|
265761
|
8.8 |
HIGH
Network
|
sap google
|
3d_visual_enterprise_viewer sketchup
|
Multiple use-after-free vulnerabilities in SAP 3D Visual Enterprise Viewer allow remote attackers to execute arbitrary code via a crafted SketchUp document. NOTE: the primary affected product may be…
|
CWE-399
Resource Management Errors
|
CVE-2016-2536
|
2024-11-21 11:48 |
2016-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265762
|
5.9 |
MEDIUM
Network
|
fedoraproject digium
|
fedora asterisk certified_asterisk
|
chan_sip in Asterisk Open Source 1.8.x, 11.x before 11.21.1, 12.x, and 13.x before 13.7.1 and Certified Asterisk 1.8.28, 11.6 before 11.6-cert12, and 13.1 before 13.1-cert3, when the timert1 sip.conf…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2016-2316
|
2024-11-21 11:48 |
2016-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265763
|
6.5 |
MEDIUM
Network
|
digium
|
asterisk certified_asterisk
|
Asterisk Open Source 1.8.x, 11.x before 11.21.1, 12.x, and 13.x before 13.7.1 and Certified Asterisk 1.8.28, 11.6 before 11.6-cert12, and 13.1 before 13.1-cert3 allow remote authenticated users to ca…
|
NVD-CWE-Other
|
CVE-2016-2232
|
2024-11-21 11:48 |
2016-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265764
|
9.8 |
CRITICAL
Network
|
advantech
|
vesp211-eu_firmware vesp211-232_firmware
|
The web interface on Advantech/B+B SmartWorx VESP211-EU devices with firmware 1.7.2 and VESP211-232 devices with firmware 1.5.1 and 1.7.2 relies on the client to implement access control, which allow…
|
CWE-284
Improper Access Control
|
CVE-2016-2275
|
2024-11-21 11:48 |
2016-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265765
|
5.5 |
MEDIUM
Local
|
xen
|
xen
|
VMX in Xen 4.6.x and earlier, when using an Intel or Cyrix CPU, allows local HVM guest users to cause a denial of service (guest crash) via vectors related to a non-canonical RIP.
|
NVD-CWE-Other
|
CVE-2016-2271
|
2024-11-21 11:48 |
2016-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265766
|
6.8 |
MEDIUM
Network
|
debian fedoraproject xen oracle
|
debian_linux fedora xen vm_server
|
Xen 4.6.x and earlier allows local guest administrators to cause a denial of service (host reboot) via vectors related to multiple mappings of MMIO pages with different cachability settings.
|
CWE-20
Improper Input Validation
|
CVE-2016-2270
|
2024-11-21 11:48 |
2016-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265767
|
5.3 |
MEDIUM
Adjacent
|
belden
|
hirschmann_firmware hirschmann_l2b
|
The password-sync feature on Belden Hirschmann Classic Platform switches L2B before 05.3.07 and L2E, L2P, L3E, and L3P before 09.0.06 sets an SNMP community to the same string as the administrator pa…
|
CWE-200
Information Exposure
|
CVE-2016-2509
|
2024-11-21 11:48 |
2016-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265768
|
6.5 |
MEDIUM
Adjacent
|
comcast
|
xfinity_home_security_system
|
Comcast XFINITY Home Security System does not properly maintain base-station communication, which allows physically proximate attackers to defeat sensor functionality by interfering with ZigBee 2.4 G…
|
CWE-254
7PK - Security Features
|
CVE-2016-2398
|
2024-11-21 11:48 |
2016-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265769
|
9.8 |
CRITICAL
Network
|
sonicwall
|
uma_em5000_firmware analyzer global_management_system
|
The cliserver implementation in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote attackers to deserialize and execute arbitrary Java code via crafted …
|
CWE-77
Command Injection
|
CVE-2016-2397
|
2024-11-21 11:48 |
2016-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265770
|
9.9 |
CRITICAL
Network
|
sonicwall
|
analyzer global_management_system uma_em5000_firmware
|
The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote authenticated users to execute arbitrary commands via ve…
|
CWE-77
Command Injection
|
CVE-2016-2396
|
2024-11-21 11:48 |
2016-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|