|
266541
|
8.8 |
HIGH
Network
|
apache debian canonical
|
tomcat debian_linux ubuntu_linux
|
The session-persistence implementation in Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 mishandles session attributes, which allows remote authenticat…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0714
|
2024-11-21 11:42 |
2016-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266542
|
4.3 |
MEDIUM
Network
|
canonical debian apache
|
ubuntu_linux debian_linux tomcat
|
Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 does not place org.apache.catalina.manager.StatusManagerServlet on the org/apache/catalina/core/Restrict…
|
CWE-200
Information Exposure
|
CVE-2016-0706
|
2024-11-21 11:42 |
2016-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266543
|
6.1 |
MEDIUM
Network
|
fedoraproject moodle
|
fedora moodle
|
Cross-site scripting (XSS) vulnerability in the search_pagination function in course/classes/management_renderer.php in Moodle 2.8.x before 2.8.10, 2.9.x before 2.9.4, and 3.0.x before 3.0.2 allows r…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0725
|
2024-11-21 11:42 |
2016-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266544
|
4.3 |
MEDIUM
Network
|
moodle fedoraproject
|
moodle fedora
|
The (1) core_enrol_get_course_enrolment_methods and (2) enrol_self_get_instance_info web services in Moodle through 2.6.11, 2.7.x before 2.7.12, 2.8.x before 2.8.10, 2.9.x before 2.9.4, and 3.0.x bef…
|
CWE-264 CWE-200
Permissions, Privileges, and Access Controls Information Exposure
|
CVE-2016-0724
|
2024-11-21 11:42 |
2016-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266545
|
7.8 |
HIGH
Local
|
libreoffice canonical
|
libreoffice ubuntu_linux
|
LibreOffice before 5.0.5 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LwpTocSuperLayout record in a LotusWordPro (l…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0795
|
2024-11-21 11:42 |
2016-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266546
|
7.8 |
HIGH
Local
|
libreoffice canonical
|
libreoffice ubuntu_linux
|
The lwp filter in LibreOffice before 5.0.4 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LotusWordPro (lwp) document.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0794
|
2024-11-21 11:42 |
2016-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266547
|
7.5 |
HIGH
Network
|
postgresql canonical debian
|
postgresql ubuntu_linux debian_linux
|
PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0773
|
2024-11-21 11:42 |
2016-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266548
|
8.8 |
HIGH
Network
|
postgresql canonical debian
|
postgresql ubuntu_linux debian_linux
|
PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) fo…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0766
|
2024-11-21 11:42 |
2016-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266549
|
5.3 |
MEDIUM
Network
|
rubyonrails debian fedoraproject opensuse
|
rails debian_linux fedora leap
|
Active Model in Ruby on Rails 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 supports the use of instance-level writers for class accessors, which allows remote attackers t…
|
NVD-CWE-noinfo
|
CVE-2016-0753
|
2024-11-21 11:42 |
2016-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266550
|
7.5 |
HIGH
Network
|
rubyonrails
|
ruby_on_rails rails
|
actionpack/lib/action_dispatch/http/mime_type.rb in Action Pack in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 does not properly…
|
CWE-399
Resource Management Errors
|
CVE-2016-0751
|
2024-11-21 11:42 |
2016-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|