|
267001
|
6.1 |
MEDIUM
Network
|
cisco
|
webex_meetings_server
|
Cross-site scripting (XSS) vulnerability in Cisco WebEx Meetings Server 2.6 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuy92711.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1449
|
2024-11-21 11:46 |
2016-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267002
|
6.1 |
MEDIUM
Network
|
cisco
|
webex_meetings_server
|
Cross-site scripting (XSS) vulnerability in the administrator interface in Cisco WebEx Meetings Server 2.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka …
|
CWE-79
Cross-site Scripting
|
CVE-2016-1447
|
2024-11-21 11:46 |
2016-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267003
|
8.8 |
HIGH
Network
|
cisco
|
webex_meetings_server
|
SQL injection vulnerability in Cisco WebEx Meetings Server 2.6 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug ID CSCuy83200.
|
CWE-89
SQL Injection
|
CVE-2016-1446
|
2024-11-21 11:46 |
2016-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267004
|
7.5 |
HIGH
Network
|
cisco
|
ios_xr
|
Cisco IOS XR 5.x through 5.2.5 on NCS 6000 devices allows remote attackers to cause a denial of service (timer consumption and Route Processor reload) via crafted SSH traffic, aka Bug ID CSCux76819.
|
CWE-399
Resource Management Errors
|
CVE-2016-1426
|
2024-11-21 11:46 |
2016-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267005
|
5.3 |
MEDIUM
Network
|
cisco
|
adaptive_security_appliance_software
|
Cisco Adaptive Security Appliance (ASA) Software 8.2 through 9.4.3.3 allows remote attackers to bypass intended ICMP Echo Reply ACLs via vectors related to subtypes.
|
NVD-CWE-noinfo
|
CVE-2016-1445
|
2024-11-21 11:46 |
2016-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267006
|
6.5 |
MEDIUM
Network
|
cisco
|
telepresence_video_communication_server_software telepresence_video_communication_server
|
The Mobile and Remote Access (MRA) component in Cisco TelePresence Video Communication Server (VCS) X8.1 through X8.7 and Expressway X8.1 through X8.6 mishandles certificates, which allows remote att…
|
CWE-20
Improper Input Validation
|
CVE-2016-1444
|
2024-11-21 11:46 |
2016-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267007
|
8.1 |
HIGH
Network
|
cisco
|
amp_threat_grid_appliance
|
The virtual network stack on Cisco AMP Threat Grid Appliance devices before 2.1.1 allows remote attackers to bypass a sandbox protection mechanism, and consequently obtain sensitive interprocess info…
|
CWE-254
7PK - Security Features
|
CVE-2016-1443
|
2024-11-21 11:46 |
2016-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267008
|
8.8 |
HIGH
Network
|
cisco
|
prime_infrastructure
|
The administrative web interface in Cisco Prime Infrastructure (PI) before 3.1.1 allows remote authenticated users to execute arbitrary commands via crafted field values, aka Bug ID CSCuy96280.
|
CWE-20
Improper Input Validation
|
CVE-2016-1442
|
2024-11-21 11:46 |
2016-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267009
|
5.9 |
MEDIUM
Network
|
apache
|
http_server
|
The Apache HTTP Server 2.4.17 and 2.4.18, when mod_http2 is enabled, does not limit the number of simultaneous stream workers for a single HTTP/2 connection, which allows remote attackers to cause a …
|
CWE-399
Resource Management Errors
|
CVE-2016-1546
|
2024-11-21 11:46 |
2016-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267010
|
8.8 |
HIGH
Network
|
google canonical redhat novell opensuse
|
chrome ubuntu_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation suse_package_hub_for_suse_linux_enterprise leap opensuse
|
Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.103 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2016-1704
|
2024-11-21 11:46 |
2016-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|