|
268471
|
8.6 |
HIGH
Network
|
netgear
|
prosafe_network_management_software_300
|
Directory traversal vulnerability in data/config/image.do in NETGEAR Management System NMS300 1.5.0.11 and earlier allows remote authenticated users to read arbitrary files via a .. (dot dot) in the …
|
CWE-22
Path Traversal
|
CVE-2016-1525
|
2024-11-21 11:46 |
2016-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268472
|
9.6 |
CRITICAL
Adjacent
|
netgear
|
prosafe_network_management_software_300
|
Multiple unrestricted file upload vulnerabilities in NETGEAR Management System NMS300 1.5.0.11 and earlier allow remote attackers to execute arbitrary Java code by using (1) fileUpload.do or (2) lib-…
|
NVD-CWE-Other
|
CVE-2016-1524
|
2024-11-21 11:46 |
2016-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268473
|
6.5 |
MEDIUM
Network
|
fedoraproject mozilla sil debian
|
fedora firefox thunderbird graphite2 debian_linux
|
The SillMap::readFace function in FeatureMap.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, mishandles a return value, which allows…
|
NVD-CWE-Other
|
CVE-2016-1523
|
2024-11-21 11:46 |
2016-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268474
|
8.8 |
HIGH
Network
|
fedoraproject mozilla debian sil
|
fedora firefox thunderbird debian_linux graphite2
|
Code.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not consider recursive load calls during a size check, which allows remote…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1522
|
2024-11-21 11:46 |
2016-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268475
|
8.8 |
HIGH
Network
|
debian sil mozilla fedoraproject
|
debian_linux graphite2 firefox thunderbird fedora
|
The directrun function in directmachine.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not validate a certain skip operation, …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1521
|
2024-11-21 11:46 |
2016-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268476
|
5.3 |
MEDIUM
Network
|
cisco
|
spark
|
The REST interface in Cisco Spark 2015-06 allows remote attackers to cause a denial of service (resource outage) by accessing an administrative page, aka Bug ID CSCuv84125.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1324
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268477
|
4.3 |
MEDIUM
Network
|
cisco
|
spark
|
The REST interface in Cisco Spark 2015-06 allows remote authenticated users to obtain sensitive information via a request for an unspecified file, aka Bug ID CSCuv84048.
|
CWE-200
Information Exposure
|
CVE-2016-1323
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268478
|
7.5 |
HIGH
Network
|
cisco
|
spark
|
The REST interface in Cisco Spark 2015-07-04 allows remote attackers to bypass intended access restrictions and create arbitrary user accounts via unspecified web requests, aka Bug ID CSCuv72584.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1322
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268479
|
6.7 |
MEDIUM
Local
|
cisco
|
prime_collaboration
|
The CLI in Cisco Prime Collaboration 9.0 and 11.0 allows local users to execute arbitrary OS commands as root by leveraging administrator privileges, aka Bug ID CSCux69286.
|
CWE-264 CWE-78
Permissions, Privileges, and Access Controls OS Command
|
CVE-2016-1320
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268480
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance_firmeware
|
The proxy engine in Cisco Advanced Malware Protection (AMP), when used with Email Security Appliance (ESA) 9.5.0-201, 9.6.0-051, and 9.7.0-125, allows remote attackers to bypass intended content rest…
|
CWE-284
Improper Access Control
|
CVE-2016-1315
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|