|
266001
|
4.3 |
MEDIUM
Network
|
cybozu
|
garoon
|
Cybozu Garoon 3.0.0 to 4.2.2 allows remote attackers to bypass access restrictions to delete other users' To-Dos via unspecified vectors.
|
CWE-284
Improper Access Control
|
CVE-2016-7801
|
2024-11-21 11:58 |
2017-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266002
|
5.4 |
MEDIUM
Network
|
f5
|
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<…
|
A stored cross-site scripting (XSS) vulnerability in the Configuration utility device name change page in BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, GTM, Link Controller, PEM, PSM,…
|
CWE-79
Cross-site Scripting
|
CVE-2016-7469
|
2024-11-21 11:58 |
2017-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266003
|
9.8 |
CRITICAL
Network
|
artifex
|
ghostscript
|
Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently execute arbitrary code by leveraging type confusion in .initialize_dsc_parser.
|
CWE-704
Incorrect Type Conversion or Cast
|
CVE-2016-7979
|
2024-11-21 11:58 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266004
|
9.8 |
CRITICAL
Network
|
artifex
|
ghostscript
|
Use-after-free vulnerability in Ghostscript 9.20 might allow remote attackers to execute arbitrary code via vectors related to a reference leak in .setdevice.
|
CWE-416
Use After Free
|
CVE-2016-7978
|
2024-11-21 11:58 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266005
|
5.5 |
MEDIUM
Local
|
artifex
|
ghostscript
|
Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently read arbitrary files via the use of the .libfile operator in a crafted postscript d…
|
CWE-200
Information Exposure
|
CVE-2016-7977
|
2024-11-21 11:58 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266006
|
7.8 |
HIGH
Local
|
7-zip
|
7-zip
|
Untrusted search path vulnerability in 7 Zip for Windows 16.02 and earlier allows remote attackers to gain privileges via a Trojan horse DLL in an unspecified directory.
|
CWE-426
Untrusted Search Path
|
CVE-2016-7804
|
2024-11-21 11:58 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266007
|
7.5 |
HIGH
Network
|
f5
|
big-ip_websafe big-ip_protocol_security_module big-ip_policy_enforcement_manager big-ip_link_controller big-ip_global_traffic_manager big-ip_application_security_manager big-ip_acce…
|
The Traffic Management Microkernel (TMM) in F5 BIG-IP LTM, AAM, AFM, APM, ASM, GTM, Link Controller, PEM, PSM, and WebSafe 11.6.0 before 11.6.0 HF6, 11.5.0 before 11.5.3 HF2, and 11.3.0 before 11.4.1…
|
CWE-20
Improper Input Validation
|
CVE-2016-7476
|
2024-11-21 11:58 |
2017-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266008
|
7.5 |
HIGH
Network
|
brocade
|
netiron_mlx_series_firmware netiron_cer_series_firmware netiron_ces_series_firmware netiron_xmr_series_firmware
|
Improper checks for unusual or exceptional conditions in Brocade NetIron 05.8.00 and later releases up to and including 06.1.00, when the Management Module is continuously scanned on port 22, may all…
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2016-8209
|
2024-11-21 11:58 |
2017-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266009
|
8.8 |
HIGH
Network
|
broadcom
|
fabric_operating_system
|
A privilege escalation vulnerability in Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) releases earlier than v7.4.1d and v8.0.1b could allow an authenticated attacker to elevate t…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8202
|
2024-11-21 11:58 |
2017-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266010
|
5.5 |
MEDIUM
Local
|
hibara_software
|
attachecase_for_java attachecase_pro attachecase_lite
|
Directory traversal vulnerability in AttacheCase for Java 0.60 and earlier, AttacheCase Lite 1.4.6 and earlier, and AttacheCase Pro 1.5.7 and earlier allows remote attackers to read arbitrary files v…
|
CWE-22
Path Traversal
|
CVE-2016-7843
|
2024-11-21 11:58 |
2017-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|