|
266261
|
5.9 |
MEDIUM
Network
|
apache canonical debian redhat netapp oracle
|
tomcat ubuntu_linux debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus jboss_enterprise_web_server enterpri…
|
The Realm implementations in Apache Tomcat versions 9.0.0.M1 to 9.0.0.M9, 8.5.0 to 8.5.4, 8.0.0.RC1 to 8.0.36, 7.0.0 to 7.0.70 and 6.0.0 to 6.0.45 did not process the supplied password if the supplie…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2016-0762
|
2024-11-21 11:42 |
2017-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266262
|
7.5 |
HIGH
Network
|
apache
|
http_server
|
In Apache HTTP Server versions 2.4.0 to 2.4.23, mod_session_crypto was encrypting its data/cookie using the configured ciphers with possibly either CBC or ECB modes of operation (AES256-CBC by defaul…
|
CWE-310
Cryptographic Issues
|
CVE-2016-0736
|
2024-11-21 11:42 |
2017-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266263
|
6.2 |
MEDIUM
Local
|
redhat
|
networkmanager
|
Race condition in Network Manager before 1.0.12 as packaged in Red Hat Enterprise Linux Desktop 7, Red Hat Enterprise Linux HPC Node 7, Red Hat Enterprise Linux Server 7, and Red Hat Enterprise Linux…
|
CWE-362
Race Condition
|
CVE-2016-0764
|
2024-11-21 11:42 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266264
|
9.8 |
CRITICAL
Network
|
adobe
|
flash_player flash_player_extended_support_release flash_player_for_linux air air_sdk_\&_compiler air_sdk
|
Use after free vulnerability in Adobe Flash Player Desktop Runtime before 20.0.0.267, Adobe Flash Player Extended Support Release before 18.0.0.324, Adobe Flash Player for Google Chrome before 20.0.0…
|
CWE-416
Use After Free
|
CVE-2016-0959
|
2024-11-21 11:42 |
2017-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266265
|
7.5 |
HIGH
Network
|
postgresql
|
postgresql
|
PostgreSQL PL/Java after 9.0 does not honor access controls on large objects.
|
CWE-284
Improper Access Control
|
CVE-2016-0768
|
2024-11-21 11:42 |
2017-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266266
|
6.5 |
MEDIUM
Network
|
pl\/java_project
|
pl\/java
|
PostgreSQL PL/Java before 1.5.0 allows remote authenticated users with USAGE permission on the public schema to alter the public schema classpath.
|
CWE-269
Improper Privilege Management
|
CVE-2016-0767
|
2024-11-21 11:42 |
2017-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266267
|
9.8 |
CRITICAL
Network
|
nagios
|
nagios
|
The Fedora Nagios package uses "nagiosadmin" as the default password for the "nagiosadmin" administrator account, which makes it easier for remote attackers to obtain access by leveraging knowledge o…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2016-0726
|
2024-11-21 11:42 |
2017-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266268
|
6.1 |
MEDIUM
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_elastic_runtime cloud_foundry_uaa cloud_foundry login-server cloud_foundry_uaa_bosh
|
The UAA OAuth approval pages in Cloud Foundry v208 to v231, Login-server v1.6 to v1.14, UAA v2.0.0 to v2.7.4.1, UAA v3.0.0 to v3.2.0, UAA-Release v2 to v7 and Pivotal Elastic Runtime 1.6.x versions p…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0781
|
2024-11-21 11:42 |
2017-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266269
|
7.5 |
HIGH
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_elastic_runtime cf-release
|
It was discovered that cf-release v231 and lower, Pivotal Cloud Foundry Elastic Runtime 1.5.x versions prior to 1.5.17 and Pivotal Cloud Foundry Elastic Runtime 1.6.x versions prior to 1.6.18 do not …
|
CWE-399
Resource Management Errors
|
CVE-2016-0780
|
2024-11-21 11:42 |
2017-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266270
|
9.8 |
CRITICAL
Network
|
pivotal_software cloudfoundry
|
cloud_foundry_elastic_runtime garden_linux
|
Cloud Foundry Garden-Linux versions prior to v0.333.0 and Elastic Runtime 1.6.x version prior to 1.6.17 contain a flaw in managing container files during Docker image preparation that could be used t…
|
CWE-19
Data Processing Errors
|
CVE-2016-0761
|
2024-11-21 11:42 |
2017-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|