|
257151
|
7.5 |
HIGH
Network
|
moxa
|
miineport_e1_firmware miineport_e2_firmware miineport_e3_firmware
|
An issue was discovered in Moxa MiiNePort E1 versions prior to 1.8, E2 versions prior to 1.4, and E3 versions prior to 1.1. An attacker may be able to brute force an active session cookie to be able …
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2016-9344
|
2024-11-21 12:00 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257152
|
5.3 |
MEDIUM
Network
|
macgregor
|
interschalt_vdr_g4e_firmware
|
An issue was discovered in INTERSCHALT Maritime Systems VDR G4e Versions 5.220 and prior. External input is used to construct paths to files and directories without properly neutralizing special elem…
|
CWE-22
Path Traversal
|
CVE-2016-9339
|
2024-11-21 12:00 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257153
|
6.8 |
MEDIUM
Network
|
tesla
|
gateway_ecu
|
An issue was discovered in Tesla Motors Model S automobile, all firmware versions before version 7.1 (2.36.31) with web browser functionality enabled. The vehicle's Gateway ECU is susceptible to comm…
|
CWE-77
Command Injection
|
CVE-2016-9337
|
2024-11-21 12:00 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257154
|
10.0 |
CRITICAL
Network
|
rockwellautomation
|
softlogix_5800_controller_firmware rslogix_emulate_5000_firmware guardlogix_5570_controller_firmware flexlogix_l34_controller_firmware controllogix_l55_controller_firmware controllogix…
|
An issue was discovered in Rockwell Automation Logix5000 Programmable Automation Controller FRN 16.00 through 21.00 (excluding all firmware versions prior to FRN 16.00, which are not affected). By se…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-9343
|
2024-11-21 12:00 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257155
|
2.7 |
LOW
Network
|
rockwellautomation
|
1766-l32awaa_series_b 1766-l32bwaa_series_b 1766-l32bwa_series_b 1766-l32awa_series_a 1766-l32awa_series_b 1763-l16bbb_series_a 1763-l16awa_series_b 1763-l16bbb_series_b 1766-…
|
An issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1100 controller 1763-L16AWA, Series A and B, Version 14.000 and prior versions; 1763-L16BBB, Series A and B, Version 14.000 and…
|
NVD-CWE-Other
|
CVE-2016-9338
|
2024-11-21 12:00 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257156
|
7.3 |
HIGH
Network
|
rockwellautomation
|
1766-l32awaa_series_b 1766-l32bwaa_series_b 1766-l32bwa_series_b 1766-l32awa_series_a 1766-l32awa_series_b 1763-l16bbb_series_a 1763-l16awa_series_b 1763-l16bbb_series_b 1766-…
|
An issue was discovered in Rockwell Automation Allen-Bradley MicroLogix 1100 controller 1763-L16AWA, Series A and B, Version 14.000 and prior versions; 1763-L16BBB, Series A and B, Version 14.000 and…
|
NVD-CWE-Other
|
CVE-2016-9334
|
2024-11-21 12:00 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257157
|
9.8 |
CRITICAL
Network
|
moxa
|
softcms
|
An issue was discovered in Moxa SoftCMS versions prior to Version 1.6. The SoftCMS Application does not properly sanitize input that may allow a remote attacker access to SoftCMS with administrator's…
|
CWE-89
SQL Injection
|
CVE-2016-9333
|
2024-11-21 12:00 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257158
|
7.5 |
HIGH
Network
|
moxa
|
softcms
|
An issue was discovered in Moxa SoftCMS versions prior to Version 1.6. Moxa SoftCMS Webserver does not properly validate input. An attacker could provide unexpected values and cause the program to cr…
|
CWE-399
Resource Management Errors
|
CVE-2016-9332
|
2024-11-21 12:00 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257159
|
9.8 |
CRITICAL
Network
|
etalabs
|
musl
|
Multiple integer overflows in the TRE library and musl libc allow attackers to cause memory corruption via a large number of (1) states or (2) tags, which triggers an out-of-bounds write.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-8859
|
2024-11-21 12:00 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257160
|
7.5 |
HIGH
Network
|
f5
|
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<…
|
A BIG-IP virtual server configured with a Client SSL profile that has the non-default Session Tickets option enabled may leak up to 31 bytes of uninitialized memory. A remote attacker may exploit thi…
|
CWE-200
Information Exposure
|
CVE-2016-9244
|
2024-11-21 12:00 |
2017-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|