|
272851
|
8.8 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of servi…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-1020
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272852
|
8.8 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of servi…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-1012
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272853
|
8.1 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to bypass the ASLR protection mechanism via JIT data.
|
NVD-CWE-noinfo
|
CVE-2016-1006
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272854
|
6.1 |
MEDIUM
Network
|
cyber-will
|
social-button_premium
|
Cross-site scripting (XSS) vulnerability in the Cyber-Will Social-button Premium plugin before 1.1 for EC-CUBE 2.13.x allows remote attackers to inject arbitrary web script or HTML via unspecified ve…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1180
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272855
|
8.8 |
HIGH
Network
|
hiniarata
|
casebook_plugin
|
Cross-site request forgery (CSRF) vulnerability in the Menubook plugin before 0.9.3 for baserCMS allows remote attackers to hijack the authentication of administrators.
|
CWE-352
Origin Validation Error
|
CVE-2016-1174
|
2024-11-21 11:45 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272856
|
6.1 |
MEDIUM
Network
|
hiniarata
|
casebook_plugin
|
Cross-site scripting (XSS) vulnerability in the Menubook plugin before 0.9.3 for baserCMS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1173
|
2024-11-21 11:45 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272857
|
8.8 |
HIGH
Network
|
hiniarata
|
casebook_plugin
|
Cross-site request forgery (CSRF) vulnerability in the Recruit plugin before 0.9.3 for baserCMS allows remote attackers to hijack the authentication of administrators.
|
CWE-352
Origin Validation Error
|
CVE-2016-1172
|
2024-11-21 11:45 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272858
|
6.1 |
MEDIUM
Network
|
hiniarata
|
casebook_plugin
|
Cross-site scripting (XSS) vulnerability in the Recruit plugin before 0.9.3 for baserCMS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1171
|
2024-11-21 11:45 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272859
|
8.8 |
HIGH
Network
|
hiniarata
|
casebook_plugin
|
Cross-site request forgery (CSRF) vulnerability in the Casebook plugin before 0.9.4 for baserCMS allows remote attackers to hijack the authentication of administrators.
|
CWE-352
Origin Validation Error
|
CVE-2016-1170
|
2024-11-21 11:45 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272860
|
6.1 |
MEDIUM
Network
|
hiniarata
|
casebook_plugin
|
Cross-site scripting (XSS) vulnerability in the Casebook plugin before 0.9.4 for baserCMS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1169
|
2024-11-21 11:45 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|