|
272731
|
- |
|
thoughtbot
|
paperclip
|
The thoughtbot paperclip gem before 4.2.2 for Ruby does not consider the content-type value during media-type validation, which allows remote attackers to upload HTML documents and conduct cross-site…
|
CWE-79
Cross-site Scripting
|
CVE-2015-2963
|
2024-11-21 11:28 |
2015-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272732
|
- |
|
lemon-s_php
|
simple_oekaki
|
index.php in LEMON-S PHP Simple Oekaki BBS before 1.21 allows remote attackers to delete arbitrary files via the oekakis parameter.
|
CWE-22
Path Traversal
|
CVE-2015-2970
|
2024-11-21 11:28 |
2015-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272733
|
- |
|
lemon-s_php
|
simple_oekaki_bbs
|
Cross-site scripting (XSS) vulnerability in index.php in LEMON-S PHP Simple Oekaki BBS before 1.21 allows remote attackers to inject arbitrary web script or HTML via the oekakis parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2015-2969
|
2024-11-21 11:28 |
2015-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272734
|
- |
|
cacti
|
cacti
|
Cross-site scripting (XSS) vulnerability in settings.php in Cacti before 0.8.8d allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2015-2967
|
2024-11-21 11:28 |
2015-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272735
|
- |
|
adobe
|
flash_player air air_sdk air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe A…
|
NVD-CWE-Other
|
CVE-2015-3137
|
2024-11-21 11:28 |
2015-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272736
|
- |
|
adobe
|
flash_player air air_sdk air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe A…
|
NVD-CWE-Other
|
CVE-2015-3136
|
2024-11-21 11:28 |
2015-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272737
|
- |
|
adobe
|
flash_player air air_sdk air_sdk_\&_compiler
|
Heap-based buffer overflow in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3135
|
2024-11-21 11:28 |
2015-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272738
|
- |
|
adobe
|
flash_player air air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Ad…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3134
|
2024-11-21 11:28 |
2015-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272739
|
- |
|
adobe
|
flash_player air air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Ad…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3133
|
2024-11-21 11:28 |
2015-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272740
|
- |
|
adobe
|
flash_player air air_sdk air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe A…
|
NVD-CWE-Other
|
CVE-2015-3132
|
2024-11-21 11:28 |
2015-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|