|
265181
|
5.4 |
MEDIUM
Network
|
huawei
|
policy_center
|
Cross-site scripting (XSS) vulnerability in Huawei Policy Center before V100R003C10SPC020 allows remote authenticated users to inject arbitrary web script or HTML via vectors related to "special char…
|
CWE-79
Cross-site Scripting
|
CVE-2016-4058
|
2024-11-21 11:51 |
2016-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265182
|
9.8 |
CRITICAL
Network
|
iperf3_project novell opensuse debian
|
iperf3 suse_package_hub_for_suse_linux_enterprise leap opensuse debian_linux
|
The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a non-hex charac…
|
CWE-120
Classic Buffer Overflow
|
CVE-2016-4303
|
2024-11-21 11:51 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265183
|
7.8 |
HIGH
Local
|
oracle libtiff
|
vm_server libtiff
|
Heap-based buffer overflow in the loadImage function in the tiffcrop tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) or execute arbitrary …
|
CWE-119 CWE-787
Incorrect Access of Indexable Resource ('Range Error') Out-of-bounds Write
|
CVE-2016-3991
|
2024-11-21 11:51 |
2016-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265184
|
7.8 |
HIGH
Local
|
libtiff oracle
|
libtiff vm_server
|
Heap-based buffer overflow in the horizontalDifference8 function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code …
|
CWE-119 CWE-787
Incorrect Access of Indexable Resource ('Range Error') Out-of-bounds Write
|
CVE-2016-3990
|
2024-11-21 11:51 |
2016-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265185
|
7.8 |
HIGH
Local
|
redhat libarchive
|
enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc_node enterprise_linux_server_eus enterprise_linux_hpc_…
|
Heap-based buffer overflow in the parse_codes function in archive_read_support_format_rar.c in libarchive before 3.2.1 allows remote attackers to execute arbitrary code via a RAR file with a zero-siz…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4302
|
2024-11-21 11:51 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265186
|
7.8 |
HIGH
Local
|
libarchive
|
libarchive
|
Stack-based buffer overflow in the parse_device function in archive_read_support_format_mtree.c in libarchive before 3.2.1 allows remote attackers to execute arbitrary code via a crafted mtree file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4301
|
2024-11-21 11:51 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265187
|
7.8 |
HIGH
Local
|
libarchive redhat
|
libarchive enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc_node enterprise_linux_server_eus enterpr…
|
Integer overflow in the read_SubStreamsInfo function in archive_read_support_format_7zip.c in libarchive before 3.2.1 allows remote attackers to execute arbitrary code via a 7zip file with a large nu…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-4300
|
2024-11-21 11:51 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265188
|
8.3 |
HIGH
Network
|
hp
|
performance_center
|
HPE Performance Center 11.52, 12.00, 12.01, 12.20, and 12.50 allows remote attackers to bypass intended access restrictions via unspecified vectors, related to a "remote user validation failure" issu…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-4382
|
2024-11-21 11:51 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265189
|
9.8 |
CRITICAL
Network
|
adobe
|
digital_editions
|
Use-after-free vulnerability in Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code via unspecified vectors.
|
CWE-416
Use After Free
|
CVE-2016-4263
|
2024-11-21 11:51 |
2016-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265190
|
9.8 |
CRITICAL
Network
|
adobe
|
digital_editions
|
Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4262
|
2024-11-21 11:51 |
2016-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|