|
266021
|
6.1 |
MEDIUM
Network
|
redhat
|
jboss_bpm_suite
|
Multiple cross-site scripting (XSS) vulnerabilities in the admin pages in dashbuilder in Red Hat JBoss BPM Suite 6.3.2 allow remote attackers to inject arbitrary web script or HTML via unspecified ve…
|
CWE-79
Cross-site Scripting
|
CVE-2016-7033
|
2024-11-21 11:57 |
2016-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266022
|
5.3 |
MEDIUM
Network
|
microsoft google apple opera mozilla
|
edge internet_explorer chrome safari opera_browser firefox
|
The HTTP/2 protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by lever…
|
CWE-200
Information Exposure
|
CVE-2016-7153
|
2024-11-21 11:57 |
2016-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266023
|
5.3 |
MEDIUM
Network
|
opera apple mozilla microsoft google
|
opera safari firefox edge internet_explorer chrome
|
The HTTPS protocol does not consider the role of the TCP congestion window in providing information about content length, which makes it easier for remote attackers to obtain cleartext data by levera…
|
CWE-200
Information Exposure
|
CVE-2016-7152
|
2024-11-21 11:57 |
2016-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266024
|
8.8 |
HIGH
Network
|
siemens
|
en100_ethernet_module_firmware
|
A vulnerability has been identified in Firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Modbus TCP for EN100 Ethernet module : All versions < V1.11.0…
|
CWE-287
Improper Authentication
|
CVE-2016-7114
|
2024-11-21 11:57 |
2016-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266025
|
7.5 |
HIGH
Network
|
siemens
|
en100_ethernet_module_firmware
|
A vulnerability has been identified in Firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Modbus TCP for EN100 Ethernet module : All versions < V1.11.0…
|
CWE-399
Resource Management Errors
|
CVE-2016-7113
|
2024-11-21 11:57 |
2016-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266026
|
9.8 |
CRITICAL
Network
|
siemens
|
en100_ethernet_module_firmware
|
A vulnerability has been identified in Firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Modbus TCP for EN100 Ethernet module : All versions < V1.11.0…
|
CWE-287
Improper Authentication
|
CVE-2016-7112
|
2024-11-21 11:57 |
2016-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266027
|
8.8 |
HIGH
Network
|
gnu
|
mailman
|
Cross-site request forgery (CSRF) vulnerability in the admin web interface in GNU Mailman before 2.1.15 allows remote attackers to hijack the authentication of administrators.
|
CWE-352
Origin Validation Error
|
CVE-2016-7123
|
2024-11-21 11:57 |
2016-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266028
|
8.8 |
HIGH
Network
|
gnu
|
mailman
|
Cross-site request forgery (CSRF) vulnerability in the user options page in GNU Mailman 2.1.x before 2.1.23 allows remote attackers to hijack the authentication of arbitrary users for requests that m…
|
CWE-352
Origin Validation Error
|
CVE-2016-6893
|
2024-11-21 11:57 |
2016-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266029
|
5.5 |
MEDIUM
Local
|
debian
|
debian_linux
|
fs/fcntl.c in the "aufs 3.2.x+setfl-debian" patch in the linux-image package 3.2.0-4 (kernel 3.2.81-1) in Debian wheezy mishandles F_SETFL fcntl calls on directories, which allows local users to caus…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-7118
|
2024-11-21 11:57 |
2016-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266030
|
9.8 |
CRITICAL
Network
|
mac-telnet_project
|
mac-telnet
|
Buffer overflow in the handle_packet function in mactelnet.c in the client in MAC-Telnet 0.4.3 and earlier allows remote TELNET servers to execute arbitrary code via a long string in an MT_CPTYPE_PAS…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-7115
|
2024-11-21 11:57 |
2016-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|