|
266311
|
8.8 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary…
|
CWE-416
Use After Free
|
CVE-2016-1013
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266312
|
8.8 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary…
|
CWE-416
Use After Free
|
CVE-2016-1011
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266313
|
8.8 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of servi…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-1020
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266314
|
8.8 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary code or cause a denial of servi…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-1012
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266315
|
8.1 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to bypass the ASLR protection mechanism via JIT data.
|
NVD-CWE-noinfo
|
CVE-2016-1006
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266316
|
6.1 |
MEDIUM
Network
|
cyber-will
|
social-button_premium
|
Cross-site scripting (XSS) vulnerability in the Cyber-Will Social-button Premium plugin before 1.1 for EC-CUBE 2.13.x allows remote attackers to inject arbitrary web script or HTML via unspecified ve…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1180
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266317
|
8.8 |
HIGH
Network
|
hiniarata
|
casebook_plugin
|
Cross-site request forgery (CSRF) vulnerability in the Menubook plugin before 0.9.3 for baserCMS allows remote attackers to hijack the authentication of administrators.
|
CWE-352
Origin Validation Error
|
CVE-2016-1174
|
2024-11-21 11:45 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266318
|
6.1 |
MEDIUM
Network
|
hiniarata
|
casebook_plugin
|
Cross-site scripting (XSS) vulnerability in the Menubook plugin before 0.9.3 for baserCMS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1173
|
2024-11-21 11:45 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266319
|
8.8 |
HIGH
Network
|
hiniarata
|
casebook_plugin
|
Cross-site request forgery (CSRF) vulnerability in the Recruit plugin before 0.9.3 for baserCMS allows remote attackers to hijack the authentication of administrators.
|
CWE-352
Origin Validation Error
|
CVE-2016-1172
|
2024-11-21 11:45 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266320
|
6.1 |
MEDIUM
Network
|
hiniarata
|
casebook_plugin
|
Cross-site scripting (XSS) vulnerability in the Recruit plugin before 0.9.3 for baserCMS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1171
|
2024-11-21 11:45 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|