|
256991
|
6.1 |
MEDIUM
Network
|
mybb
|
mybb merge_system
|
Cross-site scripting (XSS) vulnerability in the Mod control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web sc…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9408
|
2024-11-21 12:01 |
2017-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256992
|
6.1 |
MEDIUM
Network
|
mybb
|
mybb merge_system
|
Cross-site scripting (XSS) vulnerability in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors …
|
CWE-79
Cross-site Scripting
|
CVE-2016-9407
|
2024-11-21 12:01 |
2017-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256993
|
6.1 |
MEDIUM
Network
|
mybb
|
mybb merge_system
|
Cross-site scripting (XSS) vulnerability in the User control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web s…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9406
|
2024-11-21 12:01 |
2017-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256994
|
6.1 |
MEDIUM
Network
|
mybb
|
mybb merge_system
|
Cross-site scripting (XSS) vulnerability in member validation in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9405
|
2024-11-21 12:01 |
2017-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256995
|
6.1 |
MEDIUM
Network
|
mybb
|
mybb merge_system
|
Cross-site scripting (XSS) vulnerability in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors …
|
CWE-79
Cross-site Scripting
|
CVE-2016-9404
|
2024-11-21 12:01 |
2017-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256996
|
9.8 |
CRITICAL
Network
|
mybb
|
mybb merge_system
|
newreply.php in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allows remote attackers to have unspecified impact by leveraging a missing permission check.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-9403
|
2024-11-21 12:01 |
2017-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256997
|
9.8 |
CRITICAL
Network
|
mybb
|
mybb merge_system
|
SQL injection vulnerability in the moderation tool in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to execute arbitrary SQL commands via uns…
|
CWE-89
SQL Injection
|
CVE-2016-9402
|
2024-11-21 12:01 |
2017-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256998
|
7.2 |
HIGH
Network
|
sophos
|
web_appliance
|
The Sophos Web Appliance Remote / Secure Web Gateway server (version 4.2.1.3) is vulnerable to a Remote Command Injection vulnerability in its web administrative interface. These vulnerabilities occu…
|
CWE-77
Command Injection
|
CVE-2016-9554
|
2024-11-21 12:01 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256999
|
7.2 |
HIGH
Network
|
sophos
|
web_appliance
|
The Sophos Web Appliance (version 4.2.1.3) is vulnerable to two Remote Command Injection vulnerabilities affecting its web administrative interface. These vulnerabilities occur in the MgrReport.php (…
|
CWE-77
Command Injection
|
CVE-2016-9553
|
2024-11-21 12:01 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257000
|
9.8 |
CRITICAL
Network
|
gstreamer redhat debian
|
gstreamer enterprise_linux_hpc_node enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux
|
Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a deni…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-9636
|
2024-11-21 12:01 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|