|
266571
|
9.8 |
CRITICAL
Network
|
suse pidgin
|
linux_enterprise_server pidgin
|
Pidgin version <2.11.0 contains a vulnerability in X.509 Certificates imports specifically due to improper check of return values from gnutls_x509_crt_init() and gnutls_x509_crt_import() that can res…
|
CWE-295
Improper Certificate Validation
|
CVE-2016-1000030
|
2024-11-21 11:42 |
2018-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266572
|
5.9 |
MEDIUM
Network
|
cloudfoundry
|
java_buildpack cf-release
|
Applications deployed to Cloud Foundry, versions v166 through v227, may be vulnerable to a remote disclosure of information, including, but not limited to environment variables and bound service deta…
|
CWE-200
Information Exposure
|
CVE-2016-0708
|
2024-11-21 11:42 |
2018-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266573
|
10.0 |
CRITICAL
Network
|
vmware
|
pivotal_software_mysql
|
MySQL for PCF tiles 1.7.x before 1.7.10 were discovered to log the AWS access key in plaintext. These credentials were logged to the Service Backup component logs, and not the system log, thus were n…
|
CWE-255 CWE-532
Credentials Management Inclusion of Sensitive Information in Log Files
|
CVE-2016-0898
|
2024-11-21 11:42 |
2018-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266574
|
9.8 |
CRITICAL
Network
|
kabona
|
webdatorcentral
|
A Plaintext Storage of a Password issue was discovered in Kabona AB WebDatorCentral (WDC) versions prior to Version 3.4.0. WDC stores password credentials in plaintext.
|
CWE-255
Credentials Management
|
CVE-2016-0872
|
2024-11-21 11:42 |
2017-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266575
|
8.8 |
HIGH
Network
|
cloudfoundry pivotal
|
cf-release user_account_and_authentication uaa-release elastic_runtime
|
The identity zones feature in Pivotal Cloud Foundry 208 through 229; UAA 2.0.0 through 2.7.3 and 3.0.0; UAA-Release 2 through 4, when configured with multiple identity zones; and Elastic Runtime 1.6.…
|
CWE-269
Improper Privilege Management
|
CVE-2016-0732
|
2024-11-21 11:42 |
2017-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266576
|
4.7 |
MEDIUM
Network
|
cloudfoundry
|
cf-release
|
Gorouter in Cloud Foundry cf-release v141 through v228 allows man-in-the-middle attackers to conduct cross-site scripting (XSS) attacks via vectors related to modified requests.
|
CWE-79
Cross-site Scripting
|
CVE-2016-0713
|
2024-11-21 11:42 |
2017-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266577
|
7.5 |
HIGH
Network
|
gnu
|
bash
|
The expansion of '\h' in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in 'hostname' of a machine.
|
CWE-78
OS Command
|
CVE-2016-0634
|
2024-11-21 11:42 |
2017-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266578
|
5.9 |
MEDIUM
Network
|
apache canonical debian redhat netapp oracle
|
tomcat ubuntu_linux debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus jboss_enterprise_web_server enterpri…
|
The Realm implementations in Apache Tomcat versions 9.0.0.M1 to 9.0.0.M9, 8.5.0 to 8.5.4, 8.0.0.RC1 to 8.0.36, 7.0.0 to 7.0.70 and 6.0.0 to 6.0.45 did not process the supplied password if the supplie…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2016-0762
|
2024-11-21 11:42 |
2017-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266579
|
7.5 |
HIGH
Network
|
apache
|
http_server
|
In Apache HTTP Server versions 2.4.0 to 2.4.23, mod_session_crypto was encrypting its data/cookie using the configured ciphers with possibly either CBC or ECB modes of operation (AES256-CBC by defaul…
|
CWE-310
Cryptographic Issues
|
CVE-2016-0736
|
2024-11-21 11:42 |
2017-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266580
|
6.2 |
MEDIUM
Local
|
redhat
|
networkmanager
|
Race condition in Network Manager before 1.0.12 as packaged in Red Hat Enterprise Linux Desktop 7, Red Hat Enterprise Linux HPC Node 7, Red Hat Enterprise Linux Server 7, and Red Hat Enterprise Linux…
|
CWE-362
Race Condition
|
CVE-2016-0764
|
2024-11-21 11:42 |
2017-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|