|
268301
|
7.5 |
HIGH
Network
|
citrix
|
license_server license_server_vpx
|
The lmadmin component in Flexera FlexNet Publisher (aka Flex License Manager) before 2015 SP5 and 2016 before R1 SP1, as used by Citrix License Server for Windows before 11.14.0.1 and Citrix License …
|
NVD-CWE-noinfo
|
CVE-2016-6273
|
2024-11-21 11:55 |
2016-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268302
|
6.1 |
MEDIUM
Network
|
ibm
|
sterling_secure_proxy
|
The Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.0 iFix 1 does not enable the HSTS protection mechanism, which makes it easier for remot…
|
CWE-79
Cross-site Scripting
|
CVE-2016-6027
|
2024-11-21 11:55 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268303
|
5.3 |
MEDIUM
Adjacent
|
ibm
|
sterling_secure_proxy
|
The Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.0 iFix 1 allows man-in-the-middle attackers to obtain sensitive information via an HTTP…
|
CWE-200
Information Exposure
|
CVE-2016-6026
|
2024-11-21 11:55 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268304
|
5.9 |
MEDIUM
Local
|
ibm
|
sterling_secure_proxy
|
The Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.0 iFix 1 allows remote attackers to obtain access by leveraging an unattended workstati…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6025
|
2024-11-21 11:55 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268305
|
7.5 |
HIGH
Network
|
ibm
|
sterling_secure_proxy
|
Directory traversal vulnerability in the Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.0 iFix 1 allows remote attackers to read arbitrary…
|
CWE-22
Path Traversal
|
CVE-2016-6023
|
2024-11-21 11:55 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268306
|
7.5 |
HIGH
Network
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.43, 8.0 before 8.0.0.13, 8.5 before 8.5.5.11, 9.0 before 9.0.0.2, and Liberty before 16.0.0.4 allows remote authenticated users to execute arbi…
|
CWE-284
Improper Access Control
|
CVE-2016-5983
|
2024-11-21 11:55 |
2016-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268307
|
5.4 |
MEDIUM
Network
|
ibm
|
business_process_manager
|
Cross-site scripting (XSS) vulnerability in a test page in IBM Business Process Manager Advanced 8.5.6.0 through 8.5.7.0 before cumulative fix 2016.09 allows remote authenticated users to inject arbi…
|
CWE-79
Cross-site Scripting
|
CVE-2016-5901
|
2024-11-21 11:55 |
2016-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268308
|
5.4 |
MEDIUM
Network
|
ibm
|
multi-enterprise_integration_gateway b2b_advanced_communications
|
Cross-site scripting (XSS) vulnerability in IBM 10x, as used in Multi-Enterprise Integration Gateway 1.x through 1.0.0.1 and B2B Advanced Communications before 1.0.0.5_2, allows remote authenticated …
|
CWE-79
Cross-site Scripting
|
CVE-2016-5892
|
2024-11-21 11:55 |
2016-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268309
|
7.5 |
HIGH
Network
|
canonical gnome opensuse
|
ubuntu_linux gdk-pixbuf leap opensuse
|
The OneLine32 function in io-ico.c in gdk-pixbuf before 2.35.3 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via crafted dimensions in an ICO file.
|
CWE-787
Out-of-bounds Write
|
CVE-2016-6352
|
2024-11-21 11:55 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268310
|
7.3 |
HIGH
Local
|
ibm
|
db2 db2_connect
|
Untrusted search path vulnerability in IBM DB2 9.7 through FP11, 10.1 through FP5, 10.5 before FP8, and 11.1 GA on Linux, AIX, and HP-UX allows local users to gain privileges via a Trojan horse libra…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5995
|
2024-11-21 11:55 |
2016-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|