|
267061
|
9.8 |
CRITICAL
Network
|
linux
|
linux_kernel
|
drivers/soc/qcom/qdsp6v2/voice_svc.c in the QDSP6v2 Voice Service driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other product…
|
CWE-120
Classic Buffer Overflow
|
CVE-2016-5343
|
2024-11-21 11:54 |
2016-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267062
|
9.8 |
CRITICAL
Network
|
f5
|
big-ip_local_traffic_manager
|
F5 BIG-IP LTM systems 11.x before 11.2.1 HF16, 11.3.x, 11.4.x before 11.4.1 HF11, 11.5.0, 11.5.1 before HF11, 11.5.2, 11.5.3, 11.5.4 before HF2, 11.6.0 before HF8, 11.6.1 before HF1, 12.0.0 before HF…
|
CWE-284
Improper Access Control
|
CVE-2016-5745
|
2024-11-21 11:54 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267063
|
9.8 |
CRITICAL
Network
|
animas
|
onetouch_ping_firmware
|
Johnson & Johnson Animas OneTouch Ping devices mishandle acknowledgements, which makes it easier for remote attackers to bypass authentication via a custom communication protocol.
|
CWE-287
Improper Authentication
|
CVE-2016-5686
|
2024-11-21 11:54 |
2016-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267064
|
3.3 |
LOW
Local
|
redhat
|
enterprise_virtualization
|
The ovirt-engine-provisiondb utility in Red Hat Enterprise Virtualization (RHEV) Engine 4.0 allows local users to obtain sensitive database provisioning information by reading log files.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2016-5432
|
2024-11-21 11:54 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267065
|
5.4 |
MEDIUM
Network
|
redhat
|
jboss_bpm_suite
|
Cross-site scripting (XSS) vulnerability in Business Process Editor in Red Hat JBoss BPM Suite before 6.3.3 allows remote authenticated users to inject arbitrary web script or HTML by levering permis…
|
CWE-79
Cross-site Scripting
|
CVE-2016-5398
|
2024-11-21 11:54 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267066
|
9.8 |
CRITICAL
Network
|
f5
|
big-ip_policy_enforcement_manager big-ip_local_traffic_manager big-ip_websafe big-ip_link_controller big-ip_application_acceleration_manager big-ip_access_policy_manager big-ip_adva…
|
Virtual servers in F5 BIG-IP systems 11.5.0, 11.5.1 before HF11, 11.5.2, 11.5.3, 11.5.4 before HF2, 11.6.0 before HF8, 11.6.1 before HF1, 12.0.0 before HF4, and 12.1.0 before HF2, when configured wit…
|
CWE-284
Improper Access Control
|
CVE-2016-5700
|
2024-11-21 11:54 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267067
|
5.1 |
MEDIUM
Local
|
opensuse yast
|
libstorage-ng yast-storage libstorage leap
|
libstorage, libstorage-ng, and yast-storage improperly store passphrases for encrypted storage devices in a temporary file on disk, which might allow local users to obtain sensitive information by re…
|
NVD-CWE-Other
|
CVE-2016-5746
|
2024-11-21 11:54 |
2016-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267068
|
8.8 |
HIGH
Network
|
redhat
|
jboss_enterprise_application_platform
|
The domain controller in Red Hat JBoss Enterprise Application Platform (EAP) 7.x before 7.0.2 allows remote authenticated users to gain privileges by leveraging failure to propagate administrative RB…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-5406
|
2024-11-21 11:54 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267069
|
4.8 |
MEDIUM
Network
|
apache
|
ranger
|
Cross-site scripting (XSS) vulnerability in the create user functionality in the policy admin tool in Apache Ranger before 0.6.1 allows remote authenticated administrators to inject arbitrary web scr…
|
CWE-79
Cross-site Scripting
|
CVE-2016-5395
|
2024-11-21 11:54 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267070
|
7.5 |
HIGH
Network
|
powerdns
|
authoritative
|
PowerDNS (aka pdns) Authoritative Server before 3.4.10 does not properly handle a . (dot) inside labels, which allows remote attackers to cause a denial of service (backend CPU consumption) via a cra…
|
CWE-399
Resource Management Errors
|
CVE-2016-5427
|
2024-11-21 11:54 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|