|
266231
|
7.3 |
HIGH
Local
|
vtiger
|
vtiger_crm
|
Unrestricted file upload vulnerability in the Settings_Vtiger_CompanyDetailsSave_Action class in modules/Settings/Vtiger/actions/CompanyDetailsSave.php in Vtiger CRM 6.4.0 allows remote authenticated…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2016-1713
|
2024-11-21 11:46 |
2017-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266232
|
5.5 |
MEDIUM
Local
|
opencv
|
opencv
|
OpenCV 3.0.0 allows remote attackers to cause a denial of service (segfault) via vectors involving corrupt chunks.
|
CWE-20
Improper Input Validation
|
CVE-2016-1517
|
2024-11-21 11:46 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266233
|
8.8 |
HIGH
Network
|
opencv debian
|
opencv debian_linux
|
OpenCV 3.0.0 has a double free issue that allows attackers to execute arbitrary code.
|
CWE-415
Double Free
|
CVE-2016-1516
|
2024-11-21 11:46 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266234
|
6.5 |
MEDIUM
Network
|
novell
|
netiq_idm_servicenow_driver
|
An information leak in the NetIQ IDM ServiceNow Driver before 1.0.0.1 could expose cryptographic attributes to logged-in users.
|
CWE-200
Information Exposure
|
CVE-2016-1603
|
2024-11-21 11:46 |
2017-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266235
|
7.8 |
HIGH
Local
|
suse
|
linux_enterprise_server linux_enterprise_desktop suse_linux_enterprise_server
|
A code injection in the supportconfig data collection tool in supportutils in SUSE Linux Enterprise Server 12 and 12-SP1 and SUSE Linux Enterprise Desktop 12 and 12-SP1 could be used by local attacke…
|
CWE-94
Code Injection
|
CVE-2016-1602
|
2024-11-21 11:46 |
2017-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266236
|
8.8 |
HIGH
Network
|
netiq
|
access_governance_suite
|
A logged-in user in NetIQ Access Governance Suite 6.0 through 6.4 could escalate privileges to administrator.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1597
|
2024-11-21 11:46 |
2017-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266237
|
9.8 |
CRITICAL
Network
|
quagga debian
|
quagga debian_linux
|
It was discovered that the zebra daemon in Quagga before 1.0.20161017 suffered from a stack-based buffer overflow when processing IPv6 Neighbor Discovery messages. The root cause was relying on BUFSI…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1245
|
2024-11-21 11:46 |
2017-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266238
|
5.9 |
MEDIUM
Network
|
dbd-mysql_project
|
dbd-mysql
|
The DBD::mysql module before 4.039 for Perl, when using server-side prepared statement support, allows attackers to cause a denial of service (out-of-bounds read) via vectors involving an unaligned n…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-1249
|
2024-11-21 11:46 |
2017-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266239
|
7.3 |
HIGH
Network
|
netapp
|
snapcenter_server
|
NetApp SnapCenter Server 1.0 and 1.0P1 allows remote attackers to partially bypass authentication and then list and delete backups via unspecified vectors.
|
CWE-287
Improper Authentication
|
CVE-2016-1502
|
2024-11-21 11:46 |
2017-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266240
|
7.5 |
HIGH
Network
|
dhcpcd_project
|
dhcpcd
|
dhcpcd before 6.10.0 allows remote attackers to cause a denial of service (invalid read and crash) via vectors related to the option length.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1504
|
2024-11-21 11:46 |
2017-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|