|
266371
|
7.8 |
HIGH
Local
|
cisco
|
application_infrastructure_controller application_policy_infrastructure_controller_firmware
|
The installation component on Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.3(2f) mishandles binary files, which allows local users to obtain root access vi…
|
NVD-CWE-noinfo
|
CVE-2016-1420
|
2024-11-21 11:46 |
2016-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266372
|
8.1 |
HIGH
Adjacent
|
cisco
|
aironet_access_point_software
|
Cisco Access Point devices with software 8.2(102.43) allow remote attackers to cause a denial of service (device reload) via crafted ARP packets, aka Bug ID CSCuy55803.
|
CWE-20
Improper Input Validation
|
CVE-2016-1419
|
2024-11-21 11:46 |
2016-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266373
|
7.5 |
HIGH
Network
|
cisco
|
ip_phone_8800_series_firmware
|
A vulnerability in the web application for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code with root privileges or cause a reload of an affected IP phone, resulting in…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1421
|
2024-11-21 11:46 |
2016-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266374
|
5.5 |
MEDIUM
Local
|
canonical
|
ubuntu_linux lxd
|
LXD before 2.0.2 does not properly set permissions when switching an unprivileged container into privileged mode, which allows local users to access arbitrary world readable paths in the container di…
|
CWE-200
Information Exposure
|
CVE-2016-1582
|
2024-11-21 11:46 |
2016-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266375
|
5.5 |
MEDIUM
Local
|
canonical
|
ubuntu_linux lxd
|
LXD before 2.0.2 uses world-readable permissions for /var/lib/lxd/zfs.img when setting up a loop based ZFS pool, which allows local users to copy and read data from arbitrary containers via unspecifi…
|
CWE-284
Improper Access Control
|
CVE-2016-1581
|
2024-11-21 11:46 |
2016-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266376
|
7.8 |
HIGH
Local
|
cisco
|
aironet_access_point_software_
|
Cisco Aironet Access Point Software 8.2(100.0) on 1830e, 1830i, 1850e, 1850i, 2800, and 3800 access points allows local users to obtain Linux root access via crafted CLI command parameters, aka Bug I…
|
CWE-20
Improper Input Validation
|
CVE-2016-1418
|
2024-11-21 11:46 |
2016-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266377
|
7.5 |
HIGH
Network
|
clamav cisco
|
clamav email_security_appliance web_security_appliance
|
libclamav in ClamAV (aka Clam AntiVirus), as used in Advanced Malware Protection (AMP) on Cisco Email Security Appliance (ESA) devices before 9.7.0-125 and Web Security Appliance (WSA) devices before…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1405
|
2024-11-21 11:46 |
2016-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266378
|
8.8 |
HIGH
Network
|
google debian canonical redhat suse opensuse
|
chrome debian_linux ubuntu_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation linux_enterprise leap opensuse
|
Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.79 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2016-1703
|
2024-11-21 11:46 |
2016-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266379
|
6.5 |
MEDIUM
Network
|
debian canonical redhat suse opensuse google
|
debian_linux ubuntu_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation linux_enterprise leap opensuse chrome
|
The SkRegion::readFromMemory function in core/SkRegion.cpp in Skia, as used in Google Chrome before 51.0.2704.79, does not validate the interval count, which allows remote attackers to cause a denial…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1702
|
2024-11-21 11:46 |
2016-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266380
|
8.8 |
HIGH
Network
|
google debian redhat suse opensuse
|
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation linux_enterprise leap opensuse
|
The Autofill implementation in Google Chrome before 51.0.2704.79 mishandles the interaction between field updates and JavaScript code that triggers a frame deletion, which allows remote attackers to …
|
NVD-CWE-Other
|
CVE-2016-1701
|
2024-11-21 11:46 |
2016-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|