|
273621
|
- |
|
ibm
|
case_manager
|
Multiple cross-site scripting (XSS) vulnerabilities in the Error dialog in IBM Case Manager 5.2.1 before 5.2.1.2 allow remote authenticated users to inject arbitrary web script or HTML via crafted in…
|
CWE-79
Cross-site Scripting
|
CVE-2015-1979
|
2024-11-21 11:26 |
2015-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273622
|
- |
|
ibm
|
infosphere_master_data_management
|
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to inject arbitra…
|
CWE-79
Cross-site Scripting
|
CVE-2015-1968
|
2024-11-21 11:26 |
2015-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273623
|
- |
|
ibm
|
db2
|
The scalar-function implementation in IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote attackers to cause a denial of service…
|
CWE-17
Code
|
CVE-2015-1935
|
2024-11-21 11:26 |
2015-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273624
|
- |
|
ibm
|
db2
|
The Data Movement implementation in IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote authenticated users to bypass intended a…
|
CWE-284
Improper Access Control
|
CVE-2015-1922
|
2024-11-21 11:26 |
2015-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273625
|
- |
|
ibm
|
db2
|
IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote authenticated users to read certain administrative files via crafted use of …
|
CWE-200
Information Exposure
|
CVE-2015-1883
|
2024-11-21 11:26 |
2015-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273626
|
- |
|
apache
|
struts
|
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2015-1831
|
2024-11-21 11:26 |
2015-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273627
|
- |
|
oracle
|
e-business_suite fusion_middleware
|
Unspecified vulnerability in the Oracle WebCenter Portal component in Oracle Fusion Middleware 11.1.1.8.0 and 11.1.1.9.0, and the Oracle Applications Framework component in Oracle E-Business Suite 12…
|
NVD-CWE-noinfo
|
CVE-2015-1926
|
2024-11-21 11:26 |
2015-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273628
|
- |
|
microsoft
|
sql_server
|
Microsoft SQL Server 2008 SP3 and SP4, 2008 R2 SP2 and SP3, 2012 SP1 and SP2, and 2014 does not prevent use of uninitialized memory in certain attempts to execute virtual functions, which allows remo…
|
CWE-284
Improper Access Control
|
CVE-2015-1763
|
2024-11-21 11:26 |
2015-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273629
|
- |
|
microsoft
|
sql_server
|
Microsoft SQL Server 2008 SP3 and SP4, 2008 R2 SP2 and SP3, 2012 SP1 and SP2, and 2014, when transactional replication is configured, does not prevent use of uninitialized memory in unspecified funct…
|
CWE-74
Injection
|
CVE-2015-1762
|
2024-11-21 11:26 |
2015-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
273630
|
- |
|
microsoft
|
sql_server
|
Microsoft SQL Server 2008 SP3 and SP4, 2008 R2 SP2 and SP3, 2012 SP1 and SP2, and 2014 uses an incorrect class during casts of unspecified pointers, which allows remote authenticated users to gain pr…
|
CWE-284
Improper Access Control
|
CVE-2015-1761
|
2024-11-21 11:26 |
2015-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|