|
212801
|
- |
|
cisco
|
firepower
|
Cisco FirePOWER (formerly Sourcefire) 7000 and 8000 devices with software 5.4.0.1 allow remote attackers to cause a denial of service (inspection-engine outage) via crafted packets, aka Bug ID CSCuu1…
|
CWE-399
Resource Management Errors
|
CVE-2015-6307
|
2024-11-21 11:34 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212802
|
- |
|
cisco
|
ios ios_xe
|
The SSHv2 functionality in Cisco IOS 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.6E before 3.6.3E, 3.7E before 3.7.1E, 3.10S before 3.10.6S, 3.11S before 3.11.4S, 3.12S before 3.12.3S, 3.13S before 3.13.…
|
CWE-287
Improper Authentication
|
CVE-2015-6280
|
2024-11-21 11:34 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212803
|
- |
|
cisco
|
ios ios_xe
|
The IPv6 snooping functionality in the first-hop security subsystem in Cisco IOS 12.2, 15.0, 15.1, 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.2SE, 3.3SE, 3.3XO, 3.4SG, 3.5E, and 3.6E before 3.6.3E; 3.7E…
|
CWE-20
Improper Input Validation
|
CVE-2015-6279
|
2024-11-21 11:34 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212804
|
- |
|
cisco
|
ios ios_xe
|
The IPv6 snooping functionality in the first-hop security subsystem in Cisco IOS 12.2, 15.0, 15.1, 15.2, 15.3, 15.4, and 15.5 and IOS XE 3.2SE, 3.3SE, 3.3XO, 3.4SG, 3.5E, and 3.6E before 3.6.3E; 3.7E…
|
CWE-20
Improper Input Validation
|
CVE-2015-6278
|
2024-11-21 11:34 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212805
|
- |
|
refbase
|
refbase
|
Multiple open redirect vulnerabilities in Web Reference Database (aka refbase) through 0.9.6 and bleeding-edge before 2015-01-08 allow remote attackers to redirect users to arbitrary web sites and co…
|
NVD-CWE-Other
|
CVE-2015-6012
|
2024-11-21 11:34 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212806
|
- |
|
refbase
|
refbase
|
Web Reference Database (aka refbase) through 0.9.6 and bleeding-edge before 2015-01-08 allows remote attackers to conduct XML injection attacks via (1) the id parameter to unapi.php or (2) the styles…
|
NVD-CWE-Other
|
CVE-2015-6011
|
2024-11-21 11:34 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212807
|
- |
|
refbase
|
refbase
|
Multiple cross-site scripting (XSS) vulnerabilities in Web Reference Database (aka refbase) through 0.9.6 and bleeding-edge before 2015-01-08 allow remote attackers to inject arbitrary web script or …
|
CWE-79
Cross-site Scripting
|
CVE-2015-6010
|
2024-11-21 11:34 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212808
|
- |
|
refbase
|
refbase
|
Multiple SQL injection vulnerabilities in Web Reference Database (aka refbase) through 0.9.6 allow remote attackers to execute arbitrary SQL commands via (1) the where parameter to rss.php or (2) the…
|
CWE-89
SQL Injection
|
CVE-2015-6009
|
2024-11-21 11:34 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212809
|
- |
|
refbase
|
refbase
|
install.php in Web Reference Database (aka refbase) through 0.9.6 allows remote attackers to execute arbitrary commands via the adminPassword parameter, a different issue than CVE-2015-7381.
|
CWE-78
OS Command
|
CVE-2015-6008
|
2024-11-21 11:34 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212810
|
- |
|
refbase
|
refbase
|
Cross-site request forgery (CSRF) vulnerability in Web Reference Database (aka refbase) through 0.9.6 allows remote attackers to hijack the authentication of arbitrary users.
|
CWE-352
Origin Validation Error
|
CVE-2015-6007
|
2024-11-21 11:34 |
2015-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|