|
269171
|
- |
|
basercms
|
basercms
|
SQL injection vulnerability in baserCMS before 3.0.8 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2015-5641
|
2024-11-21 11:33 |
2015-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269172
|
- |
|
basercms
|
basercms
|
baserCMS before 3.0.8 allows remote authenticated users to modify arbitrary user settings via a crafted request.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-5640
|
2024-11-21 11:33 |
2015-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269173
|
- |
|
anchorcms
|
anchor_cms
|
system/session/drivers/cookie.php in Anchor CMS 0.9.x allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via a crafted serialized object in a cookie.
|
CWE-94
Code Injection
|
CVE-2015-5687
|
2024-11-21 11:33 |
2015-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269174
|
- |
|
dotclear
|
dotclear
|
Cross-site scripting (XSS) vulnerability in Dotclear before 2.8.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2015-5651
|
2024-11-21 11:33 |
2015-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269175
|
- |
|
canarylabs
|
trendweb
|
Buffer overflow in Canary Labs Trend Web Server before 9.5.2 allows remote attackers to execute arbitrary code via a crafted TCP packet.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-5653
|
2024-11-21 11:33 |
2015-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269176
|
- |
|
hp
|
integrated_lights-out_3_firmware integrated_lights-out_4_firmware
|
Unspecified vulnerability in HP Integrated Lights-Out (iLO) firmware 3 before 1.85 and 4 before 2.22 allows remote authenticated users to cause a denial of service via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2015-5435
|
2024-11-21 11:33 |
2015-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269177
|
- |
|
tibco
|
managed_file_transfer_internet_server vault managed_file_transfer_command_center slingshot
|
TIBCO Managed File Transfer Internet Server before 7.2.5, Managed File Transfer Command Center before 7.2.5, Slingshot before 1.9.4, and Vault before 2.0.1 allow remote authenticated users to obtain …
|
CWE-200
Information Exposure
|
CVE-2015-5711
|
2024-11-21 11:33 |
2015-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269178
|
- |
|
hp
|
software_update
|
Unspecified vulnerability in HP Software Update before 5.005.002.002 allows local users to gain privileges via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2015-5442
|
2024-11-21 11:33 |
2015-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269179
|
- |
|
open-xchange_ox_guard
|
open-xchange_ox_guard
|
SQL injection vulnerability in the public key discovery API call in Open-Xchange OX Guard before 2.0.0-rev8 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2015-5703
|
2024-11-21 11:33 |
2015-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269180
|
- |
|
adobe google
|
air android flash_player air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.241 and 19.x before 19.0.0.185 on Windows and OS X and before 11.2.202.521 on Linux, Adobe AIR before 19.0.0.190, Adobe AIR SDK before 19.0.0.190, and Adobe AIR SDK &…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-5588
|
2024-11-21 11:33 |
2015-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|