|
265211
|
6.5 |
MEDIUM
Network
|
adobe
|
flash_player flash_player_desktop_runtime
|
Adobe Flash Player before 18.0.0.375 and 19.x through 23.x before 23.0.0.162 on Windows and OS X and before 11.2.202.635 on Linux allows attackers to bypass intended access restrictions and obtain se…
|
NVD-CWE-noinfo
|
CVE-2016-4271
|
2024-11-21 11:51 |
2016-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265212
|
4.5 |
MEDIUM
Local
|
hp
|
xp7_command_view
|
HPE XP7 Command View Advanced Edition (CVAE) Suite 6.x through 8.x before 8.4.1-02, when Replication Manager (RepMgr) and Device Manager (DevMgr) are enabled, allows local users to bypass intended ac…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-4381
|
2024-11-21 11:51 |
2016-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265213
|
5.4 |
MEDIUM
Network
|
hp
|
operations_manager
|
Cross-site scripting (XSS) vulnerability in the AdminUI in HPE Operations Manager 9.21.x before 9.21.130 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vecto…
|
CWE-79
Cross-site Scripting
|
CVE-2016-4380
|
2024-11-21 11:51 |
2016-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265214
|
3.7 |
LOW
Network
|
hp
|
integrated_lights-out_3_firmware
|
The TLS implementation in HPE Integrated Lights-Out 3 (aka iLO3) firmware before 1.88 does not properly use a MAC protection mechanism in conjunction with CBC padding, which allows remote attackers t…
|
CWE-310
Cryptographic Issues
|
CVE-2016-4379
|
2024-11-21 11:51 |
2016-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265215
|
9.8 |
CRITICAL
Network
|
hp
|
integrated_lights-out_3_firmware integrated_lights-out_4_firmware integrated_lights-out_4_mrca_firmware
|
Multiple unspecified vulnerabilities in HPE Integrated Lights-Out 3 (aka iLO 3) firmware before 1.88, Integrated Lights-Out 4 (aka iLO 4) firmware before 2.44, and Integrated Lights-Out 4 (aka iLO 4)…
|
NVD-CWE-noinfo
|
CVE-2016-4375
|
2024-11-21 11:51 |
2016-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265216
|
8.6 |
HIGH
Network
|
adobe
|
coldfusion
|
The Office Open XML (OOXML) feature in Adobe ColdFusion 10 before Update 21 and 11 before Update 10 allows remote attackers to read arbitrary files or send TCP requests to intranet servers via a craf…
|
CWE-611
XXE
|
CVE-2016-4264
|
2024-11-21 11:51 |
2016-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265217
|
7.5 |
HIGH
Network
|
hp
|
xp7_command_view xp_9000_command_view
|
The (1) Device Manager, (2) Tiered Storage Manager, (3) Replication Manager, (4) Replication Monitor, and (5) Hitachi Automation Director (HAD) components in HPE XP P9000 Command View Advanced Editio…
|
CWE-200
Information Exposure
|
CVE-2016-4378
|
2024-11-21 11:51 |
2016-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265218
|
9.8 |
CRITICAL
Network
|
adobe
|
acrobat acrobat_dc acrobat_reader_dc reader
|
Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allow attacker…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4270
|
2024-11-21 11:51 |
2016-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265219
|
9.8 |
CRITICAL
Network
|
adobe
|
acrobat acrobat_dc acrobat_reader_dc reader
|
Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allow attacker…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4269
|
2024-11-21 11:51 |
2016-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265220
|
9.8 |
CRITICAL
Network
|
adobe
|
acrobat acrobat_dc acrobat_reader_dc reader
|
Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allow attacker…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4268
|
2024-11-21 11:51 |
2016-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|