|
266651
|
8.1 |
HIGH
Network
|
microsoft
|
windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_rt_8.1 windows_vista
|
The Print Spooler service in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511…
|
CWE-254
7PK - Security Features
|
CVE-2016-3238
|
2024-11-21 11:49 |
2016-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266652
|
7.5 |
HIGH
Network
|
ibm
|
websphere_application_server
|
The API Discovery implementation in IBM WebSphere Application Server (WAS) 8.5.5.8 through 8.5.5.9 Liberty before Liberty Fix Pack 16.0.0.2 allows remote authenticated users to gain privileges via an…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2945
|
2024-11-21 11:49 |
2016-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266653
|
8.8 |
HIGH
Network
|
ibm
|
jazz_reporting_service
|
Cross-site request forgery (CSRF) vulnerability in the Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016, 6.0 and 6.0.1 before 6.0.1 ifix…
|
CWE-352
Origin Validation Error
|
CVE-2016-2889
|
2024-11-21 11:49 |
2016-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266654
|
5.4 |
MEDIUM
Network
|
ibm
|
jazz_reporting_service
|
Cross-site scripting (XSS) vulnerability in the Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allows rem…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2888
|
2024-11-21 11:49 |
2016-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266655
|
7.5 |
HIGH
Network
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 8.5 through 8.5.5.9 Liberty before Liberty Fix Pack 16.0.0.2 does not include the HTTPOnly flag in a Set-Cookie header for an unspecified JAX-RS API cookie, whi…
|
CWE-200
Information Exposure
|
CVE-2016-2923
|
2024-11-21 11:49 |
2016-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266656
|
7.5 |
HIGH
Network
|
hp apache debian canonical
|
icewall_sso_agent_option icewall_identity_manager tomcat debian_linux commons_fileupload ubuntu_linux
|
The MultipartStream class in Apache Commons Fileupload before 1.3.2, as used in Apache Tomcat 7.x before 7.0.70, 8.x before 8.0.36, 8.5.x before 8.5.3, and 9.x before 9.0.0.M7 and other products, all…
|
CWE-20
Improper Input Validation
|
CVE-2016-3092
|
2024-11-21 11:49 |
2016-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266657
|
2.5 |
LOW
Local
|
ibm
|
tivoli_storage_manager
|
IBM Spectrum Protect (formerly Tivoli Storage Manager) 5.5 through 6.3 before 6.3.2.6, 6.4 before 6.4.3.3, and 7.1 before 7.1.6 allows local users to obtain sensitive retrieved data from arbitrary ac…
|
CWE-200
Information Exposure
|
CVE-2016-2894
|
2024-11-21 11:49 |
2016-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266658
|
6.5 |
MEDIUM
Network
|
ibm
|
security_qradar_incident_forensics
|
IBM Security QRadar Incident Forensics 7.2.x before 7.2.7 allows remote attackers to bypass authentication, and obtain sensitive information or modify data, via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2968
|
2024-11-21 11:49 |
2016-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266659
|
5.3 |
MEDIUM
Network
|
ibm
|
integration_bus websphere_message_broker
|
The integration server in IBM Integration Bus 9 before 9.0.0.6 and 10 before 10.0.0.5 and WebSphere Message Broker 8 before 8.0.0.8 allows remote attackers to obtain sensitive Tomcat version informat…
|
CWE-200
Information Exposure
|
CVE-2016-2961
|
2024-11-21 11:49 |
2016-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266660
|
5.4 |
MEDIUM
Network
|
ibm
|
tririga_application_platform
|
Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote authenticated users to inject arbitrary web s…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2883
|
2024-11-21 11:49 |
2016-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|