|
268981
|
8.4 |
HIGH
Local
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Untrusted search path vulnerability in Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous before 15.010.2…
|
CWE-20
Improper Input Validation
|
CVE-2016-1008
|
2024-11-21 11:45 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268982
|
9.8 |
CRITICAL
Network
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous before 15.010.20060 on Windows and OS X allow attacker…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1007
|
2024-11-21 11:45 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268983
|
8.8 |
HIGH
Network
|
corega
|
cg-wlbargmh_firmware cg-wlbargnl_firmware
|
Cross-site request forgery (CSRF) vulnerability on Corega CG-WLBARGMH and CG-WLBARGNL devices allows remote attackers to hijack the authentication of administrators for requests that perform administ…
|
CWE-352
Origin Validation Error
|
CVE-2016-1158
|
2024-11-21 11:45 |
2016-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268984
|
6.1 |
MEDIUM
Network
|
log-chat_project
|
log-chat
|
Cross-site scripting (XSS) vulnerability in log_chat.cgi in Script* Log-Chat before 2.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1157
|
2024-11-21 11:45 |
2016-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268985
|
5.7 |
MEDIUM
Network
|
linecorp
|
line
|
LINE 4.3.0.724 and earlier on Windows and 4.3.1 and earlier on OS X allows remote authenticated users to cause a denial of service (application crash) via a crafted post that is mishandled when displ…
|
CWE-20
Improper Input Validation
|
CVE-2016-1156
|
2024-11-21 11:45 |
2016-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268986
|
9.1 |
CRITICAL
Network
|
cuore
|
ec-cube_help_plugin
|
SQL injection vulnerability in the Help plug-in 1.3.5 and earlier in Cuore EC-CUBE allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2016-1154
|
2024-11-21 11:45 |
2016-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268987
|
6.5 |
MEDIUM
Network
|
cybozu
|
office
|
customapp in Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to cause a denial of service via unspecified vectors, a different vulnerability than CVE-2015-8489.
|
CWE-20
Improper Input Validation
|
CVE-2016-1153
|
2024-11-21 11:45 |
2016-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268988
|
5.4 |
MEDIUM
Network
|
cybozu
|
office
|
Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended access restrictions, and read or write to plan data, via unspecified vectors, a different vulnerability than CV…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1152
|
2024-11-21 11:45 |
2016-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268989
|
8.8 |
HIGH
Network
|
cybozu
|
office
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Cybozu Office 9.9.0 through 10.3.0 allow remote attackers to hijack the authentication of arbitrary users.
|
CWE-352
Origin Validation Error
|
CVE-2016-1151
|
2024-11-21 11:45 |
2016-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268990
|
6.1 |
MEDIUM
Network
|
cybozu
|
office
|
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than C…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1150
|
2024-11-21 11:45 |
2016-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|