|
266981
|
6.2 |
MEDIUM
Local
|
ibm
|
tivoli_storage_flashcopy_manager_for_sql_server tivoli_storage_manager_for_databases_data_protection_for_microsoft_sql_server
|
IBM Tivoli Storage Manager for Databases: Data Protection for Microsoft SQL Server (aka IBM Spectrum Protect for Databases) 6.3 before 6.3.1.7 and 6.4 before 6.4.1.9 and Tivoli Storage FlashCopy Mana…
|
CWE-200
Information Exposure
|
CVE-2016-3059
|
2024-11-21 11:49 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266982
|
5.4 |
MEDIUM
Network
|
ibm
|
filenet_workplace
|
Cross-site scripting (XSS) vulnerability in IBM FileNet Workplace 4.0.2 allows remote authenticated users to inject arbitrary web script or HTML by uploading a file.
|
CWE-79
Cross-site Scripting
|
CVE-2016-3054
|
2024-11-21 11:49 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266983
|
6.5 |
MEDIUM
Network
|
ibm
|
connections_portlets
|
Open redirect vulnerability in the Connections Portlets component 5.x before 5.0.2 for IBM WebSphere Portal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attac…
|
CWE-284
Improper Access Control
|
CVE-2016-2989
|
2024-11-21 11:49 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266984
|
3.7 |
LOW
Network
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 7.x before 7.0.0.43, 8.0.0.x before 8.0.0.13, 8.5.0.x before 8.5.5.10, 8.5.0.x and 16.0.0.x Liberty before Liberty Fix Pack 16.0.0.3, and 9.0.0.x before 9.0.0.1…
|
CWE-284
Improper Access Control
|
CVE-2016-2960
|
2024-11-21 11:49 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266985
|
5.4 |
MEDIUM
Network
|
ibm
|
websphere_portal
|
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.x through 7.0.0.2 CF30, 8.0.0.x through 8.0.0.1 CF21, and 8.5.0 before C…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2925
|
2024-11-21 11:49 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266986
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_publishing_engine
|
Unrestricted file upload vulnerability in the Document Builder in IBM Rational Publishing Engine (aka RPENG) 2.0.1 before ifix002 allows remote authenticated users to execute arbitrary code by specif…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2016-2914
|
2024-11-21 11:49 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266987
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_publishing_engine
|
Cross-site scripting (XSS) vulnerability in the Document Builder in IBM Rational Publishing Engine (aka RPENG) 2.0.1 before ifix002 allows remote authenticated users to inject arbitrary web script or…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2912
|
2024-11-21 11:49 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266988
|
9.8 |
CRITICAL
Network
|
php
|
php
|
Double free vulnerability in the SplDoublyLinkedList::offsetSet function in ext/spl/spl_dllist.c in PHP 7.x before 7.0.6 allows remote attackers to execute arbitrary code via a crafted index.
|
CWE-415
Double Free
|
CVE-2016-3132
|
2024-11-21 11:49 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266989
|
9.8 |
CRITICAL
Network
|
php
|
php
|
Multiple integer overflows in php_zip.c in the zip extension in PHP before 7.0.6 allow remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly hav…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-3078
|
2024-11-21 11:49 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266990
|
7.8 |
HIGH
Local
|
debian linux
|
debian_linux linux_kernel
|
The trace_writeback_dirty_page implementation in include/trace/events/writeback.h in the Linux kernel before 4.4 improperly interacts with mm/migrate.c, which allows local users to cause a denial of …
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-3070
|
2024-11-21 11:49 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|