|
268491
|
8.8 |
HIGH
Network
|
cisco
|
asa_cx_context-aware_security_software prime_security_manager
|
The RBAC implementation in Cisco ASA-CX Content-Aware Security software before 9.3.1.1(112) and Cisco Prime Security Manager (PRSM) software before 9.3.1.1(112) allows remote authenticated users to c…
|
CWE-284
Improper Access Control
|
CVE-2016-1301
|
2024-11-21 11:46 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268492
|
6.1 |
MEDIUM
Network
|
cisco
|
jabber_guest
|
Cross-site scripting (XSS) vulnerability in the management interface in Cisco Jabber Guest Server 10.6(8) allows remote attackers to inject arbitrary web script or HTML via the host tag parameter, ak…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1311
|
2024-11-21 11:46 |
2016-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268493
|
6.1 |
MEDIUM
Network
|
sun
|
opensolaris
|
Cross-site scripting (XSS) vulnerability in Cisco Unity Connection 11.5(0.199) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuy09033.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1310
|
2024-11-21 11:46 |
2016-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268494
|
6.1 |
MEDIUM
Network
|
sun
|
opensolaris
|
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Fog Director 1.0(0) allow remote attackers to inject arbitrary web script or HTML via a crafted parameter, aka Bug ID CSCux80466.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1306
|
2024-11-21 11:46 |
2016-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268495
|
5.9 |
MEDIUM
Network
|
isc
|
bind
|
rdataset.c in ISC BIND 9 Supported Preview Edition 9.9.8-S before 9.9.8-S5, when nxdomain-redirect is enabled, allows remote attackers to cause a denial of service (REQUIRE assertion failure and daem…
|
CWE-20
Improper Input Validation
|
CVE-2016-1284
|
2024-11-21 11:46 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268496
|
10.0 |
CRITICAL
Network
|
radicale
|
radicale
|
The filesystem storage backend in Radicale before 1.1 on Windows allows remote attackers to read or write to arbitrary files via a crafted path, as demonstrated by /c:/file/ignore.
|
CWE-21
Pathname Traversal and Equivalence Errors
|
CVE-2016-1505
|
2024-11-21 11:46 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268497
|
5.4 |
MEDIUM
Network
|
apple
|
iphone_os
|
WebSheet in Apple iOS before 9.2.1 allows remote attackers to read or write to cookies by operating a crafted captive portal.
|
CWE-200 CWE-19
Information Exposure Data Processing Errors
|
CVE-2016-1730
|
2024-11-21 11:46 |
2016-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268498
|
7.3 |
HIGH
Network
|
apple
|
mac_os_x
|
Untrusted search path vulnerability in OSA Scripts in Apple OS X before 10.11.3 allows attackers to load arbitrary script libraries via a quarantined application.
|
NVD-CWE-Other
|
CVE-2016-1729
|
2024-11-21 11:46 |
2016-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268499
|
4.3 |
MEDIUM
Network
|
apple
|
safari iphone_os
|
The Cascading Style Sheets (CSS) implementation in Apple iOS before 9.2.1 and Safari before 9.0.3 mishandles the "a:visited button" selector during height processing, which makes it easier for remote…
|
CWE-200
Information Exposure
|
CVE-2016-1728
|
2024-11-21 11:46 |
2016-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268500
|
8.8 |
HIGH
Network
|
apple webkitgtk
|
tvos iphone_os watchos safari webkitgtk\+
|
WebKit, as used in Apple iOS before 9.2.1, Safari before 9.0.3, and tvOS before 9.1.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1727
|
2024-11-21 11:46 |
2016-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|