CVE-2015-3161
The search bar code in bkr/server/widgets.py in Beaker before 20.1 does not escape tags in string literals when producing JSON.
Read MoreThe search bar code in bkr/server/widgets.py in Beaker before 20.1 does not escape tags in string literals when producing JSON.
Read MoreThe help window in Epicor CRS Retail Store before 3.2.03.01.008 allows local users to execute arbitrary code by injecting Javascript into the window source to create a button that spawns a command shell.
Read MoreXML external entity (XXE) vulnerability in bkr/server/jobs.py in Beaker before 20.1 allows remote authenticated users to obtain sensitive information via submitting job XML to the server containing entity references which...
Read MoreHonda Moto LINC 1.6.1 does not verify SSL certificates.
Read MoreThe URI.decode_www_form_component method in Ruby before 1.9.2-p330 allows remote attackers to cause a denial of service (catastrophic regular expression backtracking, resource consumption, or application crash) via a crafted...
Read More