|
265721
|
9.8 |
CRITICAL
Network
|
centralized_salesforce_development_framework_project
|
centralized_salesforce_development_framework
|
A vulnerability was found in Centralized-Salesforce-Dev-Framework. It has been declared as problematic. Affected by this vulnerability is the function SObjectService of the file src/classes/SObjectSe…
|
-
|
CVE-2016-15007
|
2024-11-21 11:45 |
2023-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265722
|
5.3 |
MEDIUM
Network
|
enigmax_project
|
enigmax
|
A vulnerability, which was classified as problematic, has been found in enigmaX up to 2.2. This issue affects the function getSeed of the file main.c of the component Scrambling Table Handler. The ma…
|
-
|
CVE-2016-15006
|
2024-11-21 11:45 |
2023-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265723
|
8.8 |
HIGH
Network
|
golf_project
|
golf
|
CSRF tokens are generated using math/rand, which is not a cryptographically secure random number generator, allowing an attacker to predict values and bypass CSRF protections with relatively few requ…
|
CWE-352
Origin Validation Error
|
CVE-2016-15005
|
2024-11-21 11:45 |
2022-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265724
|
9.8 |
CRITICAL
Network
|
revmakx
|
infinitewp_client
|
A vulnerability was found in InfiniteWP Client Plugin 1.5.1.3/1.6.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to injection.…
|
-
|
CVE-2016-15004
|
2024-11-21 11:45 |
2022-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265725
|
7.8 |
HIGH
Local
|
filezilla-project
|
filezilla_client
|
A vulnerability has been found in FileZilla Client 3.17.0.0 and classified as problematic. This vulnerability affects unknown code of the file C:\Program Files\FileZilla FTP Client\uninstall.exe of t…
|
CWE-428
Unquoted Search Path or Element
|
CVE-2016-15003
|
2024-11-21 11:45 |
2022-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265726
|
8.8 |
HIGH
Network
|
ideracorp
|
webyog_monyog_ultimate
|
A vulnerability, which was classified as critical, was found in MONyog Ultimate 6.63. This affects an unknown part of the component Cookie Handler. The manipulation of the argument HasServerEdit/IsAd…
|
CWE-565
Reliance on Cookies without Validation and Integrity Checking
|
CVE-2016-15002
|
2024-11-21 11:45 |
2022-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265727
|
7.4 |
HIGH
Network
|
oauth-ruby_project
|
oauth-ruby
|
lib/oauth/consumer.rb in the oauth-ruby gem through 0.5.4 for Ruby does not verify server X.509 certificates if a certificate bundle cannot be found, which allows man-in-the-middle attackers to spoof…
|
CWE-295
Improper Certificate Validation
|
CVE-2016-11086
|
2024-11-21 11:45 |
2020-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265728
|
6.5 |
MEDIUM
Network
|
expresstech
|
quiz_and_survey_master
|
php/qmn_options_questions_tab.php in the quiz-master-next plugin before 4.7.9 for WordPress allows CSRF, with resultant stored XSS, via the question_name parameter because js/admin_question.js mishan…
|
CWE-352 CWE-79
Origin Validation Error Cross-site Scripting
|
CVE-2016-11085
|
2024-11-21 11:45 |
2020-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265729
|
6.1 |
MEDIUM
Network
|
mattermost
|
mattermost_server
|
An issue was discovered in Mattermost Server before 2.1.0. It allows XSS via CSRF.
|
CWE-352
Origin Validation Error
|
CVE-2016-11084
|
2024-11-21 11:45 |
2020-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265730
|
6.1 |
MEDIUM
Network
|
mattermost
|
mattermost_server
|
An issue was discovered in Mattermost Server before 2.2.0. It allows XSS because it configures files to be opened in a browser window.
|
CWE-79
Cross-site Scripting
|
CVE-2016-11083
|
2024-11-21 11:45 |
2020-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|