|
267911
|
4.7 |
MEDIUM
Local
|
solarwinds
|
virtualization_manager
|
SolarWinds Virtualization Manager 6.3.1 and earlier uses weak encryption to store passwords in /etc/shadow, which allows local users with superuser privileges to obtain user passwords via a brute for…
|
CWE-200
Information Exposure
|
CVE-2016-5709
|
2024-11-21 11:54 |
2016-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267912
|
5.9 |
MEDIUM
Network
|
huawei
|
huawei_firmware
|
Memory leak in Huawei IPS Module, NGFW Module, NIP6300, NIP6600, and Secospace USG6300, USG6500, USG6600, USG9500, and AntiDDoS8000 V500R001C00 before V500R001C20SPC100, when in hot standby networkin…
|
CWE-399
Resource Management Errors
|
CVE-2016-5435
|
2024-11-21 11:54 |
2016-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267913
|
6.1 |
MEDIUM
Local
|
citrix
|
ios_receiver
|
Citrix iOS Receiver before 7.0 allows attackers to cause TLS certificates to be incorrectly validated via unspecified vectors.
|
CWE-310 CWE-20
Cryptographic Issues Improper Input Validation
|
CVE-2016-5433
|
2024-11-21 11:54 |
2016-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267914
|
8.2 |
HIGH
Network
|
openstack
|
neutron
|
The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended MAC-spoofing protection mechanism and consequently cause a denial of serv…
|
CWE-254
7PK - Security Features
|
CVE-2016-5363
|
2024-11-21 11:54 |
2016-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267915
|
8.2 |
HIGH
Network
|
openstack
|
neutron
|
The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended DHCP-spoofing protection mechanism and consequently cause a denial of ser…
|
CWE-254
7PK - Security Features
|
CVE-2016-5362
|
2024-11-21 11:54 |
2016-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267916
|
7.5 |
HIGH
Network
|
canonical debian libexpat_project google
|
ubuntu_linux debian_linux libexpat android
|
The XML parser in Expat does not use sufficient entropy for hash initialization, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted identifiers in an …
|
CWE-399
Resource Management Errors
|
CVE-2016-5300
|
2024-11-21 11:54 |
2016-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267917
|
7.5 |
HIGH
Network
|
libreswan
|
libreswan
|
programs/pluto/ikev1.c in libreswan before 3.17 retransmits in initial-responder states, which allows remote attackers to cause a denial of service (traffic amplification) via a spoofed UDP packet. N…
|
CWE-20
Improper Input Validation
|
CVE-2016-5361
|
2024-11-21 11:54 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267918
|
7.5 |
HIGH
Network
|
huawei
|
honor_ws851_firmware
|
Huawei Honor WS851 routers with software 1.1.21.1 and earlier allow remote attackers to obtain sensitive information via unspecified vectors, aka HWPSIRT-2016-05053.
|
CWE-200
Information Exposure
|
CVE-2016-5367
|
2024-11-21 11:54 |
2016-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267919
|
7.5 |
HIGH
Network
|
huawei
|
honor_ws851_firmware
|
Huawei Honor WS851 routers with software 1.1.21.1 and earlier allow remote attackers to modify configuration data via vectors related to a "file injection vulnerability," aka HWPSIRT-2016-05052.
|
CWE-284
Improper Access Control
|
CVE-2016-5366
|
2024-11-21 11:54 |
2016-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267920
|
9.8 |
CRITICAL
Network
|
huawei
|
honor_ws851_firmware
|
Stack-based buffer overflow in Huawei Honor WS851 routers with software 1.1.21.1 and earlier allows remote attackers to execute arbitrary commands with root privileges via unspecified vectors, aka HW…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5365
|
2024-11-21 11:54 |
2016-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|