|
264951
|
6.1 |
MEDIUM
Network
|
python
|
python
|
CRLF injection vulnerability in the HTTPConnection.putheader function in urllib2 and urllib in CPython (aka Python) before 2.7.10 and 3.x before 3.4.4 allows remote attackers to inject arbitrary HTTP…
|
CWE-113
HTTP Response Splitting
|
CVE-2016-5699
|
2024-11-21 11:54 |
2016-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264952
|
9.8 |
CRITICAL
Network
|
python
|
python
|
Integer overflow in the get_data function in zipimport.c in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 allows remote attackers to have unspecified impact via a negat…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-5636
|
2024-11-21 11:54 |
2016-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264953
|
8.8 |
HIGH
Network
|
nuuo netgear
|
nvrmini_2 readynas_surveillance
|
Stack-based buffer overflow in cgi-bin/cgi_main in NUUO NVRmini 2 1.7.6 through 3.0.0 and NETGEAR ReadyNAS Surveillance 1.1.2 allows remote authenticated users to execute arbitrary code via the sn pa…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-5680
|
2024-11-21 11:54 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264954
|
8.8 |
HIGH
Network
|
nuuo netgear
|
nvrmini_2 readynas_surveillance
|
cgi-bin/cgi_main in NUUO NVRmini 2 1.7.6 through 3.0.0 and NETGEAR ReadyNAS Surveillance 1.1.2 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the sn param…
|
CWE-78
OS Command
|
CVE-2016-5679
|
2024-11-21 11:54 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264955
|
9.8 |
CRITICAL
Network
|
nuuo
|
nvrmini_2 nvrsolo
|
NUUO NVRmini 2 1.0.0 through 3.0.0 and NUUO NVRsolo 1.0.0 through 3.0.0 have hardcoded root credentials, which allows remote attackers to obtain administrative access via unspecified vectors.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2016-5678
|
2024-11-21 11:54 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264956
|
7.5 |
HIGH
Network
|
netgear nuuo
|
readynas_surveillance nvrmini_2 nvrsolo
|
NUUO NVRmini 2 1.7.5 through 3.0.0, NUUO NVRsolo 1.0.0 through 3.0.0, and NETGEAR ReadyNAS Surveillance 1.1.1 through 1.4.1 have a hardcoded qwe23622260 password for the nuuoeng account, which allows…
|
CWE-200
Information Exposure
|
CVE-2016-5677
|
2024-11-21 11:54 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264957
|
7.5 |
HIGH
Network
|
netgear nuuo
|
readynas_surveillance nvrsolo nvrmini_2
|
cgi-bin/cgi_system in NUUO NVRmini 2 1.7.5 through 2.x, NUUO NVRsolo 1.7.5 through 2.x, and NETGEAR ReadyNAS Surveillance 1.1.1 through 1.4.1 allows remote attackers to reset the administrator passwo…
|
CWE-285
Improper Authorization
|
CVE-2016-5676
|
2024-11-21 11:54 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264958
|
9.8 |
CRITICAL
Network
|
netgear nuuo
|
readynas_surveillance crystal nvrsolo nvrmini_2
|
handle_daylightsaving.php in NUUO NVRmini 2 1.7.5 through 3.0.0, NUUO NVRsolo 1.0.0 through 3.0.0, NUUO Crystal 2.2.1 through 3.2.0, and NETGEAR ReadyNAS Surveillance 1.1.1 through 1.4.1 allows remot…
|
CWE-20
Improper Input Validation
|
CVE-2016-5675
|
2024-11-21 11:54 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264959
|
9.8 |
CRITICAL
Network
|
netgear nuuo
|
readynas_surveillance nvrmini_2 nvrsolo
|
__debugging_center_utils___.php in NUUO NVRmini 2 1.7.5 through 3.0.0, NUUO NVRsolo 1.7.5 through 3.0.0, and NETGEAR ReadyNAS Surveillance 1.1.1 through 1.4.1 allows remote attackers to execute arbit…
|
CWE-20
Improper Input Validation
|
CVE-2016-5674
|
2024-11-21 11:54 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264960
|
9.8 |
CRITICAL
Network
|
vmware
|
vrealize_automation
|
VMware vRealize Automation 7.0.x before 7.1 allows remote attackers to execute arbitrary code via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2016-5336
|
2024-11-21 11:54 |
2016-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|