|
267401
|
9.1 |
CRITICAL
Network
|
schneider-electric
|
proface_gp-pro_ex_pfxexedls proface_gp-pro_ex_pfxexedv proface_gp-pro_ex_ex-ed proface_gp-pro_ex_pfxexgrpls
|
The FTP server in Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4.05.000 has hardcoded credentials, which makes it easier for re…
|
CWE-255
Credentials Management
|
CVE-2015-7921
|
2024-11-21 11:37 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267402
|
6.3 |
MEDIUM
Network
|
basercms
|
basercms
|
baserCMS 3.0.2 through 3.0.8 allows remote authenticated users to execute arbitrary OS commands via unspecified vectors.
|
CWE-78
OS Command
|
CVE-2015-7769
|
2024-11-21 11:37 |
2016-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267403
|
6.1 |
MEDIUM
Network
|
cybozu
|
office
|
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than C…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7798
|
2024-11-21 11:37 |
2016-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267404
|
6.1 |
MEDIUM
Network
|
cybozu
|
office
|
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than C…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7797
|
2024-11-21 11:37 |
2016-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267405
|
6.1 |
MEDIUM
Network
|
cybozu
|
office
|
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than C…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7796
|
2024-11-21 11:37 |
2016-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267406
|
6.1 |
MEDIUM
Network
|
cybozu
|
office
|
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than C…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7795
|
2024-11-21 11:37 |
2016-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267407
|
7.5 |
HIGH
Network
|
rubyonrails
|
rails
|
actionpack/lib/action_dispatch/routing/route_set.rb in Action Pack in Ruby on Rails 4.x before 4.2.5.1 and 5.x before 5.0.0.beta1.1 allows remote attackers to cause a denial of service (superfluous c…
|
CWE-399
Resource Management Errors
|
CVE-2015-7581
|
2024-11-21 11:37 |
2016-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267408
|
6.1 |
MEDIUM
Network
|
rubyonrails
|
html_sanitizer
|
Cross-site scripting (XSS) vulnerability in lib/rails/html/scrubbers.rb in the rails-html-sanitizer gem before 1.0.3 for Ruby on Rails 4.2.x and 5.x allows remote attackers to inject arbitrary web sc…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7580
|
2024-11-21 11:37 |
2016-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267409
|
6.1 |
MEDIUM
Network
|
rubyonrails
|
html_sanitizer
|
Cross-site scripting (XSS) vulnerability in the rails-html-sanitizer gem 1.0.2 for Ruby on Rails 4.2.x and 5.x allows remote attackers to inject arbitrary web script or HTML via an HTML entity that i…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7579
|
2024-11-21 11:37 |
2016-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267410
|
6.1 |
MEDIUM
Network
|
rubyonrails
|
html_sanitizer
|
Cross-site scripting (XSS) vulnerability in the rails-html-sanitizer gem before 1.0.3 for Ruby on Rails 4.2.x and 5.x allows remote attackers to inject arbitrary web script or HTML via crafted tag at…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7578
|
2024-11-21 11:37 |
2016-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|