|
267791
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The tipc_nl_compat_link_dump function in net/tipc/netlink_compat.c in the Linux kernel through 4.6.3 does not properly copy a certain string, which allows local users to obtain sensitive information …
|
CWE-200
Information Exposure
|
CVE-2016-5243
|
2024-11-21 11:53 |
2016-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267792
|
7.5 |
HIGH
Network
|
fedoraproject suse redhat linux
|
fedora linux_enterprise_real_time_extension linux_enterprise_debuginfo linux_enterprise_server enterprise_linux suse_linux_enterprise_software_development_kit linux_enterprise_works…
|
The rds_inc_info_copy function in net/rds/recv.c in the Linux kernel through 4.6.3 does not initialize a certain structure member, which allows remote attackers to obtain sensitive information from k…
|
CWE-200
Information Exposure
|
CVE-2016-5244
|
2024-11-21 11:53 |
2016-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267793
|
4.4 |
MEDIUM
Local
|
alertus
|
alertus_desktop_notification_for_os_x
|
Alertus Desktop Notification before 2.9.31.1710 on OS X uses weak permissions for configuration files and unspecified other files, which allows local users to suppress emergency notifications or chan…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5087
|
2024-11-21 11:53 |
2016-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267794
|
6.5 |
MEDIUM
Network
|
collne
|
welcart_e-commerce
|
The Collne Welcart e-Commerce plugin before 1.8.3 for WordPress mishandles sessions, which allows remote attackers to obtain access by leveraging knowledge of the e-mail address associated with an ac…
|
CWE-19
Data Processing Errors
|
CVE-2016-4828
|
2024-11-21 11:53 |
2016-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267795
|
6.1 |
MEDIUM
Network
|
collne
|
welcart_e-commerce
|
Cross-site scripting (XSS) vulnerability in the Collne Welcart e-Commerce plugin before 1.8.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a d…
|
CWE-79
Cross-site Scripting
|
CVE-2016-4827
|
2024-11-21 11:53 |
2016-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267796
|
6.1 |
MEDIUM
Network
|
collne
|
welcart_e-commerce
|
Cross-site scripting (XSS) vulnerability in the Collne Welcart e-Commerce plugin before 1.8.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a d…
|
CWE-79
Cross-site Scripting
|
CVE-2016-4826
|
2024-11-21 11:53 |
2016-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267797
|
5.6 |
MEDIUM
Network
|
collne
|
welcart_e-commerce
|
The Collne Welcart e-Commerce plugin before 1.8.3 for WordPress allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via crafted serialized data.
|
CWE-20
Improper Input Validation
|
CVE-2016-4825
|
2024-11-21 11:53 |
2016-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267798
|
5.3 |
MEDIUM
Network
|
corega
|
cg-wlr300gnv_firmware cg-wlr300gnv-w_firmware
|
The Wi-Fi Protected Setup (WPS) implementation on Corega CG-WLR300GNV and CG-WLR300GNV-W devices does not restrict the number of PIN authentication attempts, which makes it easier for remote attacker…
|
CWE-254
7PK - Security Features
|
CVE-2016-4824
|
2024-11-21 11:53 |
2016-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267799
|
7.5 |
HIGH
Network
|
corega
|
cg-wlbaragm_firmware
|
Corega CG-WLBARAGM devices allow remote attackers to cause a denial of service (reboot) via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2016-4823
|
2024-11-21 11:53 |
2016-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267800
|
8.0 |
HIGH
Adjacent
|
corega
|
cg-wlbargl_firmware
|
Corega CG-WLBARGL devices allow remote authenticated users to execute arbitrary commands via unspecified vectors.
|
CWE-77
Command Injection
|
CVE-2016-4822
|
2024-11-21 11:53 |
2016-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|