|
212621
|
- |
|
cisco
|
firepower_extensible_operating_system
|
Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote attackers to inject ar…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6372
|
2024-11-21 11:34 |
2015-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212622
|
- |
|
cisco
|
firesight_system_software
|
The rule-update feature in Cisco FireSIGHT Management Center (MC) 5.2 through 5.4.0.1 does not verify the X.509 certificate of the support.sourcefire.com SSL server, which allows man-in-the-middle at…
|
CWE-20
Improper Input Validation
|
CVE-2015-6357
|
2024-11-21 11:34 |
2015-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212623
|
- |
|
cisco
|
prime_collaboration_assurance
|
Cross-site request forgery (CSRF) vulnerability in Cisco Prime Collaboration Assurance 10.5(1) and 10.6 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCus62712.
|
CWE-352
Origin Validation Error
|
CVE-2015-6330
|
2024-11-21 11:34 |
2015-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212624
|
- |
|
cisco
|
aironet_access_point_software
|
Cisco Aironet 1800 devices with software 8.1(131.0) allow remote attackers to cause a denial of service (CPU consumption) by improperly establishing many SSHv2 connections, aka Bug ID CSCux13374.
|
CWE-399
Resource Management Errors
|
CVE-2015-6367
|
2024-11-21 11:34 |
2015-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212625
|
- |
|
cisco
|
ios
|
Cisco IOS 15.2(04)M and 15.4(03)M lets physical-interface ACLs supersede virtual PPP interface ACLs, which allows remote authenticated users to bypass intended network-traffic restrictions in opportu…
|
CWE-20
Improper Input Validation
|
CVE-2015-6365
|
2024-11-21 11:34 |
2015-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212626
|
- |
|
cisco
|
videoscape_distribution_suite_service_manager
|
Cisco Content Delivery System Manager Software 3.2 on Videoscape Distribution Suite Service Manager allows remote attackers to obtain sensitive information via crafted URLs in REST API requests, aka …
|
CWE-200
Information Exposure
|
CVE-2015-6364
|
2024-11-21 11:34 |
2015-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212627
|
- |
|
cisco
|
ios
|
Cisco IOS 15.2(04)M6 and 15.4(03)S lets physical-interface ACLs supersede tunnel-interface ACLs, which allows remote attackers to bypass intended network-traffic restrictions in opportunistic circums…
|
CWE-284
Improper Access Control
|
CVE-2015-6366
|
2024-11-21 11:34 |
2015-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212628
|
- |
|
microsoft
|
internet_explorer
|
Use-after-free vulnerability in the CElement object implementation in Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption)…
|
NVD-CWE-Other
|
CVE-2015-6045
|
2024-11-21 11:34 |
2015-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212629
|
- |
|
cisco
|
firesight_system_software
|
Multiple cross-site scripting (XSS) vulnerabilities in the web framework in Cisco FireSIGHT Management Center (MC) 5.4.1.4 and 6.0.1 allow remote authenticated users to inject arbitrary web script or…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6363
|
2024-11-21 11:34 |
2015-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212630
|
- |
|
microsoft
|
excel_for_mac
|
Cross-site scripting (XSS) vulnerability in Microsoft Excel for Mac 2011 and Excel 2016 for Mac allows remote attackers to inject arbitrary web script or HTML via a crafted e-mail message that is mis…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6123
|
2024-11-21 11:34 |
2015-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|