|
268521
|
9.8 |
CRITICAL
Network
|
yokogawa
|
centum_cs_1000_firmware centum_cs_3000_firmware centum_cs_3000_entry_firmware centum_vp_firmware centum_vp_entry_firmware prosafe-rs_firmware exapilot exaquantum\/batch exaqua…
|
Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 and earlier, CENTUM CS 3000 Entry R3.09.50 and earlier, CENTUM VP R5.04.20 and earlier, CENTUM VP …
|
CWE-787
Out-of-bounds Write
|
CVE-2015-5628
|
2024-11-21 11:33 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268522
|
9.8 |
CRITICAL
Network
|
yokogawa
|
centum_cs_1000_firmware centum_cs_3000_firmware centum_cs_3000_entry_firmware centum_vp_firmware centum_vp_entry_firmware prosafe-rs_firmware exapilot exaquantum\/batch exaqua…
|
Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 and earlier, CENTUM CS 3000 Entry R3.09.50 and earlier, CENTUM VP R5.04.20 and earlier, CENTUM VP …
|
CWE-787
Out-of-bounds Write
|
CVE-2015-5627
|
2024-11-21 11:33 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268523
|
9.8 |
CRITICAL
Network
|
yokogawa
|
centum_cs_1000_firmware centum_cs_3000_firmware centum_cs_3000_entry_firmware centum_vp_firmware centum_vp_entry_firmware prosafe-rs_firmware exapilot exaquantum\/batch exaqua…
|
Stack-based buffer overflow in Yokogawa CENTUM CS 1000 R3.08.70 and earlier, CENTUM CS 3000 R3.09.50 and earlier, CENTUM CS 3000 Entry R3.09.50 and earlier, CENTUM VP R5.04.20 and earlier, CENTUM VP …
|
CWE-787
Out-of-bounds Write
|
CVE-2015-5626
|
2024-11-21 11:33 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268524
|
8.8 |
HIGH
Network
|
private_only_project
|
private_only
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the Private Only plugin 3.5.1 for WordPress allow remote attackers to hijack the authentication of administrators for requests that (1) a…
|
CWE-352
Origin Validation Error
|
CVE-2015-5483
|
2024-11-21 11:33 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268525
|
6.5 |
MEDIUM
Network
|
qemu fedoraproject arista
|
qemu fedora eos
|
Buffer overflow in the send_control_msg function in hw/char/virtio-serial-bus.c in QEMU before 2.4.0 allows guest users to cause a denial of service (QEMU process crash) via a crafted virtio control …
|
CWE-120
Classic Buffer Overflow
|
CVE-2015-5745
|
2024-11-21 11:33 |
2020-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268526
|
5.4 |
MEDIUM
Network
|
plot
|
plotly
|
Cross-site scripting (XSS) vulnerability in the Plotly plugin before 1.0.3 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via a post.
|
CWE-79
Cross-site Scripting
|
CVE-2015-5484
|
2024-11-21 11:33 |
2020-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268527
|
7.8 |
HIGH
Local
|
sis
|
xgi_vga_display_manager
|
Silicon Integrated Systems XGI WindowsXP Display Manager (aka XGI VGA Driver Manager and VGA Display Manager) 6.14.10.1090 allows local users to gain privileges via a crafted 0x96002404 IOCTL call.
|
CWE-269
Improper Privilege Management
|
CVE-2015-5466
|
2024-11-21 11:33 |
2020-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268528
|
6.5 |
MEDIUM
Network
|
zenphoto
|
zenphoto
|
Cross-site request forgery (CSRF) vulnerability in admin.php in Zenphoto before 1.4.9 allows remote attackers to hijack the authentication of admin users for requests that may cause a denial of servi…
|
CWE-352
Origin Validation Error
|
CVE-2015-5595
|
2024-11-21 11:33 |
2020-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268529
|
6.1 |
MEDIUM
Network
|
zenphoto
|
zenphoto
|
The sanitize_string function in Zenphoto before 1.4.9 does not properly sanitize HTML tags, which allows remote attackers to perform a cross-site scripting (XSS) attack by wrapping a payload in "<<sc…
|
CWE-79
Cross-site Scripting
|
CVE-2015-5593
|
2024-11-21 11:33 |
2020-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268530
|
6.1 |
MEDIUM
Network
|
zenphoto
|
zenphoto
|
Incomplete blacklist in sanitize_string in Zenphoto before 1.4.9 allows remote attackers to conduct cross-site scripting (XSS) attacks.
|
CWE-79
Cross-site Scripting
|
CVE-2015-5592
|
2024-11-21 11:33 |
2020-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|