|
276641
|
6.5 |
MEDIUM
Network
|
freetype debian
|
freetype debian_linux
|
FreeType before 2.6.1 has a buffer over-read in skip_comment in psaux/psobjs.c because ps_parser_skip_PS_token is mishandled in an FT_New_Memory_Face operation.
|
CWE-125
Out-of-bounds Read
|
CVE-2015-9382
|
2024-11-21 11:40 |
2019-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276642
|
8.8 |
HIGH
Network
|
freetype debian
|
freetype debian_linux
|
FreeType before 2.6.1 has a heap-based buffer over-read in T1_Get_Private_Dict in type1/t1parse.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2015-9381
|
2024-11-21 11:40 |
2019-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276643
|
8.8 |
HIGH
Network
|
10web
|
photo_gallery
|
The photo-gallery plugin before 1.2.42 for WordPress has CSRF.
|
CWE-352
Origin Validation Error
|
CVE-2015-9380
|
2024-11-21 11:40 |
2019-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276644
|
6.1 |
MEDIUM
Network
|
automattic
|
jetpack
|
The Jetpack plugin before 3.4.3 for WordPress has XSS via add_query_arg() and remove_query_arg().
|
CWE-79
Cross-site Scripting
|
CVE-2015-9359
|
2024-11-21 11:40 |
2019-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276645
|
6.1 |
MEDIUM
Network
|
ithemes
|
builder_style_manager
|
iThemes Builder Style Manager before 0.7.7 for WordPress has XSS via add_query_arg() and remove_query_arg().
|
CWE-79
Cross-site Scripting
|
CVE-2015-9379
|
2024-11-21 11:40 |
2019-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276646
|
6.1 |
MEDIUM
Network
|
ithemes
|
builder_theme_market
|
iThemes Builder Theme Market before 5.1.27 for WordPress has XSS via add_query_arg() and remove_query_arg().
|
CWE-79
Cross-site Scripting
|
CVE-2015-9378
|
2024-11-21 11:40 |
2019-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276647
|
6.1 |
MEDIUM
Network
|
ithemes
|
builder_theme_depot
|
iThemes Builder Theme Depot before 5.0.30 for WordPress has XSS via add_query_arg() and remove_query_arg().
|
CWE-79
Cross-site Scripting
|
CVE-2015-9377
|
2024-11-21 11:40 |
2019-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276648
|
6.1 |
MEDIUM
Network
|
ithemes
|
mobile
|
iThemes Mobile before 1.2.8 for WordPress has XSS via add_query_arg() and remove_query_arg().
|
CWE-79
Cross-site Scripting
|
CVE-2015-9376
|
2024-11-21 11:40 |
2019-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276649
|
6.1 |
MEDIUM
Network
|
ithemes
|
table_rate_shipping
|
Table Rate Shipping Add-on for iThemes Exchange before 1.1.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
|
CWE-79
Cross-site Scripting
|
CVE-2015-9375
|
2024-11-21 11:40 |
2019-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
276650
|
6.1 |
MEDIUM
Network
|
ithemes
|
stripe
|
Stripe Add-on for iThemes Exchange before 1.2.0 for WordPress has XSS via add_query_arg() and remove_query_arg().
|
CWE-79
Cross-site Scripting
|
CVE-2015-9374
|
2024-11-21 11:40 |
2019-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|