|
211691
|
5.4 |
MEDIUM
Network
|
ibm
|
websphere_portal
|
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.0.x before 8.0.0.1 CF20 and 8.5.x before 8.5.0.0 CF09 allows remote authenticated users to inject arbitrary web script or HTML via a…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7491
|
2024-11-21 11:36 |
2016-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211692
|
6.1 |
MEDIUM
Network
|
ibm
|
websphere_portal
|
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.0.x before 8.0.0.1 CF20 and 8.5.x before 8.5.0.0 CF09 allows remote attackers to inject arbitrary web script or HTML via a crafted U…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7457
|
2024-11-21 11:36 |
2016-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211693
|
3.1 |
LOW
Network
|
ibm
|
websphere_portal
|
IBM WebSphere Portal 7.x through 7.0.0.2 CF29, 8.0.x before 8.0.0.1 CF20, and 8.5.x before 8.5.0.0 CF09 uses weak permissions for content items, which allows remote authenticated users to make modifi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7455
|
2024-11-21 11:36 |
2016-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211694
|
7.4 |
HIGH
Network
|
ibm
|
websphere_portal
|
Open redirect vulnerability in IBM WebSphere Portal 8.0.x before 8.0.0.1 CF20 and 8.5.x before 8.5.0.0 CF09 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attac…
|
NVD-CWE-Other
|
CVE-2015-7428
|
2024-11-21 11:36 |
2016-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211695
|
7.5 |
HIGH
Network
|
qnap
|
iartist_lite signage_station
|
QNAP iArtist Lite before 1.4.54, as distributed with QNAP Signage Station before 2.0.1, allows remote authenticated users to gain privileges by registering an executable file, and then waiting for th…
|
CWE-18
Source Code
|
CVE-2015-7262
|
2024-11-21 11:36 |
2016-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211696
|
9.8 |
CRITICAL
Network
|
qnap
|
iartist_lite signage_station
|
The FTP service in QNAP iArtist Lite before 1.4.54, as distributed with QNAP Signage Station before 2.0.1, has hardcoded credentials, which makes it easier for remote attackers to obtain access via a…
|
CWE-255
Credentials Management
|
CVE-2015-7261
|
2024-11-21 11:36 |
2016-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211697
|
10.0 |
CRITICAL
Network
|
ibm
|
tivoli_storage_flashcopy_manager_for_vmware tivoli_storage_manager_for_virtual_environments_data_protection_for_vmware
|
The Data Protection component in the VMware vSphere GUI in IBM Tivoli Storage Manager for Virtual Environments: Data Protection for VMware (aka Spectrum Protect for Virtual Environments) 6.3 before 6…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7425
|
2024-11-21 11:36 |
2016-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211698
|
8.1 |
HIGH
Network
|
debian canonical hp sophos suse opensuse oracle f5 redhat gnu
|
debian_linux ubuntu_linux server_migration_pack helion_openstack unified_threat_management_software linux_enterprise_server linux_enterprise_debuginfo linux_enterprise_software_d…
|
Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc or libc6) before 2.23 allow remote attackers to cause a den…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7547
|
2024-11-21 11:36 |
2016-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211699
|
5.4 |
MEDIUM
Network
|
ibm
|
infosphere_master_data_management_reference_data_management
|
Cross-site scripting (XSS) vulnerability in Reference Data Management (RDM) in IBM InfoSphere Master Data Management 10.1, 11.0 before FP5, 11.3, 11.4, and 11.5 before FP1 allows remote authenticated…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7492
|
2024-11-21 11:36 |
2016-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211700
|
7.2 |
HIGH
Network
|
ibm
|
websphere_portal
|
IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF29, 8.0.0 before 8.0.0.1 CF20, and 8.5.0 before CF10 allows remote attackers to conduct LDAP injec…
|
NVD-CWE-Other
|
CVE-2015-7472
|
2024-11-21 11:36 |
2016-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|