|
269681
|
- |
|
adobe
|
flash_player air air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Ad…
|
CWE-284
Improper Access Control
|
CVE-2015-5116
|
2024-11-21 11:32 |
2015-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269682
|
- |
|
google iojs nodejs
|
v8 io.js node.js
|
The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in Google V8, as used in Node.js before 0.12.6, io.js before 1.8.3 and 2.x before 2.3.3, and other products, does not verify that th…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-5380
|
2024-11-21 11:32 |
2015-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269683
|
- |
|
solarwinds
|
storage_manager
|
The AuthenticationFilter class in SolarWinds Storage Manager allows remote attackers to upload and execute arbitrary scripts via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2015-5371
|
2024-11-21 11:32 |
2015-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269684
|
- |
|
zurmo
|
zurmo_crm
|
Cross-site scripting (XSS) vulnerability in Zurmo CRM 3.0.2 allows remote authenticated users to inject arbitrary web script or HTML via the "What's going on?" profile field.
|
CWE-79
Cross-site Scripting
|
CVE-2015-5365
|
2024-11-21 11:32 |
2015-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269685
|
- |
|
get-simple
|
getsimple_cms
|
Cross-site scripting (XSS) vulnerability in admin/filebrowser.php in GetSimple CMS before 3.3.6 allows remote attackers to inject arbitrary web script or HTML via the func parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2015-5356
|
2024-11-21 11:32 |
2015-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269686
|
- |
|
get-simple
|
getsimple_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in GetSimple CMS before 3.3.6 allow remote attackers to inject arbitrary web script or HTML via the (1) post-content or (2) post-title parameter to…
|
CWE-79
Cross-site Scripting
|
CVE-2015-5355
|
2024-11-21 11:32 |
2015-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269687
|
- |
|
novius-os
|
novius_os
|
Open redirect vulnerability in Novius OS 5.0.1 (Elche) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect parameter to admin/nos/l…
|
CWE-601
Open Redirect
|
CVE-2015-5354
|
2024-11-21 11:32 |
2015-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269688
|
- |
|
novius-os
|
novius_os
|
Directory traversal vulnerability in Novius OS 5.0.1 (Elche) allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the tab parameter to admin/.
|
CWE-22
Path Traversal
|
CVE-2015-5353
|
2024-11-21 11:32 |
2015-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269689
|
- |
|
themepunch
|
slider_revolution
|
Cross-site scripting (XSS) vulnerability in the Slider Revolution (revslider) plugin 4.2.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the client_action parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2015-5151
|
2024-11-21 11:32 |
2015-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269690
|
- |
|
zohocorp
|
manageengine_supportcenter_plus
|
Multiple cross-site scripting (XSS) vulnerabilities in Zoho ManageEngine SupportCenter Plus 7.90 allow remote authenticated users to inject arbitrary web script or HTML via the (1) query parameter in…
|
CWE-79
Cross-site Scripting
|
CVE-2015-5150
|
2024-11-21 11:32 |
2015-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|