|
264531
|
7.5 |
HIGH
Network
|
python
|
hpack hyper
|
A HTTP/2 implementation built using any version of the Python HPACK library between v1.0.0 and v2.2.0 could be targeted for a denial of service attack, specifically a so-called "HPACK Bomb" attack. T…
|
CWE-399
Resource Management Errors
|
CVE-2016-6581
|
2024-11-21 11:56 |
2017-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264532
|
7.5 |
HIGH
Network
|
python
|
python_priority_library
|
A HTTP/2 implementation built using any version of the Python priority library prior to version 1.2.0 could be targeted by a malicious peer by having that peer assign priority information for every p…
|
CWE-399
Resource Management Errors
|
CVE-2016-6580
|
2024-11-21 11:56 |
2017-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264533
|
6.5 |
MEDIUM
Network
|
docker
|
docker
|
The SwarmKit toolkit 1.12.0 for Docker allows remote authenticated users to cause a denial of service (prevention of cluster joins) via a long sequence of join and quit actions. NOTE: the vendor dis…
|
CWE-399
Resource Management Errors
|
CVE-2016-6595
|
2024-11-21 11:56 |
2017-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264534
|
4.3 |
MEDIUM
Network
|
sap
|
hybris
|
Hybris Management Console (HMC) in SAP Hybris before 6.0 allows remote attackers to obtain sensitive information by triggering an error and then reading a Java stack trace.
|
CWE-200
Information Exposure
|
CVE-2016-6859
|
2024-11-21 11:56 |
2016-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264535
|
5.4 |
MEDIUM
Network
|
sap
|
hybris
|
Cross-site scripting (XSS) vulnerability in the Create Employee feature in Hybris Management Console (HMC) in SAP Hybris before 5.0.4.11, 5.1.0.x before 5.1.0.11, 5.1.1.x before 5.1.1.12, 5.2.0.x and…
|
CWE-79
Cross-site Scripting
|
CVE-2016-6858
|
2024-11-21 11:56 |
2016-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264536
|
5.4 |
MEDIUM
Network
|
sap
|
hybris
|
Cross-site scripting (XSS) vulnerability in the Create Catalogue feature in Hybris Management Console (HMC) in SAP Hybris before 5.2.0.13, 5.3.x before 5.3.0.11, 5.4.x before 5.4.0.11, 5.5.0.x before…
|
CWE-79
Cross-site Scripting
|
CVE-2016-6857
|
2024-11-21 11:56 |
2016-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264537
|
6.1 |
MEDIUM
Network
|
sap
|
hybris
|
Cross-site scripting (XSS) vulnerability in the Inbox Search feature in Hybris Management Console (HMC) in SAP Hybris before 6.0 allows remote attackers to inject arbitrary web script or HTML via the…
|
CWE-79
Cross-site Scripting
|
CVE-2016-6856
|
2024-11-21 11:56 |
2016-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264538
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
kernel/events/core.c in the performance subsystem in the Linux kernel before 4.0 mismanages locks during certain migrations, which allows local users to gain privileges via a crafted application, aka…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6787
|
2024-11-21 11:56 |
2016-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264539
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
kernel/events/core.c in the performance subsystem in the Linux kernel before 4.0 mismanages locks during certain migrations, which allows local users to gain privileges via a crafted application, aka…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6786
|
2024-11-21 11:56 |
2016-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264540
|
7.8 |
HIGH
Local
|
ffmpeg
|
ffmpeg
|
The raw_decode function in libavcodec/rawdec.c in FFmpeg before 3.1.2 allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted SWF file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-6671
|
2024-11-21 11:56 |
2016-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|