|
268611
|
8.8 |
HIGH
Network
|
adobe
|
flash_player_desktop_runtime flash_player
|
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attackers to execute arbitrary code or cause a denial of servi…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-4179
|
2024-11-21 11:51 |
2016-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268612
|
8.8 |
HIGH
Network
|
adobe
|
flash_player_desktop_runtime flash_player
|
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attackers to execute arbitrary code or cause a denial of servi…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-4175
|
2024-11-21 11:51 |
2016-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268613
|
8.8 |
HIGH
Network
|
adobe
|
flash_player_desktop_runtime flash_player
|
Adobe Flash Player before 18.0.0.366 and 19.x through 22.x before 22.0.0.209 on Windows and OS X and before 11.2.202.632 on Linux allows attackers to execute arbitrary code or cause a denial of servi…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-4172
|
2024-11-21 11:51 |
2016-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268614
|
7.8 |
HIGH
Local
|
debian libreoffice canonical
|
debian_linux libreoffice ubuntu_linux
|
Use-after-free vulnerability in LibreOffice before 5.1.4 allows remote attackers to execute arbitrary code via a crafted RTF file, related to stylesheet and superscript tokens.
|
CWE-20
Improper Input Validation
|
CVE-2016-4324
|
2024-11-21 11:51 |
2016-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268615
|
9.8 |
CRITICAL
Network
|
canonical linux debian
|
ubuntu_linux linux_kernel debian_linux
|
The usbip_recv_xbuff function in drivers/usb/usbip/usbip_common.c in the Linux kernel before 4.5.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecif…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3955
|
2024-11-21 11:51 |
2016-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268616
|
8.1 |
HIGH
Network
|
meinberg
|
ntp_server_firmware ims-lantime_m1000 ims-lantime_m3000 ims-lantime_m500 lantime_m100 lantime_m200 lantime_m300 lantime_m400 lantime_m600 lantime_m900 lces syncfire_1…
|
The NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANTIME M200, LANTIME M100, SyncFire 1100, an…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3989
|
2024-11-21 11:51 |
2016-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268617
|
7.3 |
HIGH
Network
|
meinberg
|
ntp_server_firmware ims-lantime_m1000 ims-lantime_m3000 ims-lantime_m500 lantime_m100 lantime_m200 lantime_m300 lantime_m400 lantime_m600 lantime_m900 lces syncfire_1…
|
Multiple stack-based buffer overflows in the NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANT…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3988
|
2024-11-21 11:51 |
2016-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268618
|
7.3 |
HIGH
Network
|
meinberg
|
ntp_server_firmware ims-lantime_m1000 ims-lantime_m3000 ims-lantime_m500 lantime_m100 lantime_m200 lantime_m300 lantime_m400 lantime_m600 lantime_m900 lces syncfire_1…
|
Stack-based buffer overflow in the NTP time-server interface on Meinberg IMS-LANTIME M3000, IMS-LANTIME M1000, IMS-LANTIME M500, LANTIME M900, LANTIME M600, LANTIME M400, LANTIME M300, LANTIME M200, …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3962
|
2024-11-21 11:51 |
2016-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268619
|
7.5 |
HIGH
Network
|
ibm nodejs npmjs
|
sdk node.js npm
|
The CLI in npm before 2.15.1 and 3.x before 3.8.3, as used in Node.js 0.10 before 0.10.44, 0.12 before 0.12.13, 4 before 4.4.2, and 5 before 5.10.0, includes bearer tokens with arbitrary requests, wh…
|
CWE-200
Information Exposure
|
CVE-2016-3956
|
2024-11-21 11:51 |
2016-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268620
|
7.5 |
HIGH
Network
|
getsymphony
|
symphony
|
Session fixation vulnerability in Symphony CMS 2.6.7, when session.use_only_cookies is disabled, allows remote attackers to hijack web sessions via the PHPSESSID parameter.
|
CWE-362 NVD-CWE-Other
Race Condition
|
CVE-2016-4309
|
2024-11-21 11:51 |
2016-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|