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273227
|
- |
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 o…
|
CWE-200
Information Exposure
|
CVE-2015-5583
|
2024-11-21 11:33 |
2015-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273228
|
- |
|
adobe
|
flash_player air air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and before 11.2.202.535 on Linux, Adobe AIR before 19.0.0.213, Adobe AIR SDK before 19.0.0.213, and Adobe AIR SDK &…
|
NVD-CWE-noinfo
|
CVE-2015-5569
|
2024-11-21 11:33 |
2015-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273229
|
- |
|
cybozu
|
garoon
|
The RSS Reader component in Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka CyVDB-866.
|
CWE-94
Code Injection
|
CVE-2015-5647
|
2024-11-21 11:33 |
2015-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273230
|
- |
|
cybozu
|
garoon
|
Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka CyVDB-863 and CyVDB-867.
|
CWE-94
Code Injection
|
CVE-2015-5646
|
2024-11-21 11:33 |
2015-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|