|
267651
|
6.5 |
MEDIUM
Adjacent
|
comcast
|
xfinity_home_security_system
|
Comcast XFINITY Home Security System does not properly maintain base-station communication, which allows physically proximate attackers to defeat sensor functionality by interfering with ZigBee 2.4 G…
|
CWE-254
7PK - Security Features
|
CVE-2016-2398
|
2024-11-21 11:48 |
2016-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267652
|
9.8 |
CRITICAL
Network
|
sonicwall
|
uma_em5000_firmware analyzer global_management_system
|
The cliserver implementation in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote attackers to deserialize and execute arbitrary Java code via crafted …
|
CWE-77
Command Injection
|
CVE-2016-2397
|
2024-11-21 11:48 |
2016-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267653
|
9.9 |
CRITICAL
Network
|
sonicwall
|
analyzer global_management_system uma_em5000_firmware
|
The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote authenticated users to execute arbitrary commands via ve…
|
CWE-77
Command Injection
|
CVE-2016-2396
|
2024-11-21 11:48 |
2016-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267654
|
7.5 |
HIGH
Network
|
sap
|
netweaver
|
Directory traversal vulnerability in the GetFileList function in the SAP Manufacturing Integration and Intelligence (xMII) component 15.0 for SAP NetWeaver 7.4 allows remote attackers to read arbitra…
|
CWE-22
Path Traversal
|
CVE-2016-2389
|
2024-11-21 11:48 |
2016-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267655
|
6.1 |
MEDIUM
Network
|
sap
|
netweaver
|
Multiple cross-site scripting (XSS) vulnerabilities in the Java Proxy Runtime ProxyServer servlet in SAP NetWeaver 7.4 allow remote attackers to inject arbitrary web script or HTML via the (1) ns or …
|
CWE-79
Cross-site Scripting
|
CVE-2016-2387
|
2024-11-21 11:48 |
2016-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267656
|
4.9 |
MEDIUM
Network
|
huawei
|
mt882_firmware
|
GlobespanVirata ftpd 1.0, as used on Huawei SmartAX MT882 devices V200R002B022 Arg, allows remote authenticated users to cause a denial of service (device outage) by using the FTP MKD command to crea…
|
CWE-17
Code
|
CVE-2016-2314
|
2024-11-21 11:48 |
2016-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267657
|
9.8 |
CRITICAL
Network
|
huawei
|
mt882_firmware
|
The Windows-based Host Interface Program (WHIP) service on Huawei SmartAX MT882 devices V200R002B022 Arg relies on the client to send a length field that is consistent with a buffer size, which allow…
|
CWE-19
Data Processing Errors
|
CVE-2016-2231
|
2024-11-21 11:48 |
2016-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267658
|
8.8 |
HIGH
Network
|
ffmpeg canonical
|
ffmpeg ubuntu_linux
|
libavcodec/gif.c in FFmpeg before 2.8.6 does not properly calculate a buffer size, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2330
|
2024-11-21 11:48 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267659
|
8.8 |
HIGH
Network
|
opensuse ffmpeg
|
leap ffmpeg
|
libavcodec/tiff.c in FFmpeg before 2.8.6 does not properly validate RowsPerStrip values and YCbCr chrominance subsampling factors, which allows remote attackers to cause a denial of service (out-of-b…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2329
|
2024-11-21 11:48 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267660
|
8.8 |
HIGH
Network
|
ffmpeg
|
ffmpeg
|
libswscale/swscale_unscaled.c in FFmpeg before 2.8.6 does not validate certain height values, which allows remote attackers to cause a denial of service (out-of-bounds array read access) or possibly …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2328
|
2024-11-21 11:48 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|