|
266491
|
7.5 |
HIGH
Network
|
eaton_lighting_systems
|
eg2_web_control
|
Eaton Lighting EG2 Web Control 4.04P and earlier allows remote attackers to read the configuration file, and consequently discover credentials, via a direct request.
|
CWE-200
Information Exposure
|
CVE-2016-0871
|
2024-11-21 11:42 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266492
|
7.5 |
HIGH
Network
|
redhat
|
jboss_wildfly_application_server
|
Incomplete blacklist vulnerability in the servlet filter restriction mechanism in WildFly (formerly JBoss Application Server) before 10.0.0.Final on Windows allows remote attackers to read the sensit…
|
CWE-200
Information Exposure
|
CVE-2016-0793
|
2024-11-21 11:42 |
2016-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266493
|
8.1 |
HIGH
Network
|
redhat oracle
|
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc_node icedtea7 jdk jre
|
Unspecified vulnerability in Oracle Java SE 7u97, 8u73, and 8u74 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to the Hotspot sub-componen…
|
NVD-CWE-noinfo
|
CVE-2016-0636
|
2024-11-21 11:42 |
2016-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266494
|
5.9 |
MEDIUM
Network
|
samba
|
samba
|
The internal DNS server in Samba 4.x before 4.1.23, 4.2.x before 4.2.9, 4.3.x before 4.3.6, and 4.4.x before 4.4.0rc4, when an AD DC is configured, allows remote authenticated users to cause a denial…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0771
|
2024-11-21 11:42 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266495
|
6.1 |
MEDIUM
Physics
|
google
|
android
|
Setup Wizard in Android 5.1.x before LMY49H and 6.x before 2016-03-01 allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism and delete data via unspecified…
|
CWE-264 CWE-254
Permissions, Privileges, and Access Controls 7PK - Security Features
|
CVE-2016-0832
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266496
|
5.5 |
MEDIUM
Local
|
google
|
android
|
The getDeviceIdForPhone function in internal/telephony/PhoneSubInfoController.java in Telephony in Android 5.x before 5.1.1 LMY49H and 6.x before 2016-03-01 does not check for the READ_PHONE_STATE pe…
|
CWE-200
Information Exposure
|
CVE-2016-0831
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266497
|
6.5 |
MEDIUM
Adjacent
|
google
|
android
|
btif_config.c in Bluetooth in Android 6.x before 2016-03-01 allows remote attackers to cause a denial of service (memory corruption and persistent daemon crash) by triggering a large number of config…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0830
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266498
|
7.5 |
HIGH
Network
|
google
|
android
|
The BnGraphicBufferProducer::onTransact function in libs/gui/IGraphicBufferConsumer.cpp in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 does not initial…
|
CWE-200 CWE-254
Information Exposure 7PK - Security Features
|
CVE-2016-0829
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266499
|
7.5 |
HIGH
Network
|
google
|
android
|
The BnGraphicBufferConsumer::onTransact function in libs/gui/IGraphicBufferConsumer.cpp in mediaserver in Android 5.x before 5.1.1 LMY49H and 6.x before 2016-03-01 does not initialize a certain slot …
|
CWE-200 CWE-254
Information Exposure 7PK - Security Features
|
CVE-2016-0828
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266500
|
7.8 |
HIGH
Local
|
google
|
android
|
Multiple integer overflows in libeffects in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 allow attackers to gain privileges via a crafted application, a…
|
CWE-189
Numeric Errors
|
CVE-2016-0827
|
2024-11-21 11:42 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|