|
270011
|
- |
|
portfolio_project
|
portfolio
|
Cross-site request forgery (CSRF) vulnerability in the Portfolio plugin before 1.05 for WordPress allows remote attackers to hijack the authentication of administrators for requests that have unspeci…
|
CWE-352
Origin Validation Error
|
CVE-2015-6523
|
2024-11-21 11:35 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270012
|
- |
|
wpsymposium
|
wp_symposium
|
SQL injection vulnerability in the WP Symposium plugin before 15.8 for WordPress allows remote attackers to execute arbitrary SQL commands via the size parameter to get_album_item.php.
|
CWE-89
SQL Injection
|
CVE-2015-6522
|
2024-11-21 11:35 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270013
|
- |
|
arabportal
|
arab_portal
|
SQL injection vulnerability in Arab Portal 3 allows remote attackers to execute arbitrary SQL commands via the showemail parameter in a signup action to members.php.
|
CWE-89
SQL Injection
|
CVE-2015-6519
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270014
|
- |
|
phpliteadmin
|
phpliteadmin
|
Multiple cross-site scripting (XSS) vulnerabilities in phpLiteAdmin 1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO, (2) droptable parameter, or (3) table para…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6518
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270015
|
- |
|
phpliteadmin_project
|
phpliteadmin
|
Cross-site request forgery (CSRF) vulnerability in phpLiteAdmin 1.1 allows remote attackers to hijack the authentication of users for requests that drop database tables via the droptable parameter to…
|
CWE-352
Origin Validation Error
|
CVE-2015-6517
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270016
|
- |
|
cygnux
|
syspass
|
SQL injection vulnerability in cygnux.org sysPass 1.0.9 and earlier allows remote authenticated users to execute arbitrary SQL commands via the search parameter to ajax/ajax_search.php.
|
CWE-89
SQL Injection
|
CVE-2015-6516
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270017
|
- |
|
splunk
|
splunk
|
Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 6.2.x before 6.2.4, 6.1.x before 6.1.8, 6.0.x before 6.0.9, and 5.0.x before 5.0.13 and Splunk Light 6.2.x before 6.2.4 all…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6515
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270018
|
- |
|
splunk
|
splunk
|
Cross-site scripting (XSS) vulnerability in the Dashboard in Splunk Enterprise 6.2.x before 6.2.4 and Splunk Light 6.2.x before 6.2.4 allows remote authenticated users to inject arbitrary web script …
|
CWE-79
Cross-site Scripting
|
CVE-2015-6514
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270019
|
- |
|
j2store
|
j2store
|
Multiple SQL injection vulnerabilities in the J2Store (com_j2store) extension before 3.1.7 for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) sortby or (2) manufacturer_…
|
CWE-89
SQL Injection
|
CVE-2015-6513
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270020
|
- |
|
codelogic
|
freichat
|
SQL injection vulnerability in the get_messages function in server/plugins/chatroom/chatroom.php in FreiChat 9.6 allows remote attackers to execute arbitrary SQL commands via the time parameter to se…
|
CWE-89
SQL Injection
|
CVE-2015-6512
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|