|
266101
|
8.1 |
HIGH
Network
|
hp
|
system_management_homepage
|
HPE System Management Homepage before 7.5.4 allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2016-1993
|
2024-11-21 11:47 |
2016-03-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266102
|
6.5 |
MEDIUM
Network
|
hp
|
enterprise_security_manager_express enterprise_security_manager
|
HPE ArcSight ESM before 6.8c, and ArcSight ESM Express before 6.9.1, allows remote authenticated users to obtain sensitive information via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-1992
|
2024-11-21 11:47 |
2016-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266103
|
5.4 |
MEDIUM
Network
|
vmware
|
vrealize_business_advanced_and_enterprise
|
Cross-site scripting (XSS) vulnerability in VMware vRealize Business Advanced and Enterprise 8.x before 8.2.5 on Linux allows remote authenticated users to inject arbitrary web script or HTML via uns…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2075
|
2024-11-21 11:47 |
2016-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266104
|
8.0 |
HIGH
Network
|
microfocus
|
arcsight_enterprise_security_manager
|
HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows remote authenticated users to conduct unspecified "file download…
|
NVD-CWE-noinfo
|
CVE-2016-1991
|
2024-11-21 11:47 |
2016-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266105
|
7.8 |
HIGH
Local
|
microfocus
|
arcsight_enterprise_security_manager
|
HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows local users to gain privileges for command execution via unspeci…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1990
|
2024-11-21 11:47 |
2016-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266106
|
9.8 |
CRITICAL
Network
|
hp
|
network_automation
|
HPE Network Automation 9.22 through 9.22.02 and 10.x before 10.00.02 allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors, a different vulnerabili…
|
NVD-CWE-noinfo
|
CVE-2016-1989
|
2024-11-21 11:47 |
2016-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266107
|
9.8 |
CRITICAL
Network
|
hp
|
network_automation
|
HPE Network Automation 9.22 through 9.22.02 and 10.x before 10.00.02 allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors, a different vulnerabili…
|
NVD-CWE-noinfo
|
CVE-2016-1988
|
2024-11-21 11:47 |
2016-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266108
|
8.8 |
HIGH
Network
|
mozilla
|
firefox network_security_services
|
Use-after-free vulnerability in the PK11_ImportDERPrivateKeyInfoAndReturnKey function in Mozilla Network Security Services (NSS) before 3.21.1, as used in Mozilla Firefox before 45.0, allows remote a…
|
NVD-CWE-Other
|
CVE-2016-1979
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266109
|
7.3 |
HIGH
Network
|
mozilla
|
firefox network_security_services
|
Use-after-free vulnerability in the ssl3_HandleECDHServerKeyExchange function in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, allows remote attackers t…
|
NVD-CWE-Other
|
CVE-2016-1978
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266110
|
8.8 |
HIGH
Network
|
suse opensuse oracle sil mozilla
|
linux_enterprise leap opensuse linux graphite2 firefox
|
The Machine::Code::decoder::analysis::set_ref function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to execute arbitrar…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1977
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|