|
266591
|
4.3 |
MEDIUM
Network
|
ibm
|
rational_requirements_composer rational_doors_next_generation
|
An undisclosed vulnerability in IBM Rational DOORS Next Generation 4.0, 5.0, and 6.0 could allow a JazzGuest user to see project names. IBM Reference #: 1995547.
|
CWE-200
Information Exposure
|
CVE-2016-6060
|
2024-11-21 11:55 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266592
|
8.8 |
HIGH
Network
|
ibm
|
tivoli_storage_manager_for_virtual_environments_data_protection_for_vmware tivoli_storage_flashcopy_manager_for_vmware
|
IBM Tivoli Storage Manager for Virtual Environments 7.1 (VMware) is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted fr…
|
CWE-352
Origin Validation Error
|
CVE-2016-6033
|
2024-11-21 11:55 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266593
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
powerlogic_pm8ecc_firmware
|
An issue was discovered in Schneider Electric PowerLogic PM8ECC device 2.651 and older. Undocumented hard-coded credentials allow access to the device.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2016-5818
|
2024-11-21 11:55 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266594
|
9.8 |
CRITICAL
Network
|
schneider-electric
|
ion7600 ion7300 ion8650 ion7500 ion5000 ion8800
|
An issue was discovered on Schneider Electric IONXXXX series power meters ION73XX series, ION75XX series, ION76XX series, ION8650 series, ION8800 series, and PM5XXX series. No authentication is confi…
|
CWE-284
Improper Access Control
|
CVE-2016-5815
|
2024-11-21 11:55 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266595
|
5.3 |
MEDIUM
Network
|
visonic
|
powerlink2_firmware
|
An issue was discovered in Visonic PowerLink2, all versions prior to October 2016 firmware release. When a specific URL to an image is accessed, the downloaded image carries with it source code used …
|
CWE-200
Information Exposure
|
CVE-2016-5813
|
2024-11-21 11:55 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266596
|
6.1 |
MEDIUM
Network
|
visonic
|
powerlink2_firmware
|
An issue was discovered in Visonic PowerLink2, all versions prior to October 2016 firmware release. User controlled input is not neutralized prior to being placed in web page output (CROSS-SITE SCRIP…
|
CWE-79
Cross-site Scripting
|
CVE-2016-5811
|
2024-11-21 11:55 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266597
|
8.8 |
HIGH
Network
|
schneider-electric
|
ion7600 ion7300 ion8650 ion7500 ion5000 ion8800
|
An issue was discovered on Schneider Electric IONXXXX series power meters ION73XX series, ION75XX series, ION76XX series, ION8650 series, ION8800 series, and PM5XXX series. There is no CSRF Token gen…
|
CWE-352
Origin Validation Error
|
CVE-2016-5809
|
2024-11-21 11:55 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266598
|
7.8 |
HIGH
Local
|
delta_electronics
|
ispsoft wplsoft pmsoft
|
An issue was discovered in Delta Electronics WPLSoft, Versions prior to V2.42.11, ISPSoft, Versions prior to 3.02.11, and PMSoft, Versions prior to2.10.10. There are multiple instances of heap-based …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-5805
|
2024-11-21 11:55 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266599
|
8.6 |
HIGH
Network
|
ca_technologies
|
unified_infrastructure_management
|
An issue was discovered in CA Unified Infrastructure Management Version 8.47 and earlier. The Unified Infrastructure Management software uses external input to construct a pathname that should be wit…
|
CWE-22
Path Traversal
|
CVE-2016-5803
|
2024-11-21 11:55 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266600
|
7.8 |
HIGH
Local
|
delta_electronics
|
ispsoft wplsoft pmsoft
|
An issue was discovered in Delta Electronics WPLSoft, Versions prior to V2.42.11, ISPSoft, Versions prior to 3.02.11, and PMSoft, Versions prior to 2.10.10. Multiple instances of out-of-bounds write …
|
CWE-787
Out-of-bounds Write
|
CVE-2016-5802
|
2024-11-21 11:55 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|