|
279261
|
- |
|
wireshark oracle opensuse debian mageia
|
wireshark solaris linux opensuse debian_linux mageia
|
Off-by-one error in the pcapng_read function in wiretap/pcapng.c in the pcapng file parser in Wireshark 1.10.x before 1.10.13 and 1.12.x before 1.12.4 allows remote attackers to cause a denial of ser…
|
CWE-189
Numeric Errors
|
CVE-2015-2189
|
2024-11-21 11:26 |
2015-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279262
|
- |
|
wireshark mageia opensuse debian oracle
|
wireshark mageia opensuse debian_linux solaris linux
|
epan/dissectors/packet-wcp.c in the WCP dissector in Wireshark 1.10.x before 1.10.13 and 1.12.x before 1.12.4 does not properly initialize a data structure, which allows remote attackers to cause a d…
|
CWE-19
Data Processing Errors
|
CVE-2015-2188
|
2024-11-21 11:26 |
2015-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279263
|
- |
|
opensuse wireshark
|
opensuse wireshark
|
The dissect_atn_cpdlc_heur function in asn1/atn-cpdlc/packet-atn-cpdlc-template.c in the ATN-CPDLC dissector in Wireshark 1.12.x before 1.12.4 does not properly follow the TRY/ENDTRY code requirement…
|
CWE-20
Improper Input Validation
|
CVE-2015-2187
|
2024-11-21 11:26 |
2015-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279264
|
- |
|
siemens
|
simatic_s7-300_cpu_firmware simatic_s7-300_cpu
|
Siemens SIMATIC S7-300 CPU devices allow remote attackers to cause a denial of service (defect-mode transition) via crafted packets on (1) TCP port 102 or (2) Profibus.
|
CWE-20
Improper Input Validation
|
CVE-2015-2177
|
2024-11-21 11:26 |
2015-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279265
|
- |
|
wonderplugin
|
audio_player
|
Multiple SQL injection vulnerabilities in the WonderPlugin Audio Player plugin before 2.1 for WordPress allow (1) remote authenticated users to execute arbitrary SQL commands via the item[id] paramet…
|
CWE-89
SQL Injection
|
CVE-2015-2199
|
2024-11-21 11:26 |
2015-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279266
|
- |
|
beehive_forum
|
beehive_forum
|
Multiple cross-site scripting (XSS) vulnerabilities in edit_prefs.php in Beehive Forum 1.4.4 allow remote attackers to inject arbitrary web script or HTML via the (1) homepage_url, (2) pic_url, or (3…
|
CWE-79
Cross-site Scripting
|
CVE-2015-2198
|
2024-11-21 11:26 |
2015-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279267
|
- |
|
entity_api_project
|
entity_api
|
Cross-site scripting (XSS) vulnerability in the Entity API module before 7.x-1.6 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a field label in the Token API.
|
CWE-79
Cross-site Scripting
|
CVE-2015-2197
|
2024-11-21 11:26 |
2015-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279268
|
- |
|
web-dorado
|
spider_calendar
|
SQL injection vulnerability in Spider Event Calendar 1.4.9 for WordPress allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a spiderbigcalendar_month action to wp-a…
|
CWE-89
SQL Injection
|
CVE-2015-2196
|
2024-11-21 11:26 |
2015-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279269
|
- |
|
wp_media_cleaner_project
|
wp_media_cleaner
|
Multiple cross-site scripting (XSS) vulnerabilities in the WP Media Cleaner plugin 2.2.6 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) view, (2) paged, or (3…
|
CWE-79
Cross-site Scripting
|
CVE-2015-2195
|
2024-11-21 11:26 |
2015-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279270
|
- |
|
digitalnature
|
fusion
|
Unrestricted file upload vulnerability in the fusion_options function in functions.php in the Fusion theme 3.1 for Wordpress allows remote authenticated users to execute arbitrary code by uploading a…
|
NVD-CWE-Other
|
CVE-2015-2194
|
2024-11-21 11:26 |
2015-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|