|
266021
|
7.5 |
HIGH
Network
|
moxa
|
edr-g903_firmware
|
Moxa Secure Router EDR-G903 devices before 3.4.12 allow remote attackers to discover cleartext passwords by reading a configuration file.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2016-0876
|
2024-11-21 11:42 |
2016-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266022
|
7.5 |
HIGH
Network
|
moxa
|
edr-g903_firmware
|
Moxa Secure Router EDR-G903 devices before 3.4.12 allow remote attackers to read configuration and log files via a crafted URL.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2016-0875
|
2024-11-21 11:42 |
2016-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266023
|
5.9 |
MEDIUM
Network
|
emc
|
isilon_onefs isilonsd_edge_onefs
|
EMC Isilon OneFS 7.1.x and 7.2.x before 7.2.1.3 and 8.0.x before 8.0.0.1, and IsilonSD Edge OneFS 8.0.x before 8.0.0.1, does not require SMB signing within a DCERPC session over ncacn_np, which allow…
|
CWE-254
7PK - Security Features
|
CVE-2016-0907
|
2024-11-21 11:42 |
2016-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266024
|
9.8 |
CRITICAL
Network
|
mozilla apple suse opensuse canonical libexpat_project debian mcafee python
|
firefox mac_os_x linux_enterprise_server studio_onsite linux_enterprise_software_development_kit linux_enterprise_debuginfo leap linux_enterprise_desktop ubuntu_linux libex…
|
Expat allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a malformed input document, which triggers a buffer overflow.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0718
|
2024-11-21 11:42 |
2016-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266025
|
4.9 |
MEDIUM
Network
|
apache
|
ambari
|
The File Browser View in Apache Ambari before 2.2.1 allows remote authenticated administrators to read arbitrary files via a file: URL in the WebHDFS URL configuration.
|
CWE-284
Improper Access Control
|
CVE-2016-0731
|
2024-11-21 11:42 |
2016-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266026
|
3.3 |
LOW
Local
|
apache
|
ambari
|
The agent in Apache Ambari before 2.1.2 uses weak permissions for the (1) /var/lib/ambari-agent/data and (2) /var/lib/ambari-agent/keys directories, which allows local users to obtain sensitive infor…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0707
|
2024-11-21 11:42 |
2016-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266027
|
5.3 |
MEDIUM
Network
|
emc
|
rsa_authentication_manager
|
CRLF injection vulnerability in EMC RSA Authentication Manager before 8.1 SP1 P14 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified …
|
NVD-CWE-Other
|
CVE-2016-0902
|
2024-11-21 11:42 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266028
|
6.1 |
MEDIUM
Network
|
emc
|
rsa_authentication_manager
|
Cross-site scripting (XSS) vulnerability in EMC RSA Authentication Manager before 8.1 SP1 P14 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulne…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0901
|
2024-11-21 11:42 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266029
|
6.1 |
MEDIUM
Network
|
emc
|
rsa_authentication_manager
|
Cross-site scripting (XSS) vulnerability in EMC RSA Authentication Manager before 8.1 SP1 P14 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulne…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0900
|
2024-11-21 11:42 |
2016-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266030
|
4.3 |
MEDIUM
Network
|
emc
|
rsa_data_loss_prevention
|
EMC RSA Data Loss Prevention 9.6 before SP2 P5 allows remote attackers to conduct clickjacking attacks via web-site elements with crafted transparency or opacity.
|
CWE-20
Improper Input Validation
|
CVE-2016-0895
|
2024-11-21 11:42 |
2016-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|