|
266591
|
8.8 |
HIGH
Network
|
fedoraproject mozilla debian sil
|
fedora firefox thunderbird debian_linux graphite2
|
Code.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not consider recursive load calls during a size check, which allows remote…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1522
|
2024-11-21 11:46 |
2016-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266592
|
8.8 |
HIGH
Network
|
debian sil mozilla fedoraproject
|
debian_linux graphite2 firefox thunderbird fedora
|
The directrun function in directmachine.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not validate a certain skip operation, …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1521
|
2024-11-21 11:46 |
2016-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266593
|
5.3 |
MEDIUM
Network
|
cisco
|
spark
|
The REST interface in Cisco Spark 2015-06 allows remote attackers to cause a denial of service (resource outage) by accessing an administrative page, aka Bug ID CSCuv84125.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1324
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266594
|
4.3 |
MEDIUM
Network
|
cisco
|
spark
|
The REST interface in Cisco Spark 2015-06 allows remote authenticated users to obtain sensitive information via a request for an unspecified file, aka Bug ID CSCuv84048.
|
CWE-200
Information Exposure
|
CVE-2016-1323
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266595
|
7.5 |
HIGH
Network
|
cisco
|
spark
|
The REST interface in Cisco Spark 2015-07-04 allows remote attackers to bypass intended access restrictions and create arbitrary user accounts via unspecified web requests, aka Bug ID CSCuv72584.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1322
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266596
|
6.7 |
MEDIUM
Local
|
cisco
|
prime_collaboration
|
The CLI in Cisco Prime Collaboration 9.0 and 11.0 allows local users to execute arbitrary OS commands as root by leveraging administrator privileges, aka Bug ID CSCux69286.
|
CWE-264 CWE-78
Permissions, Privileges, and Access Controls OS Command
|
CVE-2016-1320
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266597
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance_firmeware
|
The proxy engine in Cisco Advanced Malware Protection (AMP), when used with Email Security Appliance (ESA) 9.5.0-201, 9.6.0-051, and 9.7.0-125, allows remote attackers to bypass intended content rest…
|
CWE-284
Improper Access Control
|
CVE-2016-1315
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266598
|
9.8 |
CRITICAL
Network
|
cisco
|
adaptive_security_appliance_software
|
Buffer overflow in the IKEv1 and IKEv2 implementations in Cisco ASA Software before 8.4(7.30), 8.7 before 8.7(1.18), 9.0 before 9.0(4.38), 9.1 before 9.1(7), 9.2 before 9.2(4.5), 9.3 before 9.3(3.7),…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1287
|
2024-11-21 11:46 |
2016-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266599
|
5.3 |
MEDIUM
Network
|
sun samsung zyxel zzinc
|
opensolaris x14j_firmware gs1900-10hp_firmware keymouse_firmware
|
Cisco Unified Communications Manager (aka CallManager) 9.1(2.10000.28), 10.5(2.10000.5), 10.5(2.12901.1), and 11.0(1.10000.10); Unified Communications Manager IM & Presence Service 10.5(2); Unified C…
|
CWE-200
Information Exposure
|
CVE-2016-1319
|
2024-11-21 11:46 |
2016-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266600
|
6.1 |
MEDIUM
Network
|
cisco
|
application_policy_infrastructure_controller_enterprise_module
|
Cross-site scripting (XSS) vulnerability in Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM) 1.1 allows remote attackers to inject arbitrary web script or HTML via craft…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1318
|
2024-11-21 11:46 |
2016-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|