|
266571
|
6.5 |
MEDIUM
Network
|
broadcom
|
api_gateway
|
CRLF injection vulnerability in CA API Gateway (formerly Layer7 API Gateway) 7.1 before 7.1.04, 8.0 through 8.3 before 8.3.01, and 8.4 before 8.4.01 allows remote attackers to have an unspecified imp…
|
NVD-CWE-Other
|
CVE-2016-3118
|
2024-11-21 11:49 |
2016-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266572
|
7.5 |
HIGH
Network
|
proftpd opensuse fedoraproject
|
proftpd opensuse fedora
|
The mod_tls module in ProFTPD before 1.3.5b and 1.3.6 before 1.3.6rc2 does not properly handle the TLSDHParamFile directive, which might cause a weaker than intended Diffie-Hellman (DH) key to be use…
|
CWE-310 CWE-254
Cryptographic Issues 7PK - Security Features
|
CVE-2016-3125
|
2024-11-21 11:49 |
2016-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266573
|
8.2 |
HIGH
Network
|
php apple
|
php mac_os_x
|
The phar_parse_zipfile function in zip.c in the PHAR extension in PHP before 5.5.33 and 5.6.x before 5.6.19 allows remote attackers to obtain sensitive information from process memory or cause a deni…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3142
|
2024-11-21 11:49 |
2016-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266574
|
9.8 |
CRITICAL
Network
|
apple php
|
mac_os_x php
|
Use-after-free vulnerability in wddx.c in the WDDX extension in PHP before 5.5.33 and 5.6.x before 5.6.19 allows remote attackers to cause a denial of service (memory corruption and application crash…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3141
|
2024-11-21 11:49 |
2016-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266575
|
5.3 |
MEDIUM
Network
|
opensuse mit
|
leap opensuse kerberos_5
|
The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the D…
|
NVD-CWE-Other
|
CVE-2016-3119
|
2024-11-21 11:49 |
2016-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266576
|
6.4 |
MEDIUM
Network
|
dropbear_ssh_project
|
dropbear_ssh
|
CRLF injection vulnerability in Dropbear SSH before 2016.72 allows remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data.
|
NVD-CWE-Other
|
CVE-2016-3116
|
2024-11-21 11:49 |
2016-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266577
|
6.4 |
MEDIUM
Network
|
openbsd oracle
|
openssh vm_server
|
Multiple CRLF injection vulnerabilities in session.c in sshd in OpenSSH before 7.2p2 allow remote authenticated users to bypass intended shell-command restrictions via crafted X11 forwarding data, re…
|
NVD-CWE-Other
|
CVE-2016-3115
|
2024-11-21 11:49 |
2016-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266578
|
3.4 |
LOW
Local
|
siemens
|
apogee_insight
|
Siemens APOGEE Insight uses weak permissions for the application folder, which allows local users to obtain sensitive information or modify data via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-3155
|
2024-11-21 11:49 |
2016-03-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266579
|
9.8 |
CRITICAL
Network
|
pcre
|
pcre pcre2
|
The compile_branch function in pcre_compile.c in PCRE 8.x before 8.39 and pcre2_compile.c in PCRE2 before 10.22 mishandles patterns containing an (*ACCEPT) substring in conjunction with nested parent…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3191
|
2024-11-21 11:49 |
2016-03-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266580
|
9.8 |
CRITICAL
Network
|
ruby-lang debian
|
ruby debian_linux
|
An exploitable heap overflow vulnerability exists in the Psych::Emitter start_document function of Ruby. In Psych::Emitter start_document function heap buffer "head" allocation is made based on tags …
|
CWE-787
Out-of-bounds Write
|
CVE-2016-2338
|
2024-11-21 11:48 |
2022-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|