|
268441
|
8.1 |
HIGH
Network
|
microsoft
|
internet_explorer
|
The CAttrArray object implementation in Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (type confusion and memory corruption) …
|
NVD-CWE-Other
|
CVE-2015-6184
|
2024-11-21 11:34 |
2016-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268442
|
7.5 |
HIGH
Network
|
zyxel
|
gs1900-10hp_firmware
|
Cisco NX-OS 7.1(1)N1(1) on Nexus 5500, 5600, and 6000 devices does not properly validate PDUs in SNMP packets, which allows remote attackers to cause a denial of service (SNMP application restart) vi…
|
CWE-20
Improper Input Validation
|
CVE-2015-6260
|
2024-11-21 11:34 |
2016-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268443
|
7.5 |
HIGH
Network
|
qnap
|
sinage_station
|
QNAP Signage Station before 2.0.1 allows remote attackers to bypass authentication, and consequently upload files, via a spoofed HTTP request.
|
NVD-CWE-Other
|
CVE-2015-6036
|
2024-11-21 11:34 |
2016-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268444
|
8.8 |
HIGH
Network
|
qnap
|
signage_station
|
Unrestricted file upload vulnerability in QNAP Signage Station before 2.0.1 allows remote authenticated users to execute arbitrary code by uploading an executable file, and then accessing this file v…
|
NVD-CWE-Other
|
CVE-2015-6022
|
2024-11-21 11:34 |
2016-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268445
|
5.3 |
MEDIUM
Network
|
novell
|
zenworks_configuration_management
|
The ChangePassword RPC method in Novell ZENworks Configuration Management (ZCM) 11.3 and 11.4 allows remote attackers to conduct XPath injection attacks, and read arbitrary text files, via a malforme…
|
CWE-94
Code Injection
|
CVE-2015-5970
|
2024-11-21 11:34 |
2016-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268446
|
7.5 |
HIGH
Network
|
zyxel
|
gs1900-10hp_firmware
|
Cisco Nexus 9000 Application Centric Infrastructure (ACI) Mode switches with software before 11.0(1c) allow remote attackers to cause a denial of service (device reload) via an IPv4 ICMP packet with …
|
CWE-399
Resource Management Errors
|
CVE-2015-6398
|
2024-11-21 11:34 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268447
|
7.5 |
HIGH
Network
|
cisco
|
wide_area_application_services
|
cifs-ao in the CIFS optimization functionality on Cisco Wide Area Application Service (WAAS) and Virtual WAAS (vWAAS) devices 5.x before 5.3.5d and 5.4 and 5.5 before 5.5.3 allows remote attackers to…
|
CWE-399
Resource Management Errors
|
CVE-2015-6421
|
2024-11-21 11:34 |
2016-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268448
|
9.8 |
CRITICAL
Network
|
cisco sun
|
rv_series_router_firmware opensolaris
|
SQL injection vulnerability in the web-based management interface on Cisco RV220W devices allows remote attackers to execute arbitrary SQL commands via a crafted header in an HTTP request, aka Bug ID…
|
CWE-89
SQL Injection
|
CVE-2015-6319
|
2024-11-21 11:34 |
2016-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268449
|
6.1 |
MEDIUM
Network
|
cisco
|
application_policy_infrastructure_controller_enterprise_module
|
Cross-site scripting (XSS) vulnerability in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.0.10 allows remote attackers to inject arbitrary web script or HTML via a …
|
CWE-79
Cross-site Scripting
|
CVE-2015-6337
|
2024-11-21 11:34 |
2016-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268450
|
6.5 |
MEDIUM
Network
|
cisco
|
identity_services_engine_software
|
Cisco Identity Services Engine (ISE) before 2.0 allows remote authenticated users to bypass intended web-resource access restrictions via a direct request, aka Bug ID CSCuu45926.
|
CWE-284
Improper Access Control
|
CVE-2015-6317
|
2024-11-21 11:34 |
2016-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|