|
266191
|
8.8 |
HIGH
Network
|
redhat adobe suse opensuse
|
enterprise_linux_server enterprise_linux_workstation enterprise_linux_desktop flash_player_desktop_runtime flash_player linux_enterprise_workstation_extension linux_enterprise_deskt…
|
Unspecified vulnerability in Adobe Flash Player 21.0.0.242 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-4122
|
2024-11-21 11:51 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266192
|
9.8 |
CRITICAL
Network
|
adobe
|
flash_player air_sdk_\&_compiler air_sdk flash_player_desktop_runtime air_desktop_runtime
|
Adobe Flash Player before 18.0.0.352 and 19.x through 21.x before 21.0.0.242 on Windows and OS X and before 11.2.202.621 on Linux allows attackers to execute arbitrary code or cause a denial of servi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4120
|
2024-11-21 11:51 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266193
|
7.5 |
HIGH
Network
|
gnupg canonical
|
libksba ubuntu_linux
|
The append_utf8_value function in the DN decoder (dn.c) in Libksba before 1.3.3 allows remote attackers to cause a denial of service (out-of-bounds read) by clearing the high bit of the byte after in…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4356
|
2024-11-21 11:51 |
2016-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266194
|
7.5 |
HIGH
Network
|
gnupg canonical
|
libksba ubuntu_linux
|
Multiple integer overflows in ber-decoder.c in Libksba before 1.3.3 allow remote attackers to cause a denial of service (crash) via crafted BER data, which leads to a buffer overflow.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4355
|
2024-11-21 11:51 |
2016-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266195
|
7.5 |
HIGH
Network
|
canonical gnupg
|
ubuntu_linux libksba
|
ber-decoder.c in Libksba before 1.3.3 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (crash) via crafted BER data, which leads to a buffer overflow.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4354
|
2024-11-21 11:51 |
2016-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266196
|
7.5 |
HIGH
Network
|
gnupg canonical
|
libksba ubuntu_linux
|
ber-decoder.c in Libksba before 1.3.3 does not properly handle decoder stack overflows, which allows remote attackers to cause a denial of service (abort) via crafted BER data.
|
CWE-20
Improper Input Validation
|
CVE-2016-4353
|
2024-11-21 11:51 |
2016-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266197
|
5.5 |
MEDIUM
Local
|
huawei
|
hilink_app
|
The Huawei Hilink App application before 3.19.2 for Android does not validate SSL certificates, which allows local users to have unspecified impact via unknown vectors, aka HWPSIRT-2016-03008.
|
CWE-310
Cryptographic Issues
|
CVE-2016-4005
|
2024-11-21 11:51 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266198
|
9.8 |
CRITICAL
Network
|
medhost
|
perioperative_information_management_system
|
MEDHOST Perioperative Information Management System (aka PIMS or VPIMS) before 2015R1 has hardcoded credentials, which makes it easier for remote attackers to obtain sensitive information via direct …
|
NVD-CWE-Other
|
CVE-2016-4328
|
2024-11-21 11:51 |
2016-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266199
|
9.8 |
CRITICAL
Network
|
chef
|
chef_manage
|
The Chef Manage (formerly opscode-manage) add-on before 1.12.0 for Chef allows remote attackers to execute arbitrary code via crafted serialized data in a cookie.
|
NVD-CWE-Other
|
CVE-2016-4326
|
2024-11-21 11:51 |
2016-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266200
|
8.8 |
HIGH
Network
|
hpe
|
project_and_portfolio_management_center
|
HPE Project and Portfolio Management Center (PPM) 9.2x and 9.3x before 9.32.0002 allows remote authenticated users to execute arbitrary commands or obtain sensitive information via unspecified vector…
|
NVD-CWE-noinfo
|
CVE-2016-4370
|
2024-11-21 11:51 |
2016-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|