|
276261
|
- |
|
cisco
|
unity_connection
|
SQL injection vulnerability in the administrative web interface in Cisco Unified Communications Manager 11.0(0.98000.225) allows remote authenticated users to execute arbitrary SQL commands via unspe…
|
CWE-89
SQL Injection
|
CVE-2015-0715
|
2024-11-21 11:23 |
2015-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276262
|
- |
|
cisco
|
unified_computing_system_central_software
|
Cisco UCS Central Software before 1.3(1a) allows remote attackers to execute arbitrary commands via a crafted HTTP request, aka Bug ID CSCut46961.
|
CWE-20
Improper Input Validation
|
CVE-2015-0701
|
2024-11-21 11:23 |
2015-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276263
|
- |
|
emc
|
autostart
|
ftagent.exe in EMC AutoStart 5.4.x and 5.5.x before 5.5.0.508 HF4 allows remote attackers to execute arbitrary commands via crafted packets.
|
CWE-77
Command Injection
|
CVE-2015-0538
|
2024-11-21 11:23 |
2015-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276264
|
- |
|
emc
|
sourceone_email_management
|
EMC SourceOne Email Management before 7.2 does not have a lockout mechanism for invalid login attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.
|
CWE-284
Improper Access Control
|
CVE-2015-0531
|
2024-11-21 11:23 |
2015-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276265
|
- |
|
cisco
|
finesse
|
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Finesse Server 10.0(1), 10.5(1), 10.6(1), and 11.0(1) allow remote attackers to inject arbitrary web script or HTML via unspecified parame…
|
CWE-79
Cross-site Scripting
|
CVE-2015-0714
|
2024-11-21 11:23 |
2015-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276266
|
- |
|
kozos
|
easyctf
|
EasyCTF before 1.4 does not validate the session ID, which allows remote attackers to obtain access via a crafted HTTP request.
|
CWE-284
Improper Access Control
|
CVE-2015-0914
|
2024-11-21 11:23 |
2015-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276267
|
- |
|
kozos
|
easyctf
|
Cross-site scripting (XSS) vulnerability in EasyCTF before 1.4 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2015-0913
|
2024-11-21 11:23 |
2015-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276268
|
- |
|
kozos
|
easyctf
|
EasyCTF before 1.4 allows remote authenticated users to write executable content to files via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2015-0912
|
2024-11-21 11:23 |
2015-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276269
|
- |
|
cisco
|
staros
|
The session-manager service in Cisco StarOS 12.0, 12.2(300), 14.0, and 14.0(600) on ASR 5000 devices allows remote attackers to cause a denial of service (service reload and packet loss) via malforme…
|
CWE-399
Resource Management Errors
|
CVE-2015-0712
|
2024-11-21 11:23 |
2015-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276270
|
- |
|
emc
|
rsa_identity_management_and_governance
|
EMC RSA Identity Management and Governance (IMG) 6.9 before P04 and 6.9.1 before P01 does not properly restrict password resets, which allows remote attackers to obtain access via crafted use of the …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-0532
|
2024-11-21 11:23 |
2015-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|