|
270101
|
9.8 |
CRITICAL
Network
|
vmware
|
player workstation
|
VMware Workstation 11.x before 11.1.3 and VMware Player 7.x before 7.1.3 on Windows incorrectly access an executable file, which allows host OS users to gain host OS privileges via unspecified vector…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2077
|
2024-11-21 11:47 |
2016-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270102
|
5.5 |
MEDIUM
Local
|
hp
|
base-vxfs-50 base-vxfs-501 base-vxfs-51
|
Base-VxFS-50 B.05.00.01 through B.05.00.02, Base-VxFS-501 B.05.01.0 through B.05.01.03, and Base-VxFS-51 B.05.10.00 through B.05.10.02 on HPE HP-UX 11iv3 with VxFS 5.0, VxFS 5.0.1, and VxFS 5.1SP1 mi…
|
CWE-284
Improper Access Control
|
CVE-2016-2016
|
2024-11-21 11:47 |
2016-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270103
|
7.1 |
HIGH
Local
|
hp
|
system_management_homepage
|
HPE System Management Homepage before 7.5.5 allows local users to obtain sensitive information or modify data via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-2015
|
2024-11-21 11:47 |
2016-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270104
|
9.8 |
CRITICAL
Network
|
apache opensuse
|
xerces-c\+\+ opensuse
|
Use-after-free vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 3.1.3 and earlier allows context-dependent attackers to have unspecified impact via an invalid character in an XML d…
|
NVD-CWE-Other
|
CVE-2016-2099
|
2024-11-21 11:47 |
2016-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270105
|
7.8 |
HIGH
Local
|
google
|
android
|
server/TetherController.cpp in the tethering controller in netd, as distributed with Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly vali…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2060
|
2024-11-21 11:47 |
2016-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270106
|
8.1 |
HIGH
Network
|
hp
|
network_node_manager_i
|
HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to modify data or cause a denial of service via unspecified vectors.
|
CWE-284
Improper Access Control
|
CVE-2016-2014
|
2024-11-21 11:47 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270107
|
6.5 |
MEDIUM
Network
|
hp
|
network_node_manager_i
|
HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to obtain sensitive information via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-2013
|
2024-11-21 11:47 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270108
|
6.5 |
MEDIUM
Network
|
hp
|
network_node_manager_i
|
HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote attackers to bypass authentication via unspecified vectors.
|
CWE-287
Improper Authentication
|
CVE-2016-2012
|
2024-11-21 11:47 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270109
|
5.4 |
MEDIUM
Network
|
hp
|
network_node_manager_i
|
Cross-site scripting (XSS) vulnerability in HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to inject arbitrary web script or HTML via uns…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2011
|
2024-11-21 11:47 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270110
|
5.4 |
MEDIUM
Network
|
hp
|
network_node_manager_i
|
Cross-site scripting (XSS) vulnerability in HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to inject arbitrary web script or HTML via uns…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2010
|
2024-11-21 11:47 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|