|
257311
|
6.1 |
MEDIUM
Network
|
sitecore
|
experience_platform
|
Cross-Site Scripting (XSS) in "/sitecore/client/Applications/List Manager/Taskpages/Contact list" in Sitecore Experience Platform 8.1 rev. 160519 (8.1 Update-3) allows remote attacks via the Name or …
|
CWE-79
Cross-site Scripting
|
CVE-2016-8855
|
2024-11-21 12:00 |
2017-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257312
|
5.4 |
MEDIUM
Network
|
ibm
|
urbancode_deploy
|
IBM UrbanCode Deploy 6.1 and 6.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9006
|
2024-11-21 12:00 |
2017-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257313
|
5.9 |
MEDIUM
Network
|
f5
|
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<…
|
In F5 BIG-IP systems 12.1.0 - 12.1.2, malicious requests made to virtual servers with an HTTP profile can cause the TMM to restart. The issue is exposed with BIG-IP APM profiles, regardless of settin…
|
CWE-284
Improper Access Control
|
CVE-2016-9245
|
2024-11-21 12:00 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257314
|
6.5 |
MEDIUM
Network
|
ibm
|
websphere_mq
|
IBM WebSphere MQ 8.0 could allow an authenticated user with queue manager permissions to cause a segmentation fault which would result in the box having to be rebooted to resume normal operations. IB…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-8971
|
2024-11-21 12:00 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257315
|
8.8 |
HIGH
Network
|
ibm
|
tivoli_storage_manager
|
IBM Tivoli Storage Manager (IBM Spectrum Protect) 6.1, 6.2, 6.3, and 7.1 does not perform sufficient authority checking on SQL queries. As a result, an attacker is able to submit SQL queries that acc…
|
CWE-200
Information Exposure
|
CVE-2016-8940
|
2024-11-21 12:00 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257316
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
SQL injection vulnerability in framework/modules/filedownloads/controllers/filedownloadController.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via t…
|
CWE-89
SQL Injection
|
CVE-2016-9087
|
2024-11-21 12:00 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257317
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
SQL injection vulnerability in framework/modules/help/controllers/helpController.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the version parame…
|
CWE-89
SQL Injection
|
CVE-2016-9020
|
2024-11-21 12:00 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257318
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
SQL injection vulnerability in the activate_address function in framework/modules/addressbook/controllers/addressController.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute ar…
|
CWE-89
SQL Injection
|
CVE-2016-9019
|
2024-11-21 12:00 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257319
|
9.8 |
CRITICAL
Network
|
libupnp_project debian
|
libupnp debian_linux
|
Heap-based buffer overflow in the create_url_list function in gena/gena_device.c in Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to cause a denial of service (crash) or possi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-8863
|
2024-11-21 12:00 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257320
|
7.5 |
HIGH
Network
|
ca
|
unified_infrastructure_management
|
Directory traversal vulnerability in diag.jsp file in CA Unified Infrastructure Management (formerly CA Nimsoft Monitor) 8.4 SP1 and earlier and CA Unified Infrastructure Management Snap (formerly CA…
|
CWE-22
Path Traversal
|
CVE-2016-9164
|
2024-11-21 12:00 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|