|
265171
|
9.1 |
CRITICAL
Network
|
trihedral
|
vtscada
|
The WAP interface in Trihedral VTScada (formerly VTS) 8.x through 11.x before 11.2.02 allows remote attackers to bypass authentication and read arbitrary files via unspecified vectors.
|
CWE-287
Improper Authentication
|
CVE-2016-4510
|
2024-11-21 11:52 |
2016-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265172
|
7.5 |
HIGH
Network
|
f5
|
big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_local_traffic_manager big-ip_analytics big-ip_global_traffic_manager big-ip_policy_enforcement_manager
|
Virtual servers in F5 BIG-IP 11.5.4, when SSL profiles are enabled, allow remote attackers to cause a denial of service (resource consumption and Traffic Management Microkernel restart) via an SSL al…
|
CWE-20
Improper Input Validation
|
CVE-2016-4545
|
2024-11-21 11:52 |
2016-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265173
|
7.5 |
HIGH
Network
|
canonical f5 debian
|
ubuntu_linux nginx debian_linux
|
os/unix/ngx_files.c in nginx before 1.10.1 and 1.11.x before 1.11.1 allows remote attackers to cause a denial of service (NULL pointer dereference and worker process crash) via a crafted request, inv…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-4450
|
2024-11-21 11:52 |
2016-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265174
|
9.8 |
CRITICAL
Network
|
imagemagick
|
imagemagick
|
The DrawImage function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 makes an incorrect function call in attempting to locate the next token, which allows remote attackers…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4564
|
2024-11-21 11:52 |
2016-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265175
|
8.8 |
HIGH
Network
|
imagemagick
|
imagemagick
|
The TraceStrokePolygon function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 mishandles the relationship between the BezierQuantum value and certain strokes data, which a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4563
|
2024-11-21 11:52 |
2016-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265176
|
8.8 |
HIGH
Network
|
imagemagick
|
imagemagick
|
The DrawDashPolygon function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 mishandles calculations of certain vertices integer data, which allows remote attackers to cause…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4562
|
2024-11-21 11:52 |
2016-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265177
|
6.0 |
MEDIUM
Local
|
qemu canonical debian
|
qemu ubuntu_linux debian_linux
|
The vmsvga_fifo_read_raw function in hw/display/vmware_vga.c in QEMU allows local guest OS administrators to obtain sensitive host memory information or cause a denial of service (QEMU process crash)…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4454
|
2024-11-21 11:52 |
2016-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265178
|
4.4 |
MEDIUM
Local
|
qemu canonical debian
|
qemu ubuntu_linux debian_linux
|
The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via a VGA command.
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2016-4453
|
2024-11-21 11:52 |
2016-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265179
|
7.5 |
HIGH
Network
|
sensiolabs debian
|
symfony debian_linux
|
The attemptAuthentication function in Component/Security/Http/Firewall/UsernamePasswordFormAuthenticationListener.php in Symfony before 2.3.41, 2.7.x before 2.7.13, 2.8.x before 2.8.6, and 3.0.x befo…
|
CWE-399
Resource Management Errors
|
CVE-2016-4423
|
2024-11-21 11:52 |
2016-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265180
|
9.1 |
CRITICAL
Network
|
apache
|
qpid_broker-j
|
The AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid Java before 6.0.3 might allow remote attackers to bypass authentication and consequently perform actions via vectors related to co…
|
CWE-287
Improper Authentication
|
CVE-2016-4432
|
2024-11-21 11:52 |
2016-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|