|
267621
|
6.1 |
MEDIUM
Network
|
emberjs
|
ember.js
|
Cross-site scripting (XSS) vulnerability in Ember.js 1.8.x through 1.10.x, 1.11.x before 1.11.4, 1.12.x before 1.12.2, 1.13.x before 1.13.12, 2.0.x before 2.0.3, 2.1.x before 2.1.2, and 2.2.x before …
|
CWE-79
Cross-site Scripting
|
CVE-2015-7565
|
2024-11-21 11:36 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267622
|
9.8 |
CRITICAL
Network
|
teampass
|
teampass
|
Multiple SQL injection vulnerabilities in TeamPass 2.1.24 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in an action_on_quick_icon action to item.query…
|
CWE-89
SQL Injection
|
CVE-2015-7564
|
2024-11-21 11:36 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267623
|
8.8 |
HIGH
Network
|
teampass
|
teampass
|
Cross-site request forgery (CSRF) vulnerability in TeamPass 2.1.24 and earlier allows remote attackers to hijack the authentication of an authenticated user.
|
CWE-352
Origin Validation Error
|
CVE-2015-7563
|
2024-11-21 11:36 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267624
|
6.1 |
MEDIUM
Network
|
teampass
|
teampass
|
Multiple cross-site scripting (XSS) vulnerabilities in TeamPass 2.1.24 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) label value of an item or (2) name of a ro…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7562
|
2024-11-21 11:36 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267625
|
9.8 |
CRITICAL
Network
|
amazon
|
fire_os
|
Stack-based buffer overflow in the havok_write function in drivers/staging/havok/havok.c in Amazon Fire OS before 2016-01-15 allows attackers to cause a denial of service (panic) or possibly have uns…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7292
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267626
|
6.1 |
MEDIUM
Network
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 6 before 2.85 and 7/8 before 2.30.30.30 has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2015-7275
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267627
|
8.8 |
HIGH
Network
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 6 before 2.80 allows remote attackers to execute arbitrary administrative HTTP commands.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7274
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267628
|
9.8 |
CRITICAL
Network
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 7/8 before 2.21.21.21 has XXE.
|
CWE-611
XXE
|
CVE-2015-7273
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267629
|
9.8 |
CRITICAL
Network
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 6 before 2.80 and 7/8 before 2.21.21.21 allows attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7272
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267630
|
9.8 |
CRITICAL
Network
|
dell
|
integrated_remote_access_controller_firmware
|
Dell Integrated Remote Access Controller (iDRAC) 7/8 before 2.21.21.21 has a format string issue in racadm getsystinfo.
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2015-7271
|
2024-11-21 11:36 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|