|
212281
|
- |
|
phpipam
|
phpipam
|
Multiple cross-site scripting (XSS) vulnerabilities in phpipam 1.1.010 allow remote attackers to inject arbitrary web script or HTML via the (1) section parameter to site/error.php or (2) ip paramete…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6529
|
2024-11-21 11:35 |
2015-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212282
|
- |
|
coppermine-gallery
|
coppermine_photo_gallery
|
Multiple cross-site scripting (XSS) vulnerabilities in install_classic.php in Coppermine Photo Gallery (CPG) 1.5.36 allow remote attackers to inject arbitrary web script or HTML via the (1) admin_use…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6528
|
2024-11-21 11:35 |
2015-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212283
|
- |
|
portfolio_project
|
portfolio
|
Cross-site request forgery (CSRF) vulnerability in the Portfolio plugin before 1.05 for WordPress allows remote attackers to hijack the authentication of administrators for requests that have unspeci…
|
CWE-352
Origin Validation Error
|
CVE-2015-6523
|
2024-11-21 11:35 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212284
|
- |
|
wpsymposium
|
wp_symposium
|
SQL injection vulnerability in the WP Symposium plugin before 15.8 for WordPress allows remote attackers to execute arbitrary SQL commands via the size parameter to get_album_item.php.
|
CWE-89
SQL Injection
|
CVE-2015-6522
|
2024-11-21 11:35 |
2015-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212285
|
- |
|
arabportal
|
arab_portal
|
SQL injection vulnerability in Arab Portal 3 allows remote attackers to execute arbitrary SQL commands via the showemail parameter in a signup action to members.php.
|
CWE-89
SQL Injection
|
CVE-2015-6519
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212286
|
- |
|
phpliteadmin
|
phpliteadmin
|
Multiple cross-site scripting (XSS) vulnerabilities in phpLiteAdmin 1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO, (2) droptable parameter, or (3) table para…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6518
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212287
|
- |
|
phpliteadmin_project
|
phpliteadmin
|
Cross-site request forgery (CSRF) vulnerability in phpLiteAdmin 1.1 allows remote attackers to hijack the authentication of users for requests that drop database tables via the droptable parameter to…
|
CWE-352
Origin Validation Error
|
CVE-2015-6517
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212288
|
- |
|
cygnux
|
syspass
|
SQL injection vulnerability in cygnux.org sysPass 1.0.9 and earlier allows remote authenticated users to execute arbitrary SQL commands via the search parameter to ajax/ajax_search.php.
|
CWE-89
SQL Injection
|
CVE-2015-6516
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212289
|
- |
|
splunk
|
splunk
|
Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 6.2.x before 6.2.4, 6.1.x before 6.1.8, 6.0.x before 6.0.9, and 5.0.x before 5.0.13 and Splunk Light 6.2.x before 6.2.4 all…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6515
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212290
|
- |
|
splunk
|
splunk
|
Cross-site scripting (XSS) vulnerability in the Dashboard in Splunk Enterprise 6.2.x before 6.2.4 and Splunk Light 6.2.x before 6.2.4 allows remote authenticated users to inject arbitrary web script …
|
CWE-79
Cross-site Scripting
|
CVE-2015-6514
|
2024-11-21 11:35 |
2015-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|