|
266341
|
6.5 |
MEDIUM
Adjacent
|
cisco
|
wireless_lan_controller wireless_lan_controller_7.2 wireless_lan_controller_7.0 wireless_lan_controller_7.4 wireless_lan_controller_6.0 wireless_lan_controller_7.1
|
The Adaptive Wireless Intrusion Prevention System (wIPS) feature on Cisco Wireless LAN Controller (WLC) devices before 8.0.140.0, 8.1.x and 8.2.x before 8.2.121.0, and 8.3.x before 8.3.102.0 allows r…
|
CWE-399
Resource Management Errors
|
CVE-2016-6376
|
2024-11-21 11:56 |
2016-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266342
|
9.8 |
CRITICAL
Network
|
citrix
|
xenapp xendesktop
|
Citrix XenApp 6.x before 6.5 HRP07 and 7.x before 7.9 and Citrix XenDesktop before 7.9 might allow attackers to weaken an unspecified security mitigation via vectors related to memory permission.
|
CWE-254
7PK - Security Features
|
CVE-2016-6493
|
2024-11-21 11:56 |
2016-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266343
|
8.6 |
HIGH
Network
|
sophos
|
mobile_control_eas_proxy
|
Sophos EAS Proxy before 6.2.0 for Sophos Mobile Control, when Lotus Traveler is enabled, allows remote attackers to access arbitrary web-resources from the backend mail system via a request for the r…
|
CWE-254
7PK - Security Features
|
CVE-2016-6597
|
2024-11-21 11:56 |
2016-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266344
|
7.8 |
HIGH
Local
|
siemens
|
sinema_server
|
Siemens SINEMA Server uses weak permissions for the application folder, which allows local users to gain privileges via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6486
|
2024-11-21 11:56 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266345
|
7.5 |
HIGH
Network
|
openbsd fedoraproject
|
openssh fedora
|
The auth_password function in auth-passwd.c in sshd in OpenSSH before 7.3 does not limit password lengths for password authentication, which allows remote attackers to cause a denial of service (cryp…
|
CWE-20
Improper Input Validation
|
CVE-2016-6515
|
2024-11-21 11:56 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266346
|
8.8 |
HIGH
Network
|
wordpress
|
wordpress
|
Cross-site request forgery (CSRF) vulnerability in the wp_ajax_wp_compression_test function in wp-admin/includes/ajax-actions.php in WordPress before 4.5 allows remote attackers to hijack the authent…
|
CWE-352
Origin Validation Error
|
CVE-2016-6635
|
2024-11-21 11:56 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266347
|
6.1 |
MEDIUM
Network
|
wordpress
|
wordpress
|
Cross-site scripting (XSS) vulnerability in the network settings page in WordPress before 4.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-6634
|
2024-11-21 11:56 |
2016-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266348
|
5.9 |
MEDIUM
Network
|
wireshark
|
wireshark
|
epan/dissectors/packet-wbxml.c in the WBXML dissector in Wireshark 2.x before 2.0.5 does not restrict the recursion depth, which allows remote attackers to cause a denial of service (application cras…
|
CWE-399
Resource Management Errors
|
CVE-2016-6513
|
2024-11-21 11:56 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266349
|
5.9 |
MEDIUM
Network
|
wireshark
|
wireshark
|
epan/dissectors/packet-wap.c in Wireshark 2.x before 2.0.5 omits an overflow check in the tvb_get_guintvar function, which allows remote attackers to cause a denial of service (infinite loop) via a c…
|
CWE-20
Improper Input Validation
|
CVE-2016-6512
|
2024-11-21 11:56 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266350
|
5.9 |
MEDIUM
Network
|
wireshark
|
wireshark
|
epan/proto.c in Wireshark 1.12.x before 1.12.13 and 2.x before 2.0.5 allows remote attackers to cause a denial of service (OpenFlow dissector large loop) via a crafted packet.
|
CWE-399
Resource Management Errors
|
CVE-2016-6511
|
2024-11-21 11:56 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|