|
266751
|
4.3 |
MEDIUM
Network
|
ibm
|
security_guardium
|
IBM Security Guardium 10.x through 10.1 before p100 allows remote authenticated users to obtain sensitive information by reading an Application Error message.
|
CWE-200
Information Exposure
|
CVE-2016-0242
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266752
|
8.8 |
HIGH
Network
|
ibm
|
security_guardium_database_activity_monitor
|
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to spoof administrator accounts by se…
|
CWE-284
Improper Access Control
|
CVE-2016-0241
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266753
|
3.7 |
LOW
Network
|
ibm
|
security_guardium_database_activity_monitor
|
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 does not enable the HSTS protection mechanism, which makes it easier fo…
|
CWE-254
7PK - Security Features
|
CVE-2016-0240
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266754
|
8.8 |
HIGH
Network
|
ibm
|
security_guardium_database_activity_monitor
|
IBM Security Guardium Database Activity Monitor 9.x through 9.5 before p700 and 10.x through 10.0.1 before p100 allows remote authenticated users to make HTTP requests with administrator privileges v…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0239
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266755
|
8.8 |
HIGH
Network
|
ibm
|
security_guardium_database_activity_monitor
|
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to execute arbitrary commands with ro…
|
CWE-77
Command Injection
|
CVE-2016-0236
|
2024-11-21 11:41 |
2016-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266756
|
8.6 |
HIGH
Network
|
ibm
|
security_guardium
|
SQL injection vulnerability in IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote attackers to execute arbit…
|
CWE-89
SQL Injection
|
CVE-2016-0249
|
2024-11-21 11:41 |
2016-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266757
|
6.8 |
MEDIUM
Network
|
ibm
|
cloud_orchestrator
|
Open redirect vulnerability in IBM Cloud Orchestrator 2.4.x before 2.4.0 FP3 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via unspecified ve…
|
CWE-601
Open Redirect
|
CVE-2016-0204
|
2024-11-21 11:41 |
2016-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266758
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_7 windows_10 windows_8.1 windows_vista
|
Video Control in Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8.1, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows remote attackers to execute arbitrary code via a crafted web page,…
|
CWE-119 CWE-284
Incorrect Access of Indexable Resource ('Range Error') Improper Access Control
|
CVE-2016-0142
|
2024-11-21 11:41 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266759
|
5.0 |
MEDIUM
Local
|
microsoft
|
windows_10
|
The kernel in Microsoft Windows 10 Gold, 1511, and 1607 allows local users to gain privileges via a crafted application that makes an API call to access sensitive information in the registry, aka "Wi…
|
CWE-200
Information Exposure
|
CVE-2016-0079
|
2024-11-21 11:41 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266760
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_10 windows_8.1
|
The kernel in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows local users to gain privileges via a crafted application that makes an…
|
CWE-200
Information Exposure
|
CVE-2016-0075
|
2024-11-21 11:41 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|