|
256931
|
6.1 |
MEDIUM
Network
|
html5lib
|
html5lib
|
The serializer in html5lib before 0.99999999 might allow remote attackers to conduct cross-site scripting (XSS) attacks by leveraging mishandling of the < (less than) character in attribute values.
|
CWE-79
Cross-site Scripting
|
CVE-2016-9909
|
2024-11-21 12:01 |
2017-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256932
|
9.8 |
CRITICAL
Network
|
teeworlds fedoraproject
|
teeworlds fedora
|
The CClient::ProcessServerPacket method in engine/client/client.cpp in Teeworlds before 0.6.4 allows remote servers to write to arbitrary physical memory locations and possibly execute arbitrary code…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-9400
|
2024-11-21 12:01 |
2017-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256933
|
6.5 |
MEDIUM
Local
|
xen
|
xen
|
Xen 4.7 allows local guest OS users to obtain sensitive host information by loading a 32-bit ELF symbol table.
|
CWE-200
Information Exposure
|
CVE-2016-9384
|
2024-11-21 12:01 |
2017-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256934
|
5.5 |
MEDIUM
Local
|
xen
|
xen
|
Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest cra…
|
CWE-284
Improper Access Control
|
CVE-2016-9378
|
2024-11-21 12:01 |
2017-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256935
|
5.5 |
MEDIUM
Local
|
xen
|
xen
|
Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest cra…
|
CWE-682
Incorrect Calculation
|
CVE-2016-9377
|
2024-11-21 12:01 |
2017-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256936
|
9.8 |
CRITICAL
Network
|
dell
|
sonicwall_secure_remote_access_server
|
The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to a Remote Command Injection vulnerability in its web administrative interface. This vulnerability occurs in the 'viewc…
|
CWE-77
Command Injection
|
CVE-2016-9684
|
2024-11-21 12:01 |
2017-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256937
|
9.8 |
CRITICAL
Network
|
dell
|
sonicwall_secure_remote_access_server
|
The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to a Remote Command Injection vulnerability in its web administrative interface. This vulnerability occurs in the 'exten…
|
CWE-77
Command Injection
|
CVE-2016-9683
|
2024-11-21 12:01 |
2017-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256938
|
9.8 |
CRITICAL
Network
|
dell
|
sonicwall_secure_remote_access_server
|
The SonicWall Secure Remote Access server (version 8.1.0.2-14sv) is vulnerable to two Remote Command Injection vulnerabilities in its web administrative interface. These vulnerabilities occur in the …
|
CWE-77
Command Injection
|
CVE-2016-9682
|
2024-11-21 12:01 |
2017-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256939
|
7.8 |
HIGH
Local
|
libming
|
libming
|
Heap-based buffer overflow in the parseSWF_RGBA function in parser.c in the listswf tool in libming 0.4.7 allows remote attackers to have unspecified impact via a crafted SWF file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-9831
|
2024-11-21 12:01 |
2017-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256940
|
7.8 |
HIGH
Local
|
libming
|
libming
|
Heap-based buffer overflow in the parseSWF_DEFINEFONT function in parser.c in the listswf tool in libming 0.4.7 allows remote attackers to have unspecified impact via a crafted SWF file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-9829
|
2024-11-21 12:01 |
2017-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|