|
212311
|
8.8 |
HIGH
Network
|
castlerock
|
snmpc
|
Castle Rock Computing SNMPc before 2015-12-17 has SQL injection via the sc parameter.
|
CWE-89
SQL Injection
|
CVE-2015-6028
|
2024-11-21 11:34 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212312
|
6.1 |
MEDIUM
Network
|
castlerock
|
snmpc
|
Castle Rock Computing SNMPc before 2015-12-17 has XSS via SNMP.
|
CWE-79
Cross-site Scripting
|
CVE-2015-6027
|
2024-11-21 11:34 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212313
|
6.1 |
MEDIUM
Network
|
spiceworks
|
desktop
|
Spiceworks Desktop before 2015-12-01 has XSS via an SNMP response.
|
CWE-79
Cross-site Scripting
|
CVE-2015-6021
|
2024-11-21 11:34 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212314
|
9.8 |
CRITICAL
Network
|
netcommwireless
|
hspa_3g10wve_firmware
|
ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote authenticated users to execute arbitrary commands via shell metacharacters in…
|
CWE-77
Command Injection
|
CVE-2015-6024
|
2024-11-21 11:34 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212315
|
7.3 |
HIGH
Network
|
netcommwireless
|
hspa_3g10wve_firmware
|
ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote attackers to bypass intended access restrictions via a direct request. NOTE:…
|
CWE-284
Improper Access Control
|
CVE-2015-6023
|
2024-11-21 11:34 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212316
|
7.5 |
HIGH
Network
|
cisco
|
nx-os
|
Cisco NX-OS 4.1 through 7.3 and 11.0 through 11.2 on Nexus 2000, 3000, 3500, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device crash) v…
|
CWE-399
Resource Management Errors
|
CVE-2015-6393
|
2024-11-21 11:34 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212317
|
7.5 |
HIGH
Network
|
cisco
|
nx-os
|
Cisco NX-OS 4.1 through 7.3 and 11.0 through 11.2 on Nexus 2000, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device crash) via crafted I…
|
CWE-399
Resource Management Errors
|
CVE-2015-6392
|
2024-11-21 11:34 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212318
|
8.8 |
HIGH
Network
|
cisco
|
rv110w_wireless-n_vpn_firewall_firmware rv130w_wireless-n_multifunction_vpn_router_firmware rv215w_wireless-n_vpn_router_firmware
|
Cisco RV110W, RV130W, and RV215W devices have an incorrect RBAC configuration for the default account, which allows remote authenticated users to obtain root access via a login session with that acco…
|
CWE-287
Improper Authentication
|
CVE-2015-6397
|
2024-11-21 11:34 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212319
|
7.8 |
HIGH
Local
|
cisco
|
rv110w_wireless-n_vpn_firewall_firmware rv130w_wireless-n_multifunction_vpn_router_firmware rv215w_wireless-n_vpn_router_firmware
|
The CLI command parser on Cisco RV110W, RV130W, and RV215W devices allows local users to execute arbitrary shell commands as an administrator via crafted parameters, aka Bug IDs CSCuv90134, CSCux5816…
|
CWE-78
OS Command
|
CVE-2015-6396
|
2024-11-21 11:34 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212320
|
7.5 |
HIGH
Network
|
cisco
|
ios
|
Cisco IOS 15.5(3)M on Integrated Services Router (ISR) 800, 819, and 829 devices allows remote attackers to cause a denial of service (memory consumption) via crafted TCP packets on the SSH port, aka…
|
CWE-399
Resource Management Errors
|
CVE-2015-6289
|
2024-11-21 11:34 |
2016-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|