|
276541
|
- |
|
cisco
|
unified_ip_phones_9971_firmware unified_ip_phones_9951_firmware
|
Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allow local users to cause a denial of service (device reload) via crafted commands, aka Bug ID CSCup92790.
|
CWE-20
Improper Input Validation
|
CVE-2015-0601
|
2024-11-21 11:23 |
2015-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276542
|
- |
|
cisco
|
unified_computing_system
|
The web interface in Cisco Integrated Management Controller in Cisco Unified Computing System (UCS) on C-Series Rack Servers does not properly restrict use of IFRAME elements, which makes it easier f…
|
CWE-254
7PK - Security Features
|
CVE-2015-0599
|
2024-11-21 11:23 |
2015-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276543
|
- |
|
zohocorp
|
manageengine_supportcenter_plus
|
Multiple cross-site scripting (XSS) vulnerabilities in Zoho ManageEngine SupportCenter Plus 7.9 before hotfix 7941 allow remote attackers to inject arbitrary web script or HTML via the (1) fromCustom…
|
CWE-79
Cross-site Scripting
|
CVE-2015-0866
|
2024-11-21 11:23 |
2015-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276544
|
- |
|
cisco
|
webex_meetings_server
|
The Forgot Password feature in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to enumerate administrative accounts via crafted packets, aka Bug IDs CSCuj67166 and CSCuj67…
|
CWE-200 CWE-20
Information Exposure Improper Input Validation
|
CVE-2015-0597
|
2024-11-21 11:23 |
2015-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276545
|
- |
|
cisco
|
webex_meetings_server
|
Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuj67163.
|
CWE-352
Origin Validation Error
|
CVE-2015-0596
|
2024-11-21 11:23 |
2015-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276546
|
- |
|
cisco
|
webex_meetings_server
|
The XMLAPI in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to obtain sensitive information by reading return messages from crafted GET requests, aka Bug ID CSCuj67079.
|
CWE-200
Information Exposure
|
CVE-2015-0595
|
2024-11-21 11:23 |
2015-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276547
|
- |
|
emc
|
unisphere_central
|
Open redirect vulnerability in EMC Unisphere Central before 4.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via an unspecified parameter.
|
NVD-CWE-Other
|
CVE-2015-0512
|
2024-11-21 11:23 |
2015-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276548
|
- |
|
i-o_data_device
|
np-bbrm
|
I-O DATA DEVICE NP-BBRM routers allow remote attackers to cause a denial of service (SSDP reflection) via UPnP requests.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-0869
|
2024-11-21 11:23 |
2015-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276549
|
- |
|
shiromuku
|
bu2_bbs
|
Unrestricted file upload vulnerability in Mrs. Shiromuku Perl CGI shiromuku(bu2)BBS before 2.91 allows remote attackers to execute arbitrary code by uploading an executable file.
|
NVD-CWE-Other
|
CVE-2015-0868
|
2024-11-21 11:23 |
2015-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276550
|
- |
|
nishishi
|
fumy_news_clipper
|
Cross-site scripting (XSS) vulnerability in hb.cgi in Nishishi Factory Fumy News Clipper 2.x before 2.5.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2015-0870
|
2024-11-21 11:23 |
2015-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|