|
267121
|
6.1 |
MEDIUM
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_elastic_runtime cloud_foundry_uaa cloud_foundry login-server cloud_foundry_uaa_bosh
|
The UAA OAuth approval pages in Cloud Foundry v208 to v231, Login-server v1.6 to v1.14, UAA v2.0.0 to v2.7.4.1, UAA v3.0.0 to v3.2.0, UAA-Release v2 to v7 and Pivotal Elastic Runtime 1.6.x versions p…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0781
|
2024-11-21 11:42 |
2017-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267122
|
7.5 |
HIGH
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_elastic_runtime cf-release
|
It was discovered that cf-release v231 and lower, Pivotal Cloud Foundry Elastic Runtime 1.5.x versions prior to 1.5.17 and Pivotal Cloud Foundry Elastic Runtime 1.6.x versions prior to 1.6.18 do not …
|
CWE-399
Resource Management Errors
|
CVE-2016-0780
|
2024-11-21 11:42 |
2017-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267123
|
9.8 |
CRITICAL
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_elastic_runtime garden_linux
|
Cloud Foundry Garden-Linux versions prior to v0.333.0 and Elastic Runtime 1.6.x version prior to 1.6.17 contain a flaw in managing container files during Docker image preparation that could be used t…
|
CWE-19
Data Processing Errors
|
CVE-2016-0761
|
2024-11-21 11:42 |
2017-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267124
|
8.1 |
HIGH
Network
|
clusterlabs redhat fedoraproject
|
pcs enterprise_linux fedora
|
Session fixation vulnerability in pcsd in pcs before 0.9.157.
|
CWE-384
Session Fixation
|
CVE-2016-0721
|
2024-11-21 11:42 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267125
|
8.8 |
HIGH
Network
|
clusterlabs redhat fedoraproject
|
pcs enterprise_linux fedora
|
Cross-site request forgery (CSRF) vulnerability in pcsd web UI in pcs before 0.9.149.
|
CWE-352
Origin Validation Error
|
CVE-2016-0720
|
2024-11-21 11:42 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267126
|
7.5 |
HIGH
Network
|
google
|
android
|
Android allows users to cause a denial of service.
|
NVD-CWE-noinfo
|
CVE-2016-0833
|
2024-11-21 11:42 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267127
|
7.8 |
HIGH
Local
|
canonical
|
ubuntu_linux
|
The crontab script in the ntp package before 1:4.2.6.p3+dfsg-1ubuntu3.11 on Ubuntu 12.04 LTS, before 1:4.2.6.p5+dfsg-3ubuntu2.14.04.10 on Ubuntu 14.04 LTS, on Ubuntu Wily, and before 1:4.2.8p4+dfsg-3…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0727
|
2024-11-21 11:42 |
2017-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267128
|
9.8 |
CRITICAL
Network
|
apache
|
tomee
|
The EjbObjectInputStream class in Apache TomEE before 1.7.4 and 7.x before 7.0.0-M3 allows remote attackers to execute arbitrary code via a crafted serialized object.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2016-0779
|
2024-11-21 11:42 |
2017-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267129
|
6.1 |
MEDIUM
Network
|
zahmit_design
|
connections_business_directory_plugin
|
Cross-site scripting (XSS) vulnerability in includes/admin/pages/manage.php in the Connections Business Directory plugin before 8.5.9 for WordPress allows remote attackers to inject arbitrary web scr…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0770
|
2024-11-21 11:42 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267130
|
6.1 |
MEDIUM
Network
|
rsa
|
web_threat_detection
|
EMC RSA Web Threat Detection version 5.0, RSA Web Threat Detection version 5.1, RSA Web Threat Detection version 5.1.2 has a cross site scripting vulnerability that could potentially be exploited by …
|
CWE-79
Cross-site Scripting
|
CVE-2016-0919
|
2024-11-21 11:42 |
2017-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|