|
266151
|
7.5 |
HIGH
Network
|
google
|
android
|
On Samsung Galaxy S4 through S7 devices, a malformed OTA WAP PUSH SMS containing an OMACP message sent remotely triggers an unhandled ArrayIndexOutOfBoundsException in Samsung's implementation of the…
|
CWE-254
7PK - Security Features
|
CVE-2016-7989
|
2024-11-21 11:58 |
2016-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266152
|
7.5 |
HIGH
Network
|
google
|
android
|
On Samsung Galaxy S4 through S7 devices, absence of permissions on the BroadcastReceiver responsible for handling the com.[Samsung].android.intent.action.SET_WIFI intent leads to unsolicited configur…
|
CWE-275 CWE-388
Permission Issues 7PK - Errors
|
CVE-2016-7988
|
2024-11-21 11:58 |
2016-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266153
|
6.5 |
MEDIUM
Network
|
dokuwiki
|
dokuwiki
|
DokuWiki 2016-06-26a and older uses $_SERVER[HTTP_HOST] instead of the baseurl setting as part of the password-reset URL. This can lead to phishing attacks. (A remote unauthenticated attacker can cha…
|
CWE-20
Improper Input Validation
|
CVE-2016-7965
|
2024-11-21 11:58 |
2016-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266154
|
8.6 |
HIGH
Network
|
dokuwiki
|
dokuwiki
|
The sendRequest method in HTTPClient Class in file /inc/HTTPClient.php in DokuWiki 2016-06-26a and older, when media file fetching is enabled, has no way to restrict access to private networks. This …
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2016-7964
|
2024-11-21 11:58 |
2016-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266155
|
7.5 |
HIGH
Network
|
artifex
|
mujs
|
An out-of-bounds read vulnerability was observed in Sp_replace_regexp function of Artifex Software, Inc. MuJS before 5000749f5afe3b956fc916e407309de840997f4a. A successful exploitation of this issue …
|
CWE-125
Out-of-bounds Read
|
CVE-2016-7506
|
2024-11-21 11:58 |
2016-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266156
|
9.8 |
CRITICAL
Network
|
artifex
|
mujs
|
A buffer overflow vulnerability was observed in divby function of Artifex Software, Inc. MuJS before 8c805b4eb19cf2af689c860b77e6111d2ee439d5. A successful exploitation of this issue can lead to code…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-7505
|
2024-11-21 11:58 |
2016-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266157
|
9.8 |
CRITICAL
Network
|
artifex
|
mujs
|
A use-after-free vulnerability was observed in Rp_toString function of Artifex Software, Inc. MuJS before 5c337af4b3df80cf967e4f9f6a21522de84b392a. A successful exploitation of this issue can lead to…
|
CWE-416
Use After Free
|
CVE-2016-7504
|
2024-11-21 11:58 |
2016-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266158
|
7.5 |
HIGH
Network
|
moodle
|
moodle
|
Moodle 3.1.2 allows remote attackers to obtain sensitive information via unspecified vectors, related to a "SQL Injection" issue affecting the Administration panel function in the installation proces…
|
CWE-200 CWE-89
Information Exposure SQL Injection
|
CVE-2016-7919
|
2024-11-21 11:58 |
2016-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266159
|
9.8 |
CRITICAL
Network
|
adobe
|
acrobat acrobat_dc acrobat_reader_dc reader
|
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attacker…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-7854
|
2024-11-21 11:58 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266160
|
9.8 |
CRITICAL
Network
|
adobe
|
acrobat acrobat_dc acrobat_reader_dc reader
|
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attacker…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-7853
|
2024-11-21 11:58 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|