|
266331
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_server_2016 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 160…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-7260
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266332
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_server_2016 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The Graphics Component in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Wind…
|
CWE-19
Data Processing Errors
|
CVE-2016-7259
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266333
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2016 windows_10
|
The kernel in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 mishandles page-fault system calls, which allows local users to obtain sensitive information from arbitrary processes v…
|
CWE-200
Information Exposure
|
CVE-2016-7258
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266334
|
6.5 |
MEDIUM
Network
|
microsoft
|
office_for_mac windows_7 windows_server_2008 windows_vista
|
The GDI component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Office for Mac 2011, and Office 2016 for Mac allows remote attackers to obtain sensitive informati…
|
CWE-200
Information Exposure
|
CVE-2016-7257
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266335
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_server_2016 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The Crypto driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and…
|
CWE-200
Information Exposure
|
CVE-2016-7219
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266336
|
6.1 |
MEDIUM
Network
|
microsoft
|
edge
|
Cross-site scripting (XSS) vulnerability in Microsoft Edge allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Microsoft Edge Information Disclosure Vulnerabi…
|
CWE-79
Cross-site Scripting
|
CVE-2016-7206
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266337
|
7.5 |
HIGH
Network
|
microsoft
|
edge
|
Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Edge Memory Corruption Vulnerability."
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-7181
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266338
|
6.1 |
MEDIUM
Network
|
adobe
|
experience_manager_forms livecycle
|
Adobe Experience Manager Forms versions 6.2 and earlier, LiveCycle 11.0.1, LiveCycle 10.0.4 have an input validation issue in the PMAdmin module that could be used in cross-site scripting attacks.
|
CWE-79
Cross-site Scripting
|
CVE-2016-6934
|
2024-11-21 11:57 |
2016-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266339
|
6.1 |
MEDIUM
Network
|
adobe
|
experience_manager livecycle
|
Adobe Experience Manager Forms versions 6.2 and earlier, LiveCycle 11.0.1, LiveCycle 10.0.4 have an input validation issue in the AACComponent that could be used in cross-site scripting attacks.
|
CWE-79
Cross-site Scripting
|
CVE-2016-6933
|
2024-11-21 11:57 |
2016-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266340
|
6.0 |
MEDIUM
Local
|
qemu opensuse redhat
|
qemu leap openstack virtualization
|
The virtqueue_map_desc function in hw/virtio/virtio.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) …
|
CWE-120
Classic Buffer Overflow
|
CVE-2016-7422
|
2024-11-21 11:57 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|