|
265831
|
7.5 |
HIGH
Network
|
canonical f5 debian
|
ubuntu_linux nginx debian_linux
|
os/unix/ngx_files.c in nginx before 1.10.1 and 1.11.x before 1.11.1 allows remote attackers to cause a denial of service (NULL pointer dereference and worker process crash) via a crafted request, inv…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-4450
|
2024-11-21 11:52 |
2016-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265832
|
9.8 |
CRITICAL
Network
|
imagemagick
|
imagemagick
|
The DrawImage function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 makes an incorrect function call in attempting to locate the next token, which allows remote attackers…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4564
|
2024-11-21 11:52 |
2016-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265833
|
8.8 |
HIGH
Network
|
imagemagick
|
imagemagick
|
The TraceStrokePolygon function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 mishandles the relationship between the BezierQuantum value and certain strokes data, which a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4563
|
2024-11-21 11:52 |
2016-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265834
|
8.8 |
HIGH
Network
|
imagemagick
|
imagemagick
|
The DrawDashPolygon function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 mishandles calculations of certain vertices integer data, which allows remote attackers to cause…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4562
|
2024-11-21 11:52 |
2016-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265835
|
6.0 |
MEDIUM
Local
|
qemu canonical debian
|
qemu ubuntu_linux debian_linux
|
The vmsvga_fifo_read_raw function in hw/display/vmware_vga.c in QEMU allows local guest OS administrators to obtain sensitive host memory information or cause a denial of service (QEMU process crash)…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4454
|
2024-11-21 11:52 |
2016-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265836
|
4.4 |
MEDIUM
Local
|
qemu canonical debian
|
qemu ubuntu_linux debian_linux
|
The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via a VGA command.
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2016-4453
|
2024-11-21 11:52 |
2016-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265837
|
7.5 |
HIGH
Network
|
sensiolabs debian
|
symfony debian_linux
|
The attemptAuthentication function in Component/Security/Http/Firewall/UsernamePasswordFormAuthenticationListener.php in Symfony before 2.3.41, 2.7.x before 2.7.13, 2.8.x before 2.8.6, and 3.0.x befo…
|
CWE-399
Resource Management Errors
|
CVE-2016-4423
|
2024-11-21 11:52 |
2016-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265838
|
9.1 |
CRITICAL
Network
|
apache
|
qpid_broker-j
|
The AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid Java before 6.0.3 might allow remote attackers to bypass authentication and consequently perform actions via vectors related to co…
|
CWE-287
Improper Authentication
|
CVE-2016-4432
|
2024-11-21 11:52 |
2016-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265839
|
5.8 |
MEDIUM
Network
|
moxa
|
uc-7408_lx-plus uc-7408_lx-plus_firmware
|
Moxa UC-7408 LX-Plus devices allow remote authenticated users to write to the firmware, and consequently render a device unusable, by leveraging root access.
|
CWE-254
7PK - Security Features
|
CVE-2016-4500
|
2024-11-21 11:52 |
2016-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265840
|
9.8 |
CRITICAL
Network
|
sixnet
|
bt-5_series_cellular_router_firmware bt-6_series_cellular_router_firmware
|
Sixnet BT-5xxx and BT-6xxx M2M devices before 3.8.21 and 3.9.x before 3.9.8 have hardcoded credentials, which allows remote attackers to obtain access via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-4521
|
2024-11-21 11:52 |
2016-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|