|
268131
|
5.3 |
MEDIUM
Network
|
ntp
|
ntp
|
An off-path attacker can cause a preemptible client association to be demobilized in NTP 4.2.8p4 and earlier and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92 by sending a crypto NAK packet to a vi…
|
CWE-20
Improper Input Validation
|
CVE-2016-1547
|
2024-11-21 11:46 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268132
|
5.9 |
MEDIUM
Network
|
cisco
|
content_security_management_appliance email_security_appliance web_security_appliance
|
A vulnerability in the update functionality of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA), Cisco Web Security Appliance (WSA), and Cisco Content Management Security Appliance (SM…
|
CWE-310
Cryptographic Issues
|
CVE-2016-1411
|
2024-11-21 11:46 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268133
|
8.1 |
HIGH
Network
|
dbd-mysql_project
|
dbd-mysql
|
There is a vulnerability of type use-after-free affecting DBD::mysql (aka DBD-mysql or the Database Interface (DBI) MySQL driver for Perl) 3.x and 4.x before 4.041 when used with mysql_server_prepare…
|
CWE-416
Use After Free
|
CVE-2016-1251
|
2024-11-21 11:46 |
2016-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268134
|
7.8 |
HIGH
Local
|
f5 fedoraproject
|
nginx fedora
|
The nginx package before 1.6.2-5+deb8u3 on Debian jessie, the nginx packages before 1.4.6-1ubuntu3.6 on Ubuntu 14.04 LTS, before 1.10.0-0ubuntu0.16.04.3 on Ubuntu 16.04 LTS, and before 1.10.1-0ubuntu…
|
CWE-59
Link Following
|
CVE-2016-1247
|
2024-11-21 11:46 |
2016-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268135
|
7.8 |
HIGH
Local
|
vim debian
|
vim debian_linux
|
vim before patch 8.0.0056 does not properly validate values for the 'filetype', 'syntax' and 'keymap' options, which may result in the execution of arbitrary code if a file with a specially crafted m…
|
CWE-20
Improper Input Validation
|
CVE-2016-1248
|
2024-11-21 11:46 |
2016-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268136
|
6.1 |
MEDIUM
Network
|
cisco
|
email_security_appliance
|
A vulnerability in the display of email messages in the Messages in Quarantine (MIQ) view in Cisco AsyncOS for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to …
|
CWE-79
Cross-site Scripting
|
CVE-2016-1423
|
2024-11-21 11:46 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268137
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance
|
A vulnerability in the email attachment scanning functionality of the Advanced Malware Protection (AMP) feature of Cisco AsyncOS Software for Cisco Email Security Appliances could allow an unauthenti…
|
CWE-19
Data Processing Errors
|
CVE-2016-1486
|
2024-11-21 11:46 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268138
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance
|
A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email Security Appliances could allow an unauthenticated, remote attacker to cause a denial of service (DoS)…
|
CWE-20
Improper Input Validation
|
CVE-2016-1481
|
2024-11-21 11:46 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268139
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance
|
A vulnerability in the Multipurpose Internet Mail Extensions (MIME) scanner of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) and Web Security Appliances (WSA) could allow an unauth…
|
CWE-388
7PK - Errors
|
CVE-2016-1480
|
2024-11-21 11:46 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268140
|
5.4 |
MEDIUM
Network
|
novell
|
identity_manager identity_manager_identity_applications
|
XSS in NetIQ IDM 4.5 Identity Applications before 4.5.4 allows attackers able to change their username to inject arbitrary HTML code into the Role Assignment administrator HTML pages.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1598
|
2024-11-21 11:46 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|