|
257331
|
7.5 |
HIGH
Network
|
aerospike
|
database_server
|
An exploitable denial-of-service vulnerability exists in the fabric-worker component of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause the server process to dereference a nu…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-9049
|
2024-11-21 12:00 |
2017-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257332
|
5.4 |
MEDIUM
Network
|
trendmicro
|
interscan_web_security_virtual_appliance
|
Multiple stored Cross-Site-Scripting (XSS) vulnerabilities in com.trend.iwss.gui.servlet.updateaccountadministration in Trend Micro InterScan Web Security Virtual Appliance (IWSVA) version 6.5-SP2_Bu…
|
CWE-79
Cross-site Scripting
|
CVE-2016-9316
|
2024-11-21 12:00 |
2017-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257333
|
8.8 |
HIGH
Network
|
trendmicro
|
interscan_web_security_virtual_appliance
|
Privilege Escalation Vulnerability in com.trend.iwss.gui.servlet.updateaccountadministration in Trend Micro InterScan Web Security Virtual Appliance (IWSVA) version 6.5-SP2_Build_Linux_1707 and earli…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-9315
|
2024-11-21 12:00 |
2017-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257334
|
7.8 |
HIGH
Local
|
trendmicro
|
interscan_web_security_virtual_appliance
|
Sensitive Information Disclosure in com.trend.iwss.gui.servlet.ConfigBackup in Trend Micro InterScan Web Security Virtual Appliance (IWSVA) version 6.5-SP2_Build_Linux_1707 and earlier allows authent…
|
CWE-200
Information Exposure
|
CVE-2016-9314
|
2024-11-21 12:00 |
2017-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257335
|
9.9 |
CRITICAL
Network
|
trendmicro
|
interscan_web_security_virtual_appliance
|
Remote Command Execution in com.trend.iwss.gui.servlet.ManagePatches in Trend Micro Interscan Web Security Virtual Appliance (IWSVA) version 6.5-SP2_Build_Linux_1707 and earlier allows authenticated,…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-9269
|
2024-11-21 12:00 |
2017-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257336
|
6.1 |
MEDIUM
Network
|
otrs
|
otrs
|
Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) 3.3.x before 3.3.16, 4.0.x before 4.0.19, and 5.0.x before 5.0.14 allows remote attackers to inject arbitrary web script …
|
CWE-79
Cross-site Scripting
|
CVE-2016-9139
|
2024-11-21 12:00 |
2017-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257337
|
6.1 |
MEDIUM
Network
|
ibm
|
websphere_message_broker integration_bus
|
IBM WebSphere Message Broker 9.0 and 10.0 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could expl…
|
CWE-254
7PK - Security Features
|
CVE-2016-9010
|
2024-11-21 12:00 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257338
|
7.8 |
HIGH
Local
|
ibm
|
aix vios
|
IBM AIX 6.1, 7.1, and 7.2 could allow a local user to gain root privileges using a specially crafted command within the bellmail client. IBM APARs: IV91006, IV91007, IV91008, IV91010, IV91011.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8972
|
2024-11-21 12:00 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257339
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_collaborative_lifecycle_management
|
IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leadin…
|
CWE-79
Cross-site Scripting
|
CVE-2016-8968
|
2024-11-21 12:00 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257340
|
5.5 |
MEDIUM
Local
|
ibm
|
aix
|
IBM AIX 7.1 and 7.2 allows a local user to open a file with a specially crafted argument that would crash the system. IBM APARs: IV91488, IV91487, IV91456, IV90234.
|
CWE-20
Improper Input Validation
|
CVE-2016-8944
|
2024-11-21 12:00 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|