|
266271
|
8.1 |
HIGH
Network
|
clusterlabs redhat fedoraproject
|
pcs enterprise_linux fedora
|
Session fixation vulnerability in pcsd in pcs before 0.9.157.
|
CWE-384
Session Fixation
|
CVE-2016-0721
|
2024-11-21 11:42 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266272
|
8.8 |
HIGH
Network
|
clusterlabs redhat fedoraproject
|
pcs enterprise_linux fedora
|
Cross-site request forgery (CSRF) vulnerability in pcsd web UI in pcs before 0.9.149.
|
CWE-352
Origin Validation Error
|
CVE-2016-0720
|
2024-11-21 11:42 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266273
|
7.5 |
HIGH
Network
|
google
|
android
|
Android allows users to cause a denial of service.
|
NVD-CWE-noinfo
|
CVE-2016-0833
|
2024-11-21 11:42 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266274
|
7.8 |
HIGH
Local
|
canonical
|
ubuntu_linux
|
The crontab script in the ntp package before 1:4.2.6.p3+dfsg-1ubuntu3.11 on Ubuntu 12.04 LTS, before 1:4.2.6.p5+dfsg-3ubuntu2.14.04.10 on Ubuntu 14.04 LTS, on Ubuntu Wily, and before 1:4.2.8p4+dfsg-3…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0727
|
2024-11-21 11:42 |
2017-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266275
|
9.8 |
CRITICAL
Network
|
apache
|
tomee
|
The EjbObjectInputStream class in Apache TomEE before 1.7.4 and 7.x before 7.0.0-M3 allows remote attackers to execute arbitrary code via a crafted serialized object.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2016-0779
|
2024-11-21 11:42 |
2017-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266276
|
6.1 |
MEDIUM
Network
|
zahmit_design
|
connections_business_directory_plugin
|
Cross-site scripting (XSS) vulnerability in includes/admin/pages/manage.php in the Connections Business Directory plugin before 8.5.9 for WordPress allows remote attackers to inject arbitrary web scr…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0770
|
2024-11-21 11:42 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266277
|
6.1 |
MEDIUM
Network
|
rsa
|
web_threat_detection
|
EMC RSA Web Threat Detection version 5.0, RSA Web Threat Detection version 5.1, RSA Web Threat Detection version 5.1.2 has a cross site scripting vulnerability that could potentially be exploited by …
|
CWE-79
Cross-site Scripting
|
CVE-2016-0919
|
2024-11-21 11:42 |
2017-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266278
|
6.4 |
MEDIUM
Network
|
emc
|
powerpath_virtual_appliance
|
EMC PowerPath Virtual (Management) Appliance 2.0, EMC PowerPath Virtual (Management) Appliance 2.0 SP1 is affected by a sensitive information disclosure vulnerability that may potentially be exploite…
|
CWE-200
Information Exposure
|
CVE-2016-0890
|
2024-11-21 11:42 |
2017-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266279
|
8.8 |
HIGH
Network
|
elfden
|
eshop_plugin
|
Multiple SQL injection vulnerabilities in eshop-orders.php in the eShop plugin 6.3.14 for WordPress allow (1) remote administrators to execute arbitrary SQL commands via the delid parameter or remote…
|
CWE-89
SQL Injection
|
CVE-2016-0769
|
2024-11-21 11:42 |
2017-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266280
|
6.1 |
MEDIUM
Network
|
elfden
|
eshop_plugin
|
Multiple cross-site scripting (XSS) vulnerabilities in eshop-orders.php in the eShop plugin 6.3.14 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) page or (2) …
|
CWE-79
Cross-site Scripting
|
CVE-2016-0765
|
2024-11-21 11:42 |
2017-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|