|
272671
|
- |
|
lemon-s_php
|
twit_bbs
|
Cross-site scripting (XSS) vulnerability in index.php in LEMON-S PHP Twit BBS allows remote attackers to inject arbitrary web script or HTML via the imagetitle parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2015-2989
|
2024-11-21 11:28 |
2015-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272672
|
- |
|
rakuto
|
rktsns2
|
Cross-site scripting (XSS) vulnerability in rakuto.net hitSuji (rktSNS2) 0.2.2b allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2015-2986
|
2024-11-21 11:28 |
2015-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272673
|
- |
|
guide-park
|
bbs_x102
|
Cross-site scripting (XSS) vulnerability in guide-park.com BBS X102 1.03 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2015-2985
|
2024-11-21 11:28 |
2015-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272674
|
- |
|
nscripter_project
|
nscripter
|
Buffer overflow in NScripter before 3.00 allows remote attackers to execute arbitrary code via crafted save data.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-2991
|
2024-11-21 11:28 |
2015-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272675
|
- |
|
neojapan
|
desknet_neo
|
Directory traversal vulnerability in zhtml.cgi in NEOJAPAN desknet NEO 2.0R1.0 through 2.5R1.4 allows remote authenticated users to read arbitrary files via a crafted parameter.
|
CWE-22
Path Traversal
|
CVE-2015-2990
|
2024-11-21 11:28 |
2015-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272676
|
- |
|
documentcloud
|
navis_documentcloud
|
Cross-site scripting (XSS) vulnerability in js/window.php in the Navis DocumentCloud plugin before 0.1.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the wpbase pa…
|
CWE-79
Cross-site Scripting
|
CVE-2015-2807
|
2024-11-21 11:28 |
2015-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272677
|
- |
|
linux qemu arista debian lenovo redhat
|
linux_kernel qemu eos debian_linux emc_px12-450r_ivx emc_px12-400r_ivx enterprise_linux_workstation enterprise_linux_for_scientific_computing openstack enterprise_linux_ser…
|
The pit_ioport_read in i8254.c in the Linux kernel before 2.6.33 and QEMU before 2.3.1 does not distinguish between read lengths and write lengths, which might allow guest OS users to execute arbitra…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3214
|
2024-11-21 11:28 |
2015-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272678
|
- |
|
linux
|
linux_kernel
|
Race condition in net/sctp/socket.c in the Linux kernel before 4.1.2 allows local users to cause a denial of service (list corruption and panic) via a rapid series of system calls related to sockets,…
|
CWE-362
Race Condition
|
CVE-2015-3212
|
2024-11-21 11:28 |
2015-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272679
|
- |
|
type74
|
ed
|
Type74 ED before 4.0 misuses 128-bit ECB encryption for small files, which makes it easier for attackers to obtain plaintext data via differential cryptanalysis of a file with an original length smal…
|
CWE-17
Code
|
CVE-2015-2987
|
2024-11-21 11:28 |
2015-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272680
|
- |
|
libunwind_project
|
libunwind
|
Off-by-one error in the dwarf_to_unw_regnum function in include/dwarf_i.h in libunwind 1.1 allows local users to have unspecified impact via invalid dwarf opcodes.
|
CWE-189
Numeric Errors
|
CVE-2015-3239
|
2024-11-21 11:28 |
2015-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|