|
266491
|
5.4 |
MEDIUM
Network
|
cisco
|
firesight_system_software
|
Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Firepower Management Center before 6.1 and FireSIGHT System Software before 6.1 allows remote authenticated use…
|
CWE-79
Cross-site Scripting
|
CVE-2016-6395
|
2024-11-21 11:56 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266492
|
9.1 |
CRITICAL
Network
|
cisco
|
firesight_system_software
|
Session fixation vulnerability in Cisco Firepower Management Center and Cisco FireSIGHT System Software through 6.1.0 allows remote attackers to hijack web sessions via a session identifier, aka Bug …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6394
|
2024-11-21 11:56 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266493
|
7.5 |
HIGH
Network
|
cisco
|
hosted_collaboration_mediation_fulfillment
|
Directory traversal vulnerability in the web interface in Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) 10.6(3) and earlier allows remote attackers to write to arbitrary files via a crafte…
|
CWE-22
Path Traversal
|
CVE-2016-6371
|
2024-11-21 11:56 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266494
|
5.3 |
MEDIUM
Adjacent
|
cisco
|
wireless_lan_controller_software wireless_lan_controller_software_6.0 wireless_lan_controller_software_7.0 wireless_lan_controller_software_7.1 wireless_lan_controller_software_7.2 wir…
|
Cisco Wireless LAN Controller (WLC) devices before 8.0.140.0, 8.1.x and 8.2.x before 8.2.121.0, and 8.3.x before 8.3.102.0 allow remote attackers to cause a denial of service (device reload) by sendi…
|
CWE-399
Resource Management Errors
|
CVE-2016-6375
|
2024-11-21 11:56 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266495
|
6.1 |
MEDIUM
Network
|
huawei
|
fusionaccess
|
CRLF injection vulnerability in Huawei FusionAccess before V100R006C00 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.
|
CWE-113
HTTP Response Splitting
|
CVE-2016-6839
|
2024-11-21 11:56 |
2016-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266496
|
5.3 |
MEDIUM
Network
|
huawei_firmware huawei
|
s12700 s9700_firmware s7700_firmware s9300_firmware
|
Huawei S7700, S9300, S9700, and S12700 devices with software before V200R008C00SPC500 use random numbers with insufficient entropy to generate self-signed certificates, which makes it easier for remo…
|
CWE-200
Information Exposure
|
CVE-2016-6670
|
2024-11-21 11:56 |
2016-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266497
|
7.5 |
HIGH
Network
|
huawei
|
rh1288_v3_server_firmware rh2288_v3_server_firmware x6800_v3_server_firmware xh620_v3_server_firmware ch121_v3_server_firmware ch140_v3_server_firmware ch220_v3_server_firmware c…
|
Huawei X6800 and XH620 V3 servers with software before V100R003C00SPC606, RH1288 V3 servers with software before V100R003C00SPC613, RH2288 V3 servers with software before V100R003C00SPC617, CH140 V3 …
|
CWE-310 CWE-200
Cryptographic Issues Information Exposure
|
CVE-2016-6838
|
2024-11-21 11:56 |
2016-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266498
|
9.8 |
CRITICAL
Network
|
huawei
|
rh1288_v3_server_firmware rh2288_v3_server_firmware rh2288h_v3_server_firmware xh620_v3_server_firmware xh622_v3_server_firmware xh628_v3_server_firmware
|
Huawei XH620 V3, XH622 V3, and XH628 V3 servers with software before V100R003C00SPC610, RH1288 V3 servers with software before V100R003C00SPC613, RH2288 V3 servers with software before V100R003C00SPC…
|
CWE-285
Improper Authorization
|
CVE-2016-6825
|
2024-11-21 11:56 |
2016-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266499
|
7.5 |
HIGH
Network
|
fedoraproject opensuse canonical gnome
|
fedora leap opensuse ubuntu_linux eye_of_gnome
|
Eye of GNOME (aka eog) 3.16.5, 3.17.x, 3.18.x before 3.18.3, 3.19.x, and 3.20.x before 3.20.4, when used with glib before 2.44.1, allow remote attackers to cause a denial of service (out-of-bounds wr…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-6855
|
2024-11-21 11:56 |
2016-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266500
|
8.1 |
HIGH
Network
|
cisco
|
media_origination_system_suite
|
Media Origination System Suite Software 2.6 and earlier in Cisco Virtual Media Packager (VMP) allows remote attackers to bypass authentication and make arbitrary Platform and Applications Manager (PA…
|
CWE-287
Improper Authentication
|
CVE-2016-6377
|
2024-11-21 11:56 |
2016-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|