|
265701
|
6.3 |
MEDIUM
Local
|
rockwellautomation
|
integrated_architecture_builder
|
IAB.exe in Rockwell Automation Integrated Architecture Builder (IAB) before 9.6.0.8 and 9.7.x before 9.7.0.2 allows remote attackers to execute arbitrary code via a crafted project file.
|
CWE-284
Improper Access Control
|
CVE-2016-2277
|
2024-11-21 11:48 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265702
|
7.5 |
HIGH
Network
|
eaton_lighting_systems
|
eg2_web_control
|
Eaton Lighting EG2 Web Control 4.04P and earlier allows remote attackers to have an unspecified impact via a modified cookie.
|
CWE-284
Improper Access Control
|
CVE-2016-2272
|
2024-11-21 11:48 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265703
|
9.8 |
CRITICAL
Network
|
patterson_dental
|
eaglesoft
|
Patterson Dental Eaglesoft 17 has a hardcoded password of sql for the dba account, which allows remote attackers to obtain sensitive Dental.DB patient information via SQL statements.
|
NVD-CWE-Other
|
CVE-2016-2343
|
2024-11-21 11:48 |
2016-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265704
|
7.5 |
HIGH
Network
|
iconics
|
webhmi
|
Directory traversal vulnerability in ICONICS WebHMI 9 and earlier allows remote attackers to read configuration files, and consequently discover password hashes, via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2016-2289
|
2024-11-21 11:48 |
2016-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265705
|
7.8 |
HIGH
Local
|
cogentdatahub
|
cogent_datahub
|
Cogent DataHub before 7.3.10 allows local users to gain privileges by leveraging the user or guest role to modify a file.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2288
|
2024-11-21 11:48 |
2016-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265706
|
7.5 |
HIGH
Network
|
autodesk
|
autodesk_backburner
|
Stack-based buffer overflow in manager.exe in Backburner Manager in Autodesk Backburner 2016 2016.0.0.2150 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2344
|
2024-11-21 11:48 |
2016-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265707
|
5.4 |
MEDIUM
Network
|
graniteds
|
granite_data_services
|
The AMF framework in Granite Data Services 3.1.1-SNAPSHOT allows remote authenticated users to read arbitrary files, send TCP requests to intranet servers, or cause a denial of service via an XML ext…
|
NVD-CWE-Other
|
CVE-2016-2340
|
2024-11-21 11:48 |
2016-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265708
|
9.8 |
CRITICAL
Network
|
hp
|
support_assistant
|
HP Support Assistant before 8.1.52.1 allows remote attackers to bypass authentication via unspecified vectors.
|
CWE-287
Improper Authentication
|
CVE-2016-2245
|
2024-11-21 11:48 |
2016-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265709
|
6.1 |
MEDIUM
Network
|
xzeres
|
442sr_os
|
Cross-site scripting (XSS) vulnerability in XZERES 442SR OS on 442SR wind turbines allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-2287
|
2024-11-21 11:48 |
2016-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265710
|
7.2 |
HIGH
Local
|
abb
|
panel_builder_800
|
Untrusted search path vulnerability in ABB Panel Builder 800 5.1 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2281
|
2024-11-21 11:48 |
2016-03-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|