|
267971
|
- |
|
refbase
|
refbase
|
Multiple cross-site scripting (XSS) vulnerabilities in Web Reference Database (aka refbase) through 0.9.6 and bleeding-edge through 2015-04-28 allow remote attackers to inject arbitrary web script or…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7383
|
2024-11-21 11:36 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267972
|
- |
|
refbase
|
refbase
|
SQL injection vulnerability in install.php in Web Reference Database (aka refbase) through 0.9.6 allows remote attackers to execute arbitrary SQL commands via the defaultCharacterSet parameter, a dif…
|
CWE-89
SQL Injection
|
CVE-2015-7382
|
2024-11-21 11:36 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267973
|
- |
|
refbase
|
refbase
|
Multiple PHP remote file inclusion vulnerabilities in install.php in Web Reference Database (aka refbase) through 0.9.6 allow remote attackers to execute arbitrary PHP code via the (1) pathToMYSQL or…
|
CWE-94
Code Injection
|
CVE-2015-7381
|
2024-11-21 11:36 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267974
|
- |
|
indusoft
|
web_studio
|
Schneider Electric InduSoft Web Studio before 8.0 allows remote attackers to execute arbitrary code or cause a denial of service (unhandled runtime exception and application crash) via a crafted Indu…
|
CWE-20
Improper Input Validation
|
CVE-2015-7375
|
2024-11-21 11:36 |
2015-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267975
|
- |
|
indusoft
|
web_studio
|
The Remote Agent component in Schneider Electric InduSoft Web Studio before 8.0 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-2649.
|
CWE-20
Improper Input Validation
|
CVE-2015-7374
|
2024-11-21 11:36 |
2015-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267976
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox before 41.0 does not properly restrict the availability of High Resolution Time API times, which allows remote attackers to track last-level cache access, and consequently obtain sens…
|
CWE-200
Information Exposure
|
CVE-2015-7327
|
2024-11-21 11:36 |
2015-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267977
|
- |
|
mozilla
|
firefox
|
The ReadbackResultWriterD3D11::Run function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 misinterprets the return value of a function call, which might allow remote attackers to ca…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7180
|
2024-11-21 11:36 |
2015-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267978
|
- |
|
mozilla
|
firefox
|
The VertexBufferInterface::reserveVertexSpace function in libGLES in ANGLE, as used in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 on Windows, incorrectly allocates memory for shader…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7179
|
2024-11-21 11:36 |
2015-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267979
|
- |
|
mozilla
|
firefox
|
The ProgramBinary::linkAttributes function in libGLES in ANGLE, as used in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 on Windows, mishandles shader access, which allows remote attac…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7178
|
2024-11-21 11:36 |
2015-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267980
|
- |
|
mozilla
|
firefox
|
The InitTextures function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possib…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7177
|
2024-11-21 11:36 |
2015-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|