|
267441
|
- |
|
infinite_automation_systems
|
mango_automation
|
Unrestricted file upload vulnerability in Infinite Automation Mango Automation 2.5.x and 2.6.x before 2.6.0 build 430 allows remote authenticated users to execute arbitrary JSP code via vectors invol…
|
NVD-CWE-Other
|
CVE-2015-7904
|
2024-11-21 11:37 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267442
|
- |
|
infinite_automation_systems
|
mango_automation
|
SQL injection vulnerability in Infinite Automation Mango Automation 2.5.x and 2.6.x before 2.6.0 build 430 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2015-7903
|
2024-11-21 11:37 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267443
|
- |
|
infinite_automation_systems
|
mango_automation
|
Infinite Automation Mango Automation 2.5.x and 2.6.x before 2.6.0 build 430 provides different error messages for failed login attempts in unspecified circumstances, which allows remote attackers to …
|
CWE-200
Information Exposure
|
CVE-2015-7902
|
2024-11-21 11:37 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267444
|
- |
|
infinite_automation_systems
|
mango_automation
|
Infinite Automation Mango Automation 2.5.x and 2.6.x through 2.6.0 build 430 allows remote authenticated users to execute arbitrary OS commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2015-7901
|
2024-11-21 11:37 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267445
|
- |
|
infinite_automation_systems
|
mango_automation
|
Infinite Automation Mango Automation 2.5.x and 2.6.x before 2.6.0 build 430 allows remote attackers to obtain sensitive debugging information by entering a crafted URL to trigger an exception, and th…
|
CWE-200
Information Exposure
|
CVE-2015-7900
|
2024-11-21 11:37 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267446
|
- |
|
phpmyadmin
|
phpmyadmin
|
The redirection feature in url.php in phpMyAdmin 4.4.x before 4.4.15.1 and 4.5.x before 4.5.1 allows remote attackers to spoof content via the url parameter.
|
CWE-254
7PK - Security Features
|
CVE-2015-7873
|
2024-11-21 11:37 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267447
|
- |
|
siemens
|
ruggedcom_rugged_operating_system
|
Siemens RUGGEDCOM ROS before 4.2.1 allows remote attackers to obtain sensitive information by sniffing the network for VLAN data within the padding section of an Ethernet frame.
|
CWE-200
Information Exposure
|
CVE-2015-7836
|
2024-11-21 11:37 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267448
|
- |
|
sap
|
hana
|
The index server (hdbindexserver) in SAP HANA 1.00.095 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via an HTTP request, aka SAP Security Note 21…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7986
|
2024-11-21 11:37 |
2015-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267449
|
- |
|
canonical gnome opensuse
|
ubuntu_linux gdk-pixbuf opensuse
|
Integer overflow in the pixops_scale_nearest function in pixops/pixops.c in gdk-pixbuf before 2.32.1 allows remote attackers to cause a denial of service (application crash) and possibly execute arbi…
|
CWE-189
Numeric Errors
|
CVE-2015-7674
|
2024-11-21 11:37 |
2015-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267450
|
- |
|
opensuse gnome
|
opensuse gdk-pixbuf
|
io-tga.c in gdk-pixbuf before 2.32.0 uses heap memory after its allocation failed, which allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) and po…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7673
|
2024-11-21 11:37 |
2015-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|