|
266921
|
9.8 |
CRITICAL
Network
|
google
|
android
|
The NuPlayer::GenericSource::notifyPreparedAndCleanup function in media/libmediaplayerservice/nuplayer/GenericSource.cpp in mediaserver in Android 5.x before 5.1.1 LMY49G and 6.x before 2016-02-01 im…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0804
|
2024-11-21 11:42 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266922
|
9.8 |
CRITICAL
Network
|
google
|
android
|
libstagefright in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49G, and 6.x before 2016-02-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory co…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0803
|
2024-11-21 11:42 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266923
|
8.8 |
HIGH
Adjacent
|
google apple
|
android watchos iphone_os mac_os_x tvos
|
The Broadcom Wi-Fi driver in the kernel in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49G, and 6.x before 2016-02-01 allows remote attackers to execute arbitrary code or cause a denial of service …
|
CWE-20
Improper Input Validation
|
CVE-2016-0802
|
2024-11-21 11:42 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266924
|
9.8 |
CRITICAL
Network
|
apple google
|
watchos iphone_os mac_os_x tvos android
|
The Broadcom Wi-Fi driver in the kernel in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49G, and 6.x before 2016-02-01 allows remote attackers to execute arbitrary code or cause a denial of service …
|
CWE-20
Improper Input Validation
|
CVE-2016-0801
|
2024-11-21 11:42 |
2016-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266925
|
6.5 |
MEDIUM
Network
|
ge
|
snmp\/web_adapter_firmware
|
General Electric (GE) Industrial Solutions UPS SNMP/Web Adapter devices with firmware before 4.8 allow remote authenticated users to obtain sensitive cleartext account information via unspecified vec…
|
CWE-200
Information Exposure
|
CVE-2016-0862
|
2024-11-21 11:42 |
2016-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266926
|
8.8 |
HIGH
Network
|
ge
|
ups_snmp_web_adapter_firmware
|
General Electric (GE) Industrial Solutions UPS SNMP/Web Adapter devices with firmware before 4.8 allow remote authenticated users to execute arbitrary commands via unspecified vectors.
|
CWE-77
Command Injection
|
CVE-2016-0861
|
2024-11-21 11:42 |
2016-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266927
|
7.5 |
HIGH
Network
|
carel
|
plantvisor_enhanced
|
CAREL PlantVisorEnhanced allows remote attackers to bypass intended access restrictions via a direct file request.
|
CWE-200
Information Exposure
|
CVE-2016-0867
|
2024-11-21 11:42 |
2016-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266928
|
5.3 |
MEDIUM
Network
|
prosody
|
prosody
|
The generate_dialback function in the mod_dialback module in Prosody before 0.9.10 does not properly separate fields when generating dialback keys, which allows remote attackers to spoof XMPP network…
|
CWE-20
Improper Input Validation
|
CVE-2016-0756
|
2024-11-21 11:42 |
2016-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266929
|
7.3 |
HIGH
Network
|
haxx canonical debian
|
curl ubuntu_linux debian_linux
|
The ConnectionExists function in lib/url.c in libcurl before 7.47.0 does not properly re-use NTLM-authenticated proxy connections, which might allow remote attackers to authenticate as other users vi…
|
CWE-287
Improper Authentication
|
CVE-2016-0755
|
2024-11-21 11:42 |
2016-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266930
|
5.3 |
MEDIUM
Network
|
haxx
|
curl
|
cURL before 7.47.0 on Windows allows attackers to write to arbitrary files in the current working directory on a different drive via a colon in a remote file name.
|
CWE-20
Improper Input Validation
|
CVE-2016-0754
|
2024-11-21 11:42 |
2016-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|