|
268201
|
7.5 |
HIGH
Network
|
redhat oracle libarchive
|
enterprise_linux_hpc_node enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux_server_aus enterprise_linux_server_eus enterprise_linux_hpc_…
|
The archive_read_format_cpio_read_header function in archive_read_support_format_cpio.c in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a CPIO …
|
CWE-20
Improper Input Validation
|
CVE-2016-4809
|
2024-11-21 11:53 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268202
|
7.3 |
HIGH
Network
|
yokogawa
|
stardom_fcn\/fcj
|
Yokogawa STARDOM FCN/FCJ controller R1.01 through R4.01 does not require authentication for Logic Designer connections, which allows remote attackers to reconfigure the device or cause a denial of se…
|
CWE-287
Improper Authentication
|
CVE-2016-4860
|
2024-11-21 11:53 |
2016-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268203
|
6.5 |
MEDIUM
Network
|
aki-null
|
yorufukurou
|
YoruFukurou (NightOwl) before 2.85 relies on support for emoji skin-tone modifiers even though this support is missing from the CoreText CTFramesetter API on OS X 10.9, which allows remote attackers …
|
CWE-20
Improper Input Validation
|
CVE-2016-4852
|
2024-11-21 11:53 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268204
|
8.8 |
HIGH
Network
|
opensuse google
|
leap chrome
|
Multiple unspecified vulnerabilities in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux allow attackers to cause a denial of service or possibly have other impa…
|
NVD-CWE-noinfo
|
CVE-2016-5167
|
2024-11-21 11:53 |
2016-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268205
|
3.1 |
LOW
Network
|
google opensuse
|
chrome leap
|
The download implementation in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not properly restrict saving a file:// URL that is referenced by an http:// …
|
CWE-200
Information Exposure
|
CVE-2016-5166
|
2024-11-21 11:53 |
2016-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268206
|
6.1 |
MEDIUM
Network
|
google opensuse
|
chrome leap
|
Cross-site scripting (XSS) vulnerability in the Developer Tools (aka DevTools) subsystem in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux allows remote attack…
|
CWE-79
Cross-site Scripting
|
CVE-2016-5165
|
2024-11-21 11:53 |
2016-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268207
|
6.1 |
MEDIUM
Network
|
google opensuse
|
chrome leap
|
Cross-site scripting (XSS) vulnerability in WebKit/Source/platform/v8_inspector/V8Debugger.cpp in Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Li…
|
CWE-79
Cross-site Scripting
|
CVE-2016-5164
|
2024-11-21 11:53 |
2016-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268208
|
4.3 |
MEDIUM
Network
|
google opensuse
|
chrome leap
|
The bidirectional-text implementation in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not ensure left-to-right (LTR) rendering of URLs, which allows rem…
|
CWE-254
7PK - Security Features
|
CVE-2016-5163
|
2024-11-21 11:53 |
2016-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268209
|
6.5 |
MEDIUM
Network
|
opensuse google
|
leap chrome
|
The AllowCrossRendererResourceLoad function in extensions/browser/url_request_util.cc in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not properly use a…
|
CWE-254
7PK - Security Features
|
CVE-2016-5162
|
2024-11-21 11:53 |
2016-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268210
|
8.8 |
HIGH
Network
|
google opensuse
|
chrome leap
|
The EditingStyle::mergeStyle function in WebKit/Source/core/editing/EditingStyle.cpp in Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, misha…
|
CWE-704
Incorrect Type Conversion or Cast
|
CVE-2016-5161
|
2024-11-21 11:53 |
2016-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|