|
212261
|
- |
|
cisco
|
unity_connection
|
Cross-site request forgery (CSRF) vulnerability in Cisco Unity Connection 11.5(0.98) allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCux24578.
|
CWE-352
Origin Validation Error
|
CVE-2015-6408
|
2024-11-21 11:34 |
2015-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212262
|
- |
|
cisco
|
videoscape_distribution_suite_service_manager
|
Cisco Videoscape Distribution Suite Service Manager (VDS-SM) 3.4.0 and earlier does not always use RBAC for backend database access, which allows remote authenticated users to read or write to databa…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6417
|
2024-11-21 11:34 |
2015-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212263
|
- |
|
cisco
|
prime_service_catalog
|
Cisco Prime Service Catalog 10.0, 10.0(R2), 10.1, and 11.0 does not properly restrict access to web pages, which allows remote attackers to modify the configuration via a direct request, aka Bug ID C…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6395
|
2024-11-21 11:34 |
2015-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212264
|
- |
|
microsoft
|
excel_viewer office_compatibility_pack excel
|
Microsoft Excel 2007 SP3, Office Compatibility Pack SP3, and Excel Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulne…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-6177
|
2024-11-21 11:34 |
2015-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212265
|
- |
|
microsoft
|
edge
|
Microsoft Edge mishandles HTML attributes in HTTP responses, which allows remote attackers to bypass a cross-site scripting (XSS) protection mechanism via unspecified vectors, aka "Microsoft Edge XSS…
|
CWE-79
Cross-site Scripting
|
CVE-2015-6176
|
2024-11-21 11:34 |
2015-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212266
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10_1507
|
The kernel in Microsoft Windows 10 Gold allows local users to gain privileges via a crafted application, aka "Windows Kernel Memory Elevation of Privilege Vulnerability."
|
NVD-CWE-noinfo
|
CVE-2015-6175
|
2024-11-21 11:34 |
2015-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212267
|
- |
|
microsoft
|
windows_server_2008 windows_server_2012 windows_rt windows_10 windows_8.1 windows_7 windows_rt_8.1 windows_vista windows_8
|
The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6174
|
2024-11-21 11:34 |
2015-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212268
|
- |
|
microsoft
|
windows_server_2008 windows_server_2012 windows_rt windows_10 windows_8.1 windows_7 windows_rt_8.1 windows_vista windows_8
|
The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6173
|
2024-11-21 11:34 |
2015-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212269
|
- |
|
microsoft
|
word office office_compatibility_pack
|
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2016, Word 2013 RT SP1, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code via a crafted e…
|
CWE-20
Improper Input Validation
|
CVE-2015-6172
|
2024-11-21 11:34 |
2015-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212270
|
- |
|
microsoft
|
windows_server_2008 windows_server_2012 windows_rt windows_10 windows_8.1 windows_7 windows_rt_8.1 windows_vista windows_8
|
The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-6171
|
2024-11-21 11:34 |
2015-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|