|
270041
|
6.1 |
MEDIUM
Network
|
spiceworks
|
desktop
|
Spiceworks Desktop before 2015-12-01 has XSS via an SNMP response.
|
CWE-79
Cross-site Scripting
|
CVE-2015-6021
|
2024-11-21 11:34 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270042
|
9.8 |
CRITICAL
Network
|
netcommwireless
|
hspa_3g10wve_firmware
|
ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote authenticated users to execute arbitrary commands via shell metacharacters in…
|
CWE-77
Command Injection
|
CVE-2015-6024
|
2024-11-21 11:34 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270043
|
7.3 |
HIGH
Network
|
netcommwireless
|
hspa_3g10wve_firmware
|
ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote attackers to bypass intended access restrictions via a direct request. NOTE:…
|
CWE-284
Improper Access Control
|
CVE-2015-6023
|
2024-11-21 11:34 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270044
|
7.5 |
HIGH
Network
|
cisco
|
nx-os
|
Cisco NX-OS 4.1 through 7.3 and 11.0 through 11.2 on Nexus 2000, 3000, 3500, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device crash) v…
|
CWE-399
Resource Management Errors
|
CVE-2015-6393
|
2024-11-21 11:34 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270045
|
7.5 |
HIGH
Network
|
cisco
|
nx-os
|
Cisco NX-OS 4.1 through 7.3 and 11.0 through 11.2 on Nexus 2000, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device crash) via crafted I…
|
CWE-399
Resource Management Errors
|
CVE-2015-6392
|
2024-11-21 11:34 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270046
|
8.8 |
HIGH
Network
|
cisco
|
rv110w_wireless-n_vpn_firewall_firmware rv130w_wireless-n_multifunction_vpn_router_firmware rv215w_wireless-n_vpn_router_firmware
|
Cisco RV110W, RV130W, and RV215W devices have an incorrect RBAC configuration for the default account, which allows remote authenticated users to obtain root access via a login session with that acco…
|
CWE-287
Improper Authentication
|
CVE-2015-6397
|
2024-11-21 11:34 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270047
|
7.8 |
HIGH
Local
|
cisco
|
rv110w_wireless-n_vpn_firewall_firmware rv130w_wireless-n_multifunction_vpn_router_firmware rv215w_wireless-n_vpn_router_firmware
|
The CLI command parser on Cisco RV110W, RV130W, and RV215W devices allows local users to execute arbitrary shell commands as an administrator via crafted parameters, aka Bug IDs CSCuv90134, CSCux5816…
|
CWE-78
OS Command
|
CVE-2015-6396
|
2024-11-21 11:34 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270048
|
7.5 |
HIGH
Network
|
cisco
|
ios
|
Cisco IOS 15.5(3)M on Integrated Services Router (ISR) 800, 819, and 829 devices allows remote attackers to cause a denial of service (memory consumption) via crafted TCP packets on the SSH port, aka…
|
CWE-399
Resource Management Errors
|
CVE-2015-6289
|
2024-11-21 11:34 |
2016-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270049
|
7.5 |
HIGH
Network
|
cisco
|
ios_xe webex_meeting_center unified_ip_phone_8900_series_firmware ip_phone_8800_series_firmware unified_ip_phone_7900_series_firmware ip_phone_7800_series_firmware unified_wireless_…
|
The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka Bug ID CSCux00686.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-6360
|
2024-11-21 11:34 |
2016-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270050
|
6.2 |
MEDIUM
Local
|
suse opensuse
|
linux_enterprise_software_development_kit linux_enterprise_server linux_enterprise_workstation_extension linux_enterprise_desktop leap opensuse
|
The mysql-systemd-helper script in the mysql-community-server package before 5.6.28-2.17.1 in openSUSE 13.2 and before 5.6.28-13.1 in openSUSE Leap 42.1 and the mariadb package before 10.0.22-2.21.2 …
|
CWE-200
Information Exposure
|
CVE-2015-5969
|
2024-11-21 11:34 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|