|
266761
|
5.0 |
MEDIUM
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_10 windows_8.1
|
The kernel in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows local users to gain privileges via a crafted application that makes an…
|
CWE-200
Information Exposure
|
CVE-2016-0073
|
2024-11-21 11:41 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266762
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows …
|
CWE-200
Information Exposure
|
CVE-2016-0070
|
2024-11-21 11:41 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266763
|
3.1 |
LOW
Network
|
ibm
|
websphere_mq
|
IBM WebSphere MQ 7.5 before 7.5.0.7 and 8.0 before 8.0.0.5 mishandles protocol flows, which allows remote authenticated users to cause a denial of service (channel outage) by leveraging queue-manager…
|
CWE-19
Data Processing Errors
|
CVE-2016-0379
|
2024-11-21 11:41 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266764
|
3.7 |
LOW
Network
|
ibm
|
security_guardium
|
IBM Security Guardium 9.0 before p700 and 10.0 before p100 allows man-in-the-middle attackers to obtain sensitive query-string information from SSL sessions via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-0248
|
2024-11-21 11:41 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266765
|
6.5 |
MEDIUM
Network
|
microsoft
|
office
|
The Visual Basic macros in Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2016 export a certificate-store private key during a document-save operation, which allows attackers to obtain sensitive …
|
CWE-200
Information Exposure
|
CVE-2016-0141
|
2024-11-21 11:41 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266766
|
4.3 |
MEDIUM
Network
|
microsoft
|
exchange_server
|
Microsoft Exchange Server 2007 SP3, 2010 SP3, 2013 SP1, 2013 Cumulative Update 12, 2013 Cumulative Update 13, 2016 Cumulative Update 1, and 2016 Cumulative Update 2 misparses e-mail messages, which a…
|
CWE-200
Information Exposure
|
CVE-2016-0138
|
2024-11-21 11:41 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266767
|
3.3 |
LOW
Local
|
microsoft
|
office
|
The Click-to-Run (C2R) implementation in Microsoft Office 2013 SP1 and 2016 allows local users to bypass the ASLR protection mechanism via a crafted application, aka "Microsoft APP-V ASLR Bypass."
|
CWE-254
7PK - Security Features
|
CVE-2016-0137
|
2024-11-21 11:41 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266768
|
5.4 |
MEDIUM
Network
|
ibm
|
rational_team_concert rational_collaborative_lifecycle_management
|
Cross-site scripting (XSS) vulnerability in IBM Rational Team Concert 6.0.1 and 6.0.2 before 6.0.2 iFix2 and Rational Collaborative Lifecycle Management 6.0.1 and 6.0.2 before 6.0.2 iFix2 allows remo…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0331
|
2024-11-21 11:41 |
2016-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266769
|
3.1 |
LOW
Network
|
ibm
|
websphere_application_server
|
Buffer overflow in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.43, 8.0 before 8.0.0.13, 8.5 before 8.5.5.10, 9.0 before 9.0.0.1, and Liberty before 16.0.0.3, when HttpSessionIdReuse is en…
|
CWE-119 CWE-200
Incorrect Access of Indexable Resource ('Range Error') Information Exposure
|
CVE-2016-0385
|
2024-11-21 11:41 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266770
|
2.7 |
LOW
Network
|
ibm
|
forms_experience_builder
|
Cross-site scripting (XSS) vulnerability in IBM Forms Experience Builder 8.5.x and 8.6.x before 8.6.3 allows remote authenticated users to inject arbitrary web script or HTML via crafted input to an …
|
CWE-79
Cross-site Scripting
|
CVE-2016-0370
|
2024-11-21 11:41 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|