|
268141
|
6.1 |
MEDIUM
Network
|
netiq
|
identity_manager
|
XSS in NetIQ Designer for Identity Manager before 4.5.3 allows remote attackers to inject arbitrary HTML code via the nrfEntitlementReport.do CGI.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1592
|
2024-11-21 11:46 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268142
|
6.5 |
MEDIUM
Network
|
cisco
|
nx-os
|
Cisco NX-OS 4.0 through 7.3 and 11.0 through 11.2 on 1000v, 2000, 3000, 3500, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device reload)…
|
CWE-20
Improper Input Validation
|
CVE-2016-1454
|
2024-11-21 11:46 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268143
|
9.8 |
CRITICAL
Network
|
cisco
|
nx-os
|
Buffer overflow in the Overlay Transport Virtualization (OTV) GRE feature in Cisco NX-OS 5.0 through 7.3 on Nexus 7000 and 7700 devices allows remote attackers to execute arbitrary code via long para…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1453
|
2024-11-21 11:46 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268144
|
7.5 |
HIGH
Network
|
cisco
|
nx-os
|
Cisco NX-OS before 7.0(3)I2(2e) and 7.0(3)I4 before 7.0(3)I4(1) has an incorrect iptables local-interface configuration, which allows remote attackers to obtain sensitive information via TCP or UDP t…
|
CWE-200
Information Exposure
|
CVE-2016-1455
|
2024-11-21 11:46 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268145
|
7.5 |
HIGH
Network
|
dbd-mysql_project debian
|
dbd-mysql debian_linux
|
Buffer overflow in the DBD::mysql module before 4.037 for Perl allows context-dependent attackers to cause a denial of service (crash) via vectors related to an error message.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1246
|
2024-11-21 11:46 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268146
|
5.5 |
MEDIUM
Local
|
clamav canonical
|
clamav ubuntu_linux
|
ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted 7z file.
|
CWE-284
Improper Access Control
|
CVE-2016-1372
|
2024-11-21 11:46 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268147
|
5.5 |
MEDIUM
Local
|
canonical clamav
|
ubuntu_linux clamav
|
ClamAV (aka Clam AntiVirus) before 0.99.2 allows remote attackers to cause a denial of service (application crash) via a crafted mew packer executable.
|
CWE-284
Improper Access Control
|
CVE-2016-1371
|
2024-11-21 11:46 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268148
|
8.8 |
HIGH
Network
|
unadf_project debian
|
unadf debian_linux
|
The extractTree function in unADF allows remote attackers to execute arbitrary code via shell metacharacters in a directory name in an adf file.
|
CWE-20
Improper Input Validation
|
CVE-2016-1244
|
2024-11-21 11:46 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268149
|
9.8 |
CRITICAL
Network
|
debian unadf_project
|
debian_linux unadf
|
Stack-based buffer overflow in the extractTree function in unADF allows remote attackers to execute arbitrary code via a long pathname.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1243
|
2024-11-21 11:46 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268150
|
7.8 |
HIGH
Local
|
apache
|
tomcat
|
The Tomcat init script in the tomcat7 package before 7.0.56-3+deb8u4 and tomcat8 package before 8.0.14-1+deb8u3 on Debian jessie and the tomcat6 and libtomcat6-java packages before 6.0.35-1ubuntu3.8 …
|
CWE-20
Improper Input Validation
|
CVE-2016-1240
|
2024-11-21 11:46 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|