|
266981
|
6.1 |
MEDIUM
Network
|
clip-bucket
|
clipbucket
|
Multiple Cross Site Scripting (XSS) Vulnerabilities in ClipBucket v2.8.1 and probably prior allow Remote Attackers to inject arbitrary web script or HTML via (1) profile_desc, about_me, schools, occu…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1000307
|
2024-11-21 11:43 |
2017-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266982
|
7.8 |
HIGH
Local
|
textract_project
|
textract
|
textract before 1.5.0 allows OS Command Injection attacks via a filename in a call to the process function. This may be a remote attack if a web application accepts names of arbitrary uploaded files.
|
CWE-78
OS Command
|
CVE-2016-10320
|
2024-11-21 11:43 |
2017-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266983
|
5.9 |
MEDIUM
Network
|
arm_trusted_firmware_project
|
arm_trusted_firmware
|
In ARM Trusted Firmware 1.2 and 1.3, a malformed firmware update SMC can result in copying unexpectedly large data into secure memory because of integer overflows. This affects certain cases involvin…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-10319
|
2024-11-21 11:43 |
2017-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266984
|
6.5 |
MEDIUM
Network
|
linux
|
linux_kernel
|
A missing authorization check in the fscrypt_process_policy function in fs/crypto/policy.c in the ext4 and f2fs filesystem encryption support in the Linux kernel before 4.7.4 allows a user to assign …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-10318
|
2024-11-21 11:43 |
2017-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266985
|
9.8 |
CRITICAL
Network
|
linux google
|
linux_kernel android
|
udp.c in the Linux kernel before 4.5 allows remote attackers to execute arbitrary code via UDP traffic that triggers an unsafe second checksum calculation during execution of a recv system call with …
|
CWE-358
Improperly Implemented Security Check for Standard
|
CVE-2016-10229
|
2024-11-21 11:43 |
2017-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266986
|
7.8 |
HIGH
Local
|
artifex
|
ghostscript
|
The fill_threshhold_buffer function in base/gxht_thresh.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (heap-based buffer overflow and application c…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-10317
|
2024-11-21 11:43 |
2017-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266987
|
6.1 |
MEDIUM
Network
|
jensenofscandinavia
|
al3g_firmware al5000ac_firmware al59300_firmware
|
Jensen of Scandinavia AS Air:Link 3G (AL3G) version 2.23m (Rev. 3), Air:Link 5000AC (AL5000AC) version 1.13, and Air:Link 59300 (AL59300) version 1.04 (Rev. 4) devices allow remote attackers to condu…
|
CWE-601
Open Redirect
|
CVE-2016-10316
|
2024-11-21 11:43 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266988
|
6.1 |
MEDIUM
Network
|
jensenofscandinavia
|
al3g_firmware al5000ac_firmware al59300_firmware
|
Jensen of Scandinavia AS Air:Link 3G (AL3G) version 2.23m (Rev. 3), Air:Link 5000AC (AL5000AC) version 1.13, and Air:Link 59300 (AL59300) version 1.04 (Rev. 4) devices allow remote attackers to condu…
|
CWE-601
Open Redirect
|
CVE-2016-10315
|
2024-11-21 11:43 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266989
|
8.8 |
HIGH
Network
|
jensenofscandinavia
|
al3g_firmware al5000ac_firmware al59300_firmware
|
Jensen of Scandinavia AS Air:Link 3G (AL3G) version 2.23m (Rev. 3), Air:Link 5000AC (AL5000AC) version 1.13, and Air:Link 59300 (AL59300) version 1.04 (Rev. 4) devices allow remote attackers to read …
|
CWE-200
Information Exposure
|
CVE-2016-10314
|
2024-11-21 11:43 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266990
|
8.8 |
HIGH
Network
|
jensenofscandinavia
|
al3g_firmware al5000ac_firmware al59300_firmware
|
Jensen of Scandinavia AS Air:Link 3G (AL3G) version 2.23m (Rev. 3), Air:Link 5000AC (AL5000AC) version 1.13, and Air:Link 59300 (AL59300) version 1.04 (Rev. 4) devices allow remote attackers to condu…
|
CWE-352
Origin Validation Error
|
CVE-2016-10313
|
2024-11-21 11:43 |
2017-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|