|
266111
|
9.8 |
CRITICAL
Network
|
redislabs
|
redis
|
A buffer overflow in Redis 3.2.x prior to 3.2.4 causes arbitrary code execution when a crafted command is sent. An out of bounds write vulnerability exists in the handling of the client-output-buffer…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-8339
|
2024-11-21 11:59 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266112
|
7.8 |
HIGH
Local
|
uclouvain
|
openjpeg
|
A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists in the jpeg2000 image file format parser as implem…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-8332
|
2024-11-21 11:59 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266113
|
6.1 |
MEDIUM
Network
|
yandex
|
yandex_browser
|
XSS in Yandex Browser Translator in Yandex browser for desktop for versions from 15.12 to 16.2 could be used by remote attacker for evaluation arbitrary javascript code.
|
CWE-79
Cross-site Scripting
|
CVE-2016-8506
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266114
|
6.1 |
MEDIUM
Network
|
yandex
|
yandex.browser
|
XSS in Yandex Browser BookReader in Yandex browser for desktop for versions before 16.6. could be used by remote attacker for evaluation arbitrary javascript code.
|
CWE-79
Cross-site Scripting
|
CVE-2016-8505
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266115
|
4.3 |
MEDIUM
Network
|
yandex
|
yandex_browser
|
CSRF of synchronization form in Yandex Browser for desktop before version 16.6 could be used by remote attacker to steal saved data in browser profile.
|
CWE-352
Origin Validation Error
|
CVE-2016-8504
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266116
|
7.3 |
HIGH
Network
|
yandex
|
yandex_browser
|
Yandex Protect Anti-phishing warning in Yandex Browser for desktop from version 16.7 to 16.9 could be used by remote attacker for brute-forcing passwords from important web-resource with special Java…
|
CWE-254
7PK - Security Features
|
CVE-2016-8503
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266117
|
7.3 |
HIGH
Network
|
yandex
|
yandex_browser
|
Yandex Protect Anti-phishing warning in Yandex Browser for desktop from version 15.12.0 to 16.2 could be used by remote attacker for brute-forcing passwords from important web-resource with special J…
|
CWE-254
7PK - Security Features
|
CVE-2016-8502
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266118
|
5.3 |
MEDIUM
Network
|
yandex
|
yandex_browser
|
Security WiFi bypass in Yandex Browser from version 15.10 to 15.12 allows remote attacker to sniff traffic in open or WEP-protected wi-fi networks despite of special security mechanism is enabled.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8501
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266119
|
7.6 |
HIGH
Network
|
oracle
|
peoplesoft_enterprise_peopletools
|
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.54 and 8.55 allows remote authenticated users to affect confidentiality and integrity via …
|
CWE-284
Improper Access Control
|
CVE-2016-8296
|
2024-11-21 11:59 |
2016-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266120
|
4.3 |
MEDIUM
Network
|
oracle
|
peoplesoft_enterprise_human_capital_management_time_and_labor
|
Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.2 allows remote authenticated users to affect confidentiality via unknown vectors.
|
CWE-200
Information Exposure
|
CVE-2016-8295
|
2024-11-21 11:59 |
2016-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|