|
267571
|
7.5 |
HIGH
Network
|
perl debian oracle opensuse canonical
|
perl debian_linux solaris database_server communications_billing_and_revenue_management enterprise_manager_base_platform configuration_manager timesten_in-memory_database open…
|
Perl might allow context-dependent attackers to bypass the taint protection mechanism in a child process via duplicate environment variables in envp.
|
CWE-20
Improper Input Validation
|
CVE-2016-2381
|
2024-11-21 11:48 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267572
|
9.8 |
CRITICAL
Network
|
suse opensuse git-scm
|
openstack_cloud linux_enterprise_software_development_kit linux_enterprise_server linux_enterprise_debuginfo leap opensuse suse_linux_enterprise_server git
|
Integer overflow in Git before 2.7.4 allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, which triggers a heap-based buffer overflow.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2324
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267573
|
9.8 |
CRITICAL
Network
|
suse opensuse git-scm
|
openstack_cloud linux_enterprise_software_development_kit linux_enterprise_server linux_enterprise_debuginfo leap opensuse suse_linux_enterprise_server git
|
revision.c in git before 2.7.4 uses an incorrect integer data type, which allows remote attackers to execute arbitrary code via a (1) long filename or (2) many nested trees, leading to a heap-based b…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2315
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267574
|
9.8 |
CRITICAL
Network
|
debian opensuse cypherpunks
|
debian_linux leap opensuse libotr
|
Integer overflow in proto.c in libotr before 4.1.1 on 64-bit platforms allows remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via a s…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2851
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267575
|
6.1 |
MEDIUM
Network
|
citrix
|
xenmobile_server
|
Cross-site scripting (XSS) vulnerability in the Web User Interface in Citrix XenMobile Server 10.0, 10.1 before Rolling Patch 4, and 10.3 before Rolling Patch 1 allows remote attackers to inject arbi…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2789
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267576
|
9.8 |
CRITICAL
Network
|
9bis simon_tatham
|
kitty putty
|
Stack-based buffer overflow in the SCP command-line utility in PuTTY before 0.67 and KiTTY 0.66.6.3 and earlier allows remote servers to cause a denial of service (stack memory corruption) or execute…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2563
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267577
|
6.1 |
MEDIUM
Network
|
debian websvn
|
debian_linux websvn
|
Cross-site scripting (XSS) vulnerability in WebSVN 2.3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the path parameter to log.php.
|
CWE-79
Cross-site Scripting
|
CVE-2016-2511
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267578
|
7.5 |
HIGH
Network
|
nodejs fedoraproject
|
node.js fedora
|
The HTTP header parsing code in Node.js 0.10.x before 0.10.42, 0.11.6 through 0.11.16, 0.12.x before 0.12.10, 4.x before 4.3.0, and 5.x before 5.6.0 allows remote attackers to bypass an HTTP response…
|
CWE-20
Improper Input Validation
|
CVE-2016-2216
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267579
|
8.1 |
HIGH
Network
|
beanshell debian canonical
|
beanshell debian_linux ubuntu_linux
|
BeanShell (bsh) before 2.0b6, when included on the classpath by an application that uses Java serialization or XStream, allows remote attackers to execute arbitrary code via crafted serialized data, …
|
CWE-19
Data Processing Errors
|
CVE-2016-2510
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267580
|
6.5 |
MEDIUM
Local
|
qemu canonical debian
|
qemu ubuntu_linux debian_linux
|
QEMU, when built with the Pseudo Random Number Generator (PRNG) back-end support, allows local guest OS users to cause a denial of service (process crash) via an entropy request, which triggers arbit…
|
CWE-331
Insufficient Entropy
|
CVE-2016-2858
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|