|
268341
|
7.5 |
HIGH
Network
|
cisco
|
ios ios_xe
|
The NTP implementation in Cisco IOS 15.1 and 15.5 and IOS XE 3.2 through 3.17 allows remote attackers to modify the system time via crafted packets, aka Bug ID CSCux46898.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1384
|
2024-11-21 11:46 |
2016-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268342
|
9.8 |
CRITICAL
Network
|
debian suse opensuse canonical google
|
debian_linux linux_enterprise leap ubuntu_linux chrome
|
Multiple unspecified vulnerabilities in Google Chrome before 50.0.2661.75 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2016-1659
|
2024-11-21 11:46 |
2016-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268343
|
4.3 |
MEDIUM
Network
|
novell opensuse google debian
|
suse_package_hub_for_suse_linux_enterprise leap chrome debian_linux
|
The Extensions subsystem in Google Chrome before 50.0.2661.75 incorrectly relies on GetOrigin method calls for origin comparisons, which allows remote attackers to bypass the Same Origin Policy and o…
|
CWE-200 CWE-284
Information Exposure Improper Access Control
|
CVE-2016-1658
|
2024-11-21 11:46 |
2016-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268344
|
4.3 |
MEDIUM
Network
|
debian novell opensuse google
|
debian_linux suse_package_hub_for_suse_linux_enterprise leap chrome
|
The WebContentsImpl::FocusLocationBarByDefault function in content/browser/web_contents/web_contents_impl.cc in Google Chrome before 50.0.2661.75 mishandles focus for certain about:blank pages, which…
|
CWE-254
7PK - Security Features
|
CVE-2016-1657
|
2024-11-21 11:46 |
2016-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268345
|
7.5 |
HIGH
Network
|
google suse opensuse
|
chrome linux_enterprise leap
|
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
|
CWE-284
Improper Access Control
|
CVE-2016-1656
|
2024-11-21 11:46 |
2016-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268346
|
8.8 |
HIGH
Network
|
debian suse opensuse google canonical
|
debian_linux linux_enterprise leap chrome ubuntu_linux
|
Google Chrome before 50.0.2661.75 does not properly consider that frame removal may occur during callback execution, which allows remote attackers to cause a denial of service (use-after-free) or pos…
|
NVD-CWE-Other
|
CVE-2016-1655
|
2024-11-21 11:46 |
2016-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268347
|
6.5 |
MEDIUM
Network
|
debian suse opensuse google canonical
|
debian_linux linux_enterprise leap chrome ubuntu_linux
|
The media subsystem in Google Chrome before 50.0.2661.75 does not initialize an unspecified data structure, which allows remote attackers to cause a denial of service (invalid read operation) via unk…
|
CWE-20
Improper Input Validation
|
CVE-2016-1654
|
2024-11-21 11:46 |
2016-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268348
|
8.8 |
HIGH
Network
|
debian suse opensuse canonical google
|
debian_linux linux_enterprise leap ubuntu_linux chrome
|
The LoadBuffer implementation in Google V8, as used in Google Chrome before 50.0.2661.75, mishandles data types, which allows remote attackers to cause a denial of service or possibly have unspecifie…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1653
|
2024-11-21 11:46 |
2016-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268349
|
6.1 |
MEDIUM
Network
|
debian suse opensuse google
|
debian_linux linux_enterprise leap chrome
|
Cross-site scripting (XSS) vulnerability in the ModuleSystem::RequireForJsInner function in extensions/renderer/module_system.cc in the Extensions subsystem in Google Chrome before 50.0.2661.75 allow…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1652
|
2024-11-21 11:46 |
2016-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268350
|
8.1 |
HIGH
Network
|
google debian suse opensuse
|
chrome debian_linux linux_enterprise leap
|
fxcodec/codec/fx_codec_jpx_opj.cpp in PDFium, as used in Google Chrome before 50.0.2661.75, does not properly implement the sycc420_to_rgb and sycc422_to_rgb functions, which allows remote attackers …
|
CWE-200
Information Exposure
|
CVE-2016-1651
|
2024-11-21 11:46 |
2016-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|