|
266241
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2008 windows_7 windows_rt_8.1 windows_vista
|
OLE in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows remote attacke…
|
CWE-20
Improper Input Validation
|
CVE-2016-0091
|
2024-11-21 11:41 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266242
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_7 windows_vista
|
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 do not properly validate handles, which allows local users to gain privileges via a crafted application, aka "Window…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0087
|
2024-11-21 11:41 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266243
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2008 windows_7 windows_rt_8.1 windows_vista
|
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 al…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0094
|
2024-11-21 11:41 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266244
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2008 windows_7 windows_rt_8.1 windows_vista
|
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 al…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0093
|
2024-11-21 11:41 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266245
|
7.8 |
HIGH
Local
|
microsoft
|
office
|
Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2016 does not properly sign an unspecified binary file, which allows local users to gain privileges via a Trojan horse file with a crafted signature…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0057
|
2024-11-21 11:41 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266246
|
5.4 |
MEDIUM
Network
|
ibm
|
business_process_manager
|
Cross-site scripting (XSS) vulnerability in the document-list control implementation in IBM Business Process Manager (BPM) 8.0 through 8.0.1.3, 8.5.0 through 8.5.0.2, and 8.5.5 and 8.5.6 through 8.5.…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0227
|
2024-11-21 11:41 |
2016-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266247
|
5.4 |
MEDIUM
Network
|
ibm
|
websphere_portal
|
The XML parser in IBM WebSphere Portal 8.0.x before 8.0.0.1 CF20 and 8.5.x before 8.5.0.0 CF10 allows remote authenticated users to read arbitrary files or cause a denial of service via an external e…
|
NVD-CWE-Other
|
CVE-2016-0245
|
2024-11-21 11:41 |
2016-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266248
|
6.1 |
MEDIUM
Network
|
ibm
|
websphere_portal
|
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.x through 7.0.0.2 CF29, 8.0.x before 8.0.0.1 CF20, and 8.5.x before 8.5.…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0244
|
2024-11-21 11:41 |
2016-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266249
|
6.1 |
MEDIUM
Network
|
ibm
|
websphere_portal
|
Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.x through 7.0.0.2 CF29, 8.0.x before 8.0.0.1 CF20, and 8.5.x before 8.5.…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0243
|
2024-11-21 11:41 |
2016-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266250
|
4.9 |
MEDIUM
Network
|
ibm
|
websphere_commerce
|
IBM WebSphere Commerce 6.x through 6.0.0.11 and 7.x through 7.0.0.9 allows remote authenticated Commerce Accelerator administrators to obtain sensitive information via unspecified vectors.
|
CWE-200 CWE-284
Information Exposure Improper Access Control
|
CVE-2016-0225
|
2024-11-21 11:41 |
2016-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|