|
265671
|
5.3 |
MEDIUM
Network
|
magento
|
magento
|
The getOrderByStatusUrlKey function in the Mage_Rss_Helper_Order class in app/code/core/Mage/Rss/Helper/Order.php in Magento Enterprise Edition before 1.14.2.3 and Magento Community Edition before 1.…
|
CWE-200
Information Exposure
|
CVE-2016-2212
|
2024-11-21 11:48 |
2016-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265672
|
8.8 |
HIGH
Network
|
cacti opensuse
|
cacti leap opensuse
|
auth_login.php in Cacti before 0.8.8g allows remote authenticated users who use web authentication to bypass intended access restrictions by logging in as a user not in the cacti database.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2313
|
2024-11-21 11:48 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265673
|
6.5 |
MEDIUM
Network
|
python_imaging_project python debian
|
python_imaging pillow debian_linux
|
Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2533
|
2024-11-21 11:48 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265674
|
7.5 |
HIGH
Network
|
hawk_project
|
hawk
|
Hawk before 3.1.3 and 4.x before 4.1.1 allow remote attackers to cause a denial of service (CPU consumption or partial outage) via a long (1) header or (2) URI that is matched against an improper reg…
|
CWE-399
Resource Management Errors
|
CVE-2016-2515
|
2024-11-21 11:48 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265675
|
6.1 |
MEDIUM
Network
|
debian horde fedoraproject
|
debian_linux horde_groupware groupware fedora
|
Cross-site scripting (XSS) vulnerability in horde/templates/topbar/_menubar.html.php in Horde Groupware before 5.2.12 and Horde Groupware Webmail Edition before 5.2.12 allows remote attackers to inje…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2228
|
2024-11-21 11:48 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265676
|
6.5 |
MEDIUM
Network
|
optipng canonical debian opensuse
|
optipng ubuntu_linux debian_linux leap opensuse
|
The bmp_read_rows function in pngxtern/pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (invalid memory write and crash) via a series of delta escapes in a craf…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2191
|
2024-11-21 11:48 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265677
|
7.8 |
HIGH
Local
|
huawei
|
utps_firmware
|
Untrusted search path vulnerability in Huawei UTPS before UTPS-V200R003B015D15SP00C983 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse DLL in an unsp…
|
NVD-CWE-Other
|
CVE-2016-2780
|
2024-11-21 11:48 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265678
|
8.8 |
HIGH
Network
|
huawei
|
policy_center_firmware
|
Huawei Policy Center with software before V100R003C10SPC020 allows remote authenticated users to gain privileges and cause a denial of service (system crash) via a crafted URL.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2405
|
2024-11-21 11:48 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265679
|
8.4 |
HIGH
Local
|
nvidia
|
gpu_driver_r340 gpu_driver_r352
|
The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows allows local users to obtain sensitive information, cause a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2558
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265680
|
8.4 |
HIGH
Local
|
nvidia
|
gpu_driver_r340 gpu_driver_r352
|
The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows allows local users to obtain sensitive information from ker…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2557
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|