|
265971
|
4.3 |
MEDIUM
Network
|
dte_energy
|
insight
|
The REST API in the DTE Energy Insight application before 1.7.8 for Android allows remote authenticated users to obtain unspecified customer information via a SQL expression in the filter parameter.
|
CWE-200
Information Exposure
|
CVE-2016-1562
|
2024-11-21 11:46 |
2016-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265972
|
5.3 |
MEDIUM
Adjacent
|
cisco
|
ios_xr
|
Cisco IOS XR through 4.3.2 on Gigabit Switch Router (GSR) 12000 devices does not properly check for a Bidirectional Forwarding Detection (BFD) header in a UDP packet, which allows remote attackers to…
|
CWE-399
Resource Management Errors
|
CVE-2016-1361
|
2024-11-21 11:46 |
2016-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265973
|
7.1 |
HIGH
Local
|
cisco
|
prime_lan_management_solution
|
Cisco Prime LAN Management Solution (LMS) through 4.2.5 uses the same database decryption key across different customers' installations, which allows local users to obtain cleartext data by leveragin…
|
CWE-200
Information Exposure
|
CVE-2016-1360
|
2024-11-21 11:46 |
2016-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265974
|
6.5 |
MEDIUM
Network
|
cisco
|
telepresence_video_communication_server_software
|
Cisco TelePresence Video Communication Server (VCS) X8.5.1 and X8.5.2 allows remote authenticated users to cause a denial of service (VoIP outage) via a crafted SIP message, aka Bug ID CSCuu43026.
|
CWE-20 CWE-399
Improper Input Validation Resource Management Errors
|
CVE-2016-1338
|
2024-11-21 11:46 |
2016-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265975
|
9.8 |
CRITICAL
Network
|
cisco
|
dpc2203_cable_modem_firmware epc2203_cable_modem_firmware
|
Buffer overflow in the web server on Cisco DPC2203 and EPC2203 devices with firmware r1_customer_image allows remote attackers to execute arbitrary code via a crafted HTTP request, aka Bug ID CSCuv05…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1327
|
2024-11-21 11:46 |
2016-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265976
|
7.5 |
HIGH
Network
|
cisco
|
dpq3925_8x4_docsis_3.0_wireless_residential_gateway_with_embedded_digital_voice_adapter
|
The administration interface on Cisco DPQ3925 devices with firmware r1 allows remote attackers to cause a denial of service (device restart) via a crafted HTTP request, aka Bug ID CSCup48105.
|
CWE-399
Resource Management Errors
|
CVE-2016-1326
|
2024-11-21 11:46 |
2016-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265977
|
7.5 |
HIGH
Network
|
cisco
|
dpc3939_wireless_residential_voice_gateway_firmware
|
The administration interface on Cisco DPC3939B and DPC3941 devices allows remote attackers to obtain sensitive information via a crafted HTTP request, aka Bug ID CSCus49506.
|
CWE-200
Information Exposure
|
CVE-2016-1325
|
2024-11-21 11:46 |
2016-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265978
|
7.5 |
HIGH
Network
|
cisco
|
asa_5500_csc-ssm_firmware
|
The HTTPS inspection engine in the Content Security and Control Security Services Module (CSC-SSM) 6.6 before 6.6.1164.0 for Cisco ASA 5500 devices allows remote attackers to cause a denial of servic…
|
CWE-119 CWE-399
Incorrect Access of Indexable Resource ('Range Error') Resource Management Errors
|
CVE-2016-1312
|
2024-11-21 11:46 |
2016-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265979
|
8.6 |
HIGH
Network
|
isc suse opensuse fedoraproject canonical debian juniper
|
bind linux_enterprise_server linux_enterprise_debuginfo openstack_cloud manager_proxy linux_enterprise_desktop linux_enterprise_software_development_kit manager opensuse le…
|
named in ISC BIND 9.x before 9.9.8-P4 and 9.10.x before 9.10.3-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted signature record for a DNAME r…
|
NVD-CWE-noinfo
|
CVE-2016-1286
|
2024-11-21 11:46 |
2016-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265980
|
6.8 |
MEDIUM
Network
|
isc suse opensuse fedoraproject canonical debian juniper
|
bind linux_enterprise_server linux_enterprise_debuginfo openstack_cloud manager_proxy linux_enterprise_desktop linux_enterprise_software_development_kit manager opensuse le…
|
named in ISC BIND 9.x before 9.9.8-P4 and 9.10.x before 9.10.3-P4 does not properly handle DNAME records when parsing fetch reply messages, which allows remote attackers to cause a denial of service …
|
NVD-CWE-noinfo
|
CVE-2016-1285
|
2024-11-21 11:46 |
2016-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|