|
266211
|
7.8 |
HIGH
Local
|
ibm
|
security_guardium
|
IBM Security Guardium 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows local users to obtain sensitive cleartext information via unspecified vectors, as demonstr…
|
CWE-200
Information Exposure
|
CVE-2016-0247
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266212
|
6.1 |
MEDIUM
Network
|
ibm
|
security_guardium
|
Cross-site scripting (XSS) vulnerability in IBM Security Guardium 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote attackers to inject arbitrary web scrip…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0246
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266213
|
4.3 |
MEDIUM
Network
|
ibm
|
security_guardium
|
IBM Security Guardium 10.x through 10.1 before p100 allows remote authenticated users to obtain sensitive information by reading an Application Error message.
|
CWE-200
Information Exposure
|
CVE-2016-0242
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266214
|
8.8 |
HIGH
Network
|
ibm
|
security_guardium_database_activity_monitor
|
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to spoof administrator accounts by se…
|
CWE-284
Improper Access Control
|
CVE-2016-0241
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266215
|
3.7 |
LOW
Network
|
ibm
|
security_guardium_database_activity_monitor
|
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 does not enable the HSTS protection mechanism, which makes it easier fo…
|
CWE-254
7PK - Security Features
|
CVE-2016-0240
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266216
|
8.8 |
HIGH
Network
|
ibm
|
security_guardium_database_activity_monitor
|
IBM Security Guardium Database Activity Monitor 9.x through 9.5 before p700 and 10.x through 10.0.1 before p100 allows remote authenticated users to make HTTP requests with administrator privileges v…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0239
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266217
|
8.8 |
HIGH
Network
|
ibm
|
security_guardium_database_activity_monitor
|
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to execute arbitrary commands with ro…
|
CWE-77
Command Injection
|
CVE-2016-0236
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266218
|
8.6 |
HIGH
Network
|
ibm
|
security_guardium
|
SQL injection vulnerability in IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote attackers to execute arbit…
|
CWE-89
SQL Injection
|
CVE-2016-0249
|
2024-11-21 11:41 |
2016-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266219
|
6.8 |
MEDIUM
Network
|
ibm
|
cloud_orchestrator
|
Open redirect vulnerability in IBM Cloud Orchestrator 2.4.x before 2.4.0 FP3 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via unspecified ve…
|
CWE-601
Open Redirect
|
CVE-2016-0204
|
2024-11-21 11:41 |
2016-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266220
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_7 windows_10 windows_8.1 windows_vista
|
Video Control in Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8.1, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows remote attackers to execute arbitrary code via a crafted web page,…
|
CWE-119 CWE-284
Incorrect Access of Indexable Resource ('Range Error') Improper Access Control
|
CVE-2016-0142
|
2024-11-21 11:41 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|