|
265751
|
5.3 |
MEDIUM
Network
|
mattermost
|
mattermost_server
|
An issue was discovered in Mattermost Server before 3.5.1. E-mail address verification can be bypassed.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2016-11062
|
2024-11-21 11:45 |
2020-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265752
|
9.8 |
CRITICAL
Network
|
xerox
|
workcentre_3655_firmware workcentre_3655i_firmware workcentre_5865_firmware workcentre_5875_firmware workcentre_5890_firmware workcentre_5865i_firmware workcentre_5875i_firmware …
|
Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, and 7970i devices before 073.xxx.086.15410 do not properly escape parameters in the support/remote…
|
CWE-78
OS Command
|
CVE-2016-11061
|
2024-11-21 11:45 |
2020-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265753
|
7.5 |
HIGH
Network
|
netgear
|
fvs318g_firmware fvs318n_firmware fvs336g_firmware srx5308_firmware
|
Certain NETGEAR devices are affected by insecure renegotiation. This affects SRX5308 before 2017-02-10, FVS336Gv3 before 2017-02-10, FVS318N before 2017-02-10, and FVS318Gv2 before 2017-02-10.
|
NVD-CWE-noinfo
|
CVE-2016-11060
|
2024-11-21 11:45 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265754
|
7.5 |
HIGH
Network
|
netgear
|
genie
|
The NETGEAR genie application before 2.4.34 for Android is affected by mishandling of hard-coded API keys and session IDs.
|
CWE-613
Insufficient Session Expiration
|
CVE-2016-11058
|
2024-11-21 11:45 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265755
|
7.5 |
HIGH
Network
|
netgear
|
ac1450_firmware c6300_firmware d1500_firmware d3600_firmware d500_firmware d6000_firmware d6100_firmware d6200_firmware d6200b_firmware d6300_firmware d6300b_firmware
|
Certain NETGEAR devices are affected by password exposure. This affects AC1450 before 2017-01-06, C6300 before 2017-01-06, D500 before 2017-01-06, D1500 before 2017-01-06, D3600 before 2017-01-06, D6…
|
CWE-200
Information Exposure
|
CVE-2016-11059
|
2024-11-21 11:45 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265756
|
7.5 |
HIGH
Network
|
netgear
|
jnr1010_firmware jwnr2000_firmware jwnr2010_firmware r6220_firmware wndr3700_firmware wnr1000_firmware wnr2020_firmware wnr614_firmware wnr618_firmware
|
Certain NETGEAR devices are affected by mishandling of repeated URL calls. This affects JNR1010v2 before 2017-01-06, WNR614 before 2017-01-06, WNR618 before 2017-01-06, JWNR2000v5 before 2017-01-06, …
|
CWE-287
Improper Authentication
|
CVE-2016-11057
|
2024-11-21 11:45 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265757
|
8.8 |
HIGH
Network
|
netgear
|
readynas_surveillance
|
Certain NETGEAR devices are affected by anonymous root access. This affects ReadyNAS Surveillance 1.1.1-3-armel and earlier and ReadyNAS Surveillance 1.4.1-3-amd64 and earlier.
|
NVD-CWE-noinfo
|
CVE-2016-11056
|
2024-11-21 11:45 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265758
|
7.2 |
HIGH
Network
|
netgear
|
dgn2200_firmware
|
NETGEAR DGN2200v4 devices before 2017-01-06 are affected by command execution and an FTP insecure root directory.
|
CWE-78
OS Command
|
CVE-2016-11054
|
2024-11-21 11:45 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265759
|
4.3 |
MEDIUM
Network
|
netgear
|
cm400_firmware cm600_firmware d1500_firmware d500_firmware dst6501_firmware jnr1010_firmware jwnr2000t_firmware jwnr2010_firmware plw1000_firmware plw1010_firmware wnr50…
|
Certain NETGEAR devices are affected by CSRF. This affects CM400 before 2017-01-11, CM600 before 2017-01-11, D1500 before 2017-01-11, D500 before 2017-01-11, DST6501 before 2017-01-11, JNR1010v1 befo…
|
CWE-352
Origin Validation Error
|
CVE-2016-11055
|
2024-11-21 11:45 |
2020-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265760
|
4.6 |
MEDIUM
Physics
|
google
|
android
|
An issue was discovered on Samsung mobile devices with L(5.0/5.1) (with USB OTG MyFile2014_L_ESS support) software. There is a Factory Reset Protection (FRP) bypass. The Samsung ID is SVE-2015-5068 (…
|
CWE-20
Improper Input Validation
|
CVE-2016-11040
|
2024-11-21 11:45 |
2020-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|