|
270591
|
- |
|
extplorer
|
extplorer
|
Cross-site request forgery (CSRF) vulnerability in eXtplorer before 2.1.8 allows remote attackers to hijack the authentication of arbitrary users for requests that execute PHP code.
|
CWE-352
Origin Validation Error
|
CVE-2015-5660
|
2024-11-21 11:33 |
2015-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270592
|
- |
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Co…
|
CWE-416
Use After Free
|
CVE-2015-5586
|
2024-11-21 11:33 |
2015-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270593
|
- |
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 o…
|
CWE-200
Information Exposure
|
CVE-2015-5583
|
2024-11-21 11:33 |
2015-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270594
|
- |
|
adobe
|
flash_player air air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and before 11.2.202.535 on Linux, Adobe AIR before 19.0.0.213, Adobe AIR SDK before 19.0.0.213, and Adobe AIR SDK &…
|
NVD-CWE-noinfo
|
CVE-2015-5569
|
2024-11-21 11:33 |
2015-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270595
|
- |
|
cybozu
|
garoon
|
The RSS Reader component in Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka CyVDB-866.
|
CWE-94
Code Injection
|
CVE-2015-5647
|
2024-11-21 11:33 |
2015-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270596
|
- |
|
cybozu
|
garoon
|
Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka CyVDB-863 and CyVDB-867.
|
CWE-94
Code Injection
|
CVE-2015-5646
|
2024-11-21 11:33 |
2015-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270597
|
- |
|
hp
|
3par_service_processor_sp
|
HP 3PAR Service Processor SP 4.2.0.GA-29 (GA) SPOCC, SP 4.3.0.GA-17 (GA) SPOCC, and SP 4.3.0-GA-24 (MU1) SPOCC allows remote authenticated users to obtain sensitive information via unspecified vector…
|
CWE-200
Information Exposure
|
CVE-2015-5443
|
2024-11-21 11:33 |
2015-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270598
|
- |
|
network_applied_communication_laboratory
|
shimane_prefecture_cms
|
SQL injection vulnerability in Network Applied Communication Laboratory Pref Shimane CMS 2.x before 2.0.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2015-5659
|
2024-11-21 11:33 |
2015-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270599
|
- |
|
dojotoolkit
|
dojo
|
Cross-site scripting (XSS) vulnerability in Dojo Toolkit before 1.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2015-5654
|
2024-11-21 11:33 |
2015-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270600
|
- |
|
loenshotel
|
phprechnung
|
SQL injection vulnerability in list.php in phpRechnung before 1.6.5 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2015-5648
|
2024-11-21 11:33 |
2015-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|