|
212451
|
7.8 |
HIGH
Local
|
redhat
|
ansible
|
The chroot, jail, and zone connection plugins in ansible before 1.9.2 allow local users to escape a restricted environment via a symlink attack.
|
CWE-59
Link Following
|
CVE-2015-6240
|
2024-11-21 11:34 |
2017-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212452
|
6.1 |
MEDIUM
Network
|
opsview
|
opsview
|
Opsview before 2015-11-06 has XSS via SNMP.
|
CWE-79
Cross-site Scripting
|
CVE-2015-6035
|
2024-11-21 11:34 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212453
|
8.8 |
HIGH
Network
|
castlerock
|
snmpc
|
Castle Rock Computing SNMPc before 2015-12-17 has SQL injection via the sc parameter.
|
CWE-89
SQL Injection
|
CVE-2015-6028
|
2024-11-21 11:34 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212454
|
6.1 |
MEDIUM
Network
|
castlerock
|
snmpc
|
Castle Rock Computing SNMPc before 2015-12-17 has XSS via SNMP.
|
CWE-79
Cross-site Scripting
|
CVE-2015-6027
|
2024-11-21 11:34 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212455
|
6.1 |
MEDIUM
Network
|
spiceworks
|
desktop
|
Spiceworks Desktop before 2015-12-01 has XSS via an SNMP response.
|
CWE-79
Cross-site Scripting
|
CVE-2015-6021
|
2024-11-21 11:34 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212456
|
9.8 |
CRITICAL
Network
|
netcommwireless
|
hspa_3g10wve_firmware
|
ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote authenticated users to execute arbitrary commands via shell metacharacters in…
|
CWE-77
Command Injection
|
CVE-2015-6024
|
2024-11-21 11:34 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212457
|
7.3 |
HIGH
Network
|
netcommwireless
|
hspa_3g10wve_firmware
|
ping.cgi in NetCommWireless HSPA 3G10WVE wireless routers with firmware before 3G10WVE-L101-S306ETS-C01_R05 allows remote attackers to bypass intended access restrictions via a direct request. NOTE:…
|
CWE-284
Improper Access Control
|
CVE-2015-6023
|
2024-11-21 11:34 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212458
|
7.5 |
HIGH
Network
|
cisco
|
nx-os
|
Cisco NX-OS 4.1 through 7.3 and 11.0 through 11.2 on Nexus 2000, 3000, 3500, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device crash) v…
|
CWE-399
Resource Management Errors
|
CVE-2015-6393
|
2024-11-21 11:34 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212459
|
7.5 |
HIGH
Network
|
cisco
|
nx-os
|
Cisco NX-OS 4.1 through 7.3 and 11.0 through 11.2 on Nexus 2000, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device crash) via crafted I…
|
CWE-399
Resource Management Errors
|
CVE-2015-6392
|
2024-11-21 11:34 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212460
|
8.8 |
HIGH
Network
|
cisco
|
rv110w_wireless-n_vpn_firewall_firmware rv130w_wireless-n_multifunction_vpn_router_firmware rv215w_wireless-n_vpn_router_firmware
|
Cisco RV110W, RV130W, and RV215W devices have an incorrect RBAC configuration for the default account, which allows remote authenticated users to obtain root access via a login session with that acco…
|
CWE-287
Improper Authentication
|
CVE-2015-6397
|
2024-11-21 11:34 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|