|
212081
|
- |
|
nordex
|
nordex_control_2_scada
|
Multiple cross-site scripting (XSS) vulnerabilities in the Wind Farm Portal application in Nordex Control 2 (NC2) SCADA 16 and earlier allow remote attackers to inject arbitrary web script or HTML vi…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6477
|
2024-11-21 11:35 |
2015-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212082
|
- |
|
emc
|
sourceone_email_supervisor
|
EMC SourceOne Email Supervisor before 7.2 uses hardcoded encryption keys, which makes it easier for attackers to obtain access by examining how a program's code conducts cryptographic operations.
|
CWE-255
Credentials Management
|
CVE-2015-6846
|
2024-11-21 11:35 |
2015-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212083
|
- |
|
emc
|
sourceone_email_supervisor
|
EMC SourceOne Email Supervisor before 7.2 does not properly employ random values for session IDs, which makes it easier for remote attackers to obtain access by guessing an ID.
|
NVD-CWE-Other
|
CVE-2015-6845
|
2024-11-21 11:35 |
2015-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212084
|
- |
|
emc
|
sourceone_email_supervisor
|
Cross-site scripting (XSS) vulnerability in Reviewer in EMC SourceOne Email Supervisor before 7.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2015-6844
|
2024-11-21 11:35 |
2015-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212085
|
- |
|
emc
|
sourceone_email_supervisor
|
Reviewer in EMC SourceOne Email Supervisor before 7.2 does not properly limit attempts to authenticate, which makes it easier for remote attackers to obtain access via a brute-force approach.
|
CWE-200
Information Exposure
|
CVE-2015-6843
|
2024-11-21 11:35 |
2015-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212086
|
- |
|
sap
|
hana
|
The hdbsql client 1.00.091.00 Build 1418659308-1530 in SAP HANA allows local users to cause a denial of service (memory corruption) and possibly have unspecified other impact via unknown vectors, aka…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-6507
|
2024-11-21 11:35 |
2015-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212087
|
- |
|
google
|
chrome
|
Multiple unspecified vulnerabilities in Google Chrome before 46.0.2490.71 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2015-6763
|
2024-11-21 11:35 |
2015-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212088
|
- |
|
google
|
chrome
|
The CSSFontFaceSrcValue::fetch function in core/css/CSSFontFaceSrcValue.cpp in the Cascading Style Sheets (CSS) implementation in Blink, as used in Google Chrome before 46.0.2490.71, does not use the…
|
CWE-254
7PK - Security Features
|
CVE-2015-6762
|
2024-11-21 11:35 |
2015-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212089
|
- |
|
ffmpeg google
|
ffmpeg chrome
|
The update_dimensions function in libavcodec/vp8.c in FFmpeg through 2.8.1, as used in Google Chrome before 46.0.2490.71 and other products, relies on a coefficient-partition count during multi-threa…
|
CWE-362
Race Condition
|
CVE-2015-6761
|
2024-11-21 11:35 |
2015-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212090
|
- |
|
google
|
chrome
|
The Image11::map function in renderer/d3d/d3d11/Image11.cpp in libANGLE, as used in Google Chrome before 46.0.2490.71, mishandles mapping failures after device-lost events, which allows remote attack…
|
CWE-17
Code
|
CVE-2015-6760
|
2024-11-21 11:35 |
2015-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|