|
266181
|
7.5 |
HIGH
Network
|
privoxy
|
privoxy
|
The client_host function in parsers.c in Privoxy before 3.0.24 allows remote attackers to cause a denial of service (invalid read and crash) via an empty HTTP Host header.
|
CWE-20
Improper Input Validation
|
CVE-2016-1983
|
2024-11-21 11:47 |
2016-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266182
|
7.5 |
HIGH
Network
|
privoxy
|
privoxy
|
The remove_chunked_transfer_coding function in filters.c in Privoxy before 3.0.24 allows remote attackers to cause a denial of service (invalid read and crash) via crafted chunk-encoded content.
|
CWE-20
Improper Input Validation
|
CVE-2016-1982
|
2024-11-21 11:47 |
2016-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266183
|
6.5 |
MEDIUM
Network
|
uclouvain
|
openjpeg
|
The opj_tgt_reset function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG 2000 image.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1924
|
2024-11-21 11:47 |
2016-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266184
|
6.5 |
MEDIUM
Network
|
uclouvain
|
openjpeg
|
Heap-based buffer overflow in the opj_j2k_update_image_data function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafte…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1923
|
2024-11-21 11:47 |
2016-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266185
|
9.8 |
CRITICAL
Network
|
lexmark
|
printer_firmware
|
Race condition in the initialization process on Lexmark printers with firmware ATL before ATL.02.049, CB before CB.02.049, PP before PP.02.049, and YK before YK.02.049 allows remote attackers to bypa…
|
CWE-264 CWE-254
Permissions, Privileges, and Access Controls 7PK - Security Features
|
CVE-2016-1896
|
2024-11-21 11:47 |
2016-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266186
|
6.1 |
MEDIUM
Network
|
greenbone fedoraproject
|
greenbone_security_assistant greenbone_os fedora
|
Cross-site scripting (XSS) vulnerability in the charts module in Greenbone Security Assistant (GSA) 6.x before 6.0.8 allows remote attackers to inject arbitrary web script or HTML via the aggregate_t…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1926
|
2024-11-21 11:47 |
2016-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266187
|
7.6 |
HIGH
Network
|
harfbuzz_project google
|
harfbuzz chrome
|
Multiple unspecified vulnerabilities in HarfBuzz before 1.0.6, as used in Google Chrome before 48.0.2564.82, allow attackers to cause a denial of service or possibly have other impact via crafted dat…
|
NVD-CWE-noinfo
|
CVE-2016-2052
|
2024-11-21 11:47 |
2016-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266188
|
9.8 |
CRITICAL
Network
|
google redhat
|
chrome enterprise_linux_desktop_supplementary enterprise_linux_server_supplementary enterprise_linux_workstation_supplementary enterprise_linux_server_supplementary_eus
|
Multiple unspecified vulnerabilities in Google V8 before 4.8.271.17, as used in Google Chrome before 48.0.2564.82, allow attackers to cause a denial of service or possibly have other impact via unkno…
|
NVD-CWE-noinfo
|
CVE-2016-2051
|
2024-11-21 11:47 |
2016-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266189
|
9.8 |
CRITICAL
Network
|
harman
|
amx_firmware
|
The setUpSubtleUserAccount function in /bin/bw on Harman AMX devices before 2016-01-20 has a hardcoded password for the 1MB@tMaN account, which makes it easier for remote attackers to obtain access v…
|
CWE-255
Credentials Management
|
CVE-2016-1984
|
2024-11-21 11:47 |
2016-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266190
|
9.3 |
CRITICAL
Network
|
sap
|
hana
|
The XS engine in SAP HANA allows remote attackers to spoof log entries in trace files and consequently cause a denial of service (disk consumption and process crash) via a crafted HTTP request, relat…
|
CWE-20
Improper Input Validation
|
CVE-2016-1929
|
2024-11-21 11:47 |
2016-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|