|
266331
|
6.1 |
MEDIUM
Network
|
huge-it
|
gallery
|
XSS in huge IT gallery v1.1.5 for Joomla
|
CWE-79
Cross-site Scripting
|
CVE-2016-1000114
|
2024-11-21 11:42 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266332
|
9.8 |
CRITICAL
Network
|
huge-it
|
gallery
|
XSS and SQLi in huge IT gallery v1.1.5 for Joomla
|
CWE-89
SQL Injection
|
CVE-2016-1000113
|
2024-11-21 11:42 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266333
|
9.1 |
CRITICAL
Network
|
contussupport
|
contus-video-comments
|
Unauthenticated remote .jpg file upload in contus-video-comments v1.0 wordpress plugin
|
CWE-22
Path Traversal
|
CVE-2016-1000112
|
2024-11-21 11:42 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266334
|
7.5 |
HIGH
Network
|
tp-link
|
tp-link
|
TP-LINK lost control of two domains, www.tplinklogin.net and tplinkextender.net. Please note that these domains are physically printed on many of the devices.
|
CWE-254
7PK - Security Features
|
CVE-2016-1000009
|
2024-11-21 11:42 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266335
|
8.8 |
HIGH
Network
|
progress
|
whatsup_gold
|
Ipswitch WhatsUp Gold 16.4.1 WrFreeFormText.asp sUniqueID Parameter Blind SQL Injection
|
CWE-89
SQL Injection
|
CVE-2016-1000000
|
2024-11-21 11:42 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266336
|
9.8 |
CRITICAL
Network
|
emc
|
networker_module_for_microsoft_applications replication_manager
|
The client in EMC Replication Manager (RM) before 5.5.3.0_01-PatchHotfix, EMC Network Module for Microsoft 3.x, and EMC Networker Module for Microsoft 8.2.x before 8.2.3.6 allows remote RM servers to…
|
CWE-20
Improper Input Validation
|
CVE-2016-0913
|
2024-11-21 11:42 |
2016-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266337
|
5.5 |
MEDIUM
Local
|
oracle
|
linux
|
Unspecified vulnerability in the kernel-uek component in Oracle Linux 6 allows local users to affect availability via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2016-0617
|
2024-11-21 11:42 |
2016-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266338
|
4.3 |
MEDIUM
Network
|
emc
|
rsa_via_lifecycle_and_governance rsa_identity_management_and_governance
|
EMC RSA Identity Management and Governance before 6.8.1 P25 and 6.9.x before 6.9.1 P15 and RSA Via Lifecycle and Governance before 7.0.0 P04 allow remote authenticated users to obtain User Detail Pop…
|
CWE-200
Information Exposure
|
CVE-2016-0918
|
2024-11-21 11:42 |
2016-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266339
|
5.4 |
MEDIUM
Network
|
emc
|
rsa_adaptive_authentication_on-premise
|
Cross-site scripting (XSS) vulnerability in the Case Management application in EMC RSA Adaptive Authentication (On-Premise) before 6.0.2.1.SP3.P4 HF210, 7.0.x and 7.1.x before 7.1.0.0.SP0.P6 HF50, an…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0925
|
2024-11-21 11:42 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266340
|
6.5 |
MEDIUM
Local
|
emc
|
avamar_server
|
Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar Server before 7.3.0-233 use weak permissions for unspecified directories, which allows local users to obtain root access by repl…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0921
|
2024-11-21 11:42 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|