|
265061
|
9.8 |
CRITICAL
Network
|
haxx
|
curl
|
Curl before 7.49.1 in Apple OS X before macOS Sierra prior to 10.12 allows remote or local attackers to execute arbitrary code, gain sensitive information, cause denial-of-service conditions, bypass …
|
NVD-CWE-noinfo
|
CVE-2016-4606
|
2024-11-21 11:52 |
2020-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265062
|
7.5 |
HIGH
Network
|
apple
|
mac_os_x safari
|
A Cross-origin vulnerability exists in WebKit in Apple Safari before 10.0.1 when processing location attributes, which could let a remote malicious user obtain sensitive information.
|
CWE-200
Information Exposure
|
CVE-2016-4676
|
2024-11-21 11:52 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265063
|
8.8 |
HIGH
Network
|
webkitgtk canonical
|
webkitgtk\+ ubuntu_linux
|
WebKitGTK+ before 2.14.0: A use-after-free vulnerability can allow remote attackers to cause a DoS
|
CWE-416
Use After Free
|
CVE-2016-4761
|
2024-11-21 11:52 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265064
|
8.8 |
HIGH
Network
|
cloudera
|
cdh
|
In Cloudera CDH before 5.7.1, Impala REVOKE ALL ON SERVER commands do not revoke all privileges.
|
CWE-863
Incorrect Authorization
|
CVE-2016-4572
|
2024-11-21 11:52 |
2019-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265065
|
9.8 |
CRITICAL
Network
|
arubanetworks
|
clearpass
|
Aruba ClearPass Policy Manager before 6.5.7 and 6.6.x before 6.6.2 allows attackers to obtain database credentials.
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2016-4401
|
2024-11-21 11:52 |
2019-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265066
|
6.5 |
MEDIUM
Network
|
apple
|
iphone_os mac_os apple_tv
|
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a downgrade issue existed with HTTP authentication credentials saved in Keychain. This issue …
|
CWE-200
Information Exposure
|
CVE-2016-4644
|
2024-11-21 11:52 |
2019-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265067
|
6.5 |
MEDIUM
Network
|
apple
|
iphone_os mac_os apple_tv
|
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a validation issue existed in the parsing of 407 responses. This issue was addressed through …
|
CWE-200
Information Exposure
|
CVE-2016-4643
|
2024-11-21 11:52 |
2019-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265068
|
5.9 |
MEDIUM
Network
|
apple
|
iphone_os mac_os apple_tv
|
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, proxy authentication incorrectly reported HTTP proxies received credentials securely. This is…
|
CWE-254
7PK - Security Features
|
CVE-2016-4642
|
2024-11-21 11:52 |
2019-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265069
|
6.1 |
MEDIUM
Network
|
hp
|
integrated_lights-out_3_firmware integrated_lights-out_4_firmware
|
A remote cross site scripting vulnerability was identified in HPE iLO 3 all version prior to v1.88 and HPE iLO 4 all versions prior to v2.44.
|
CWE-79
Cross-site Scripting
|
CVE-2016-4406
|
2024-11-21 11:52 |
2018-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265070
|
8.8 |
HIGH
Network
|
hp
|
business_service_management
|
A remote code execution vulnerability was identified in HP Business Service Management (BSM) using Apache Commons Collection Java Deserialization versions v9.20-v9.26
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2016-4405
|
2024-11-21 11:52 |
2018-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|