|
267091
|
8.8 |
HIGH
Network
|
aterm
|
wg300hp_firmware
|
Cross-site request forgery (CSRF) vulnerability on NEC Aterm WG300HP devices allows remote attackers to hijack the authentication of arbitrary users.
|
CWE-352
Origin Validation Error
|
CVE-2016-1167
|
2024-11-21 11:45 |
2016-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267092
|
6.1 |
MEDIUM
Network
|
wp_favorite_posts_project
|
wp_favorite_posts
|
Cross-site scripting (XSS) vulnerability in the WP Favorite Posts plugin before 1.6.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-1160
|
2024-11-21 11:45 |
2016-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267093
|
8.8 |
HIGH
Network
|
adobe samsung
|
flash_player air air_sdk x14j_firmware flash_player_desktop_runtime air_desktop_runtime air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Ad…
|
CWE-824
Access of Uninitialized Pointer
|
CVE-2016-1005
|
2024-11-21 11:45 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267094
|
8.8 |
HIGH
Network
|
adobe samsung
|
flash_player air air_sdk x14j_firmware flash_player_desktop_runtime air_desktop_runtime air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Ad…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1002
|
2024-11-21 11:45 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267095
|
8.8 |
HIGH
Network
|
adobe samsung
|
flash_player air air_sdk x14j_firmware flash_player_desktop_runtime air_desktop_runtime air_sdk_\&_compiler
|
Heap-based buffer overflow in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-1001
|
2024-11-21 11:45 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267096
|
8.8 |
HIGH
Network
|
adobe samsung
|
flash_player air air_sdk x14j_firmware flash_player_desktop_runtime air_desktop_runtime air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe A…
|
CWE-416
Use After Free
|
CVE-2016-1000
|
2024-11-21 11:45 |
2016-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267097
|
9.8 |
CRITICAL
Network
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous before 15.010.20060 on Windows and OS X allow attacker…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1009
|
2024-11-21 11:45 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267098
|
8.4 |
HIGH
Local
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Untrusted search path vulnerability in Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous before 15.010.2…
|
CWE-20
Improper Input Validation
|
CVE-2016-1008
|
2024-11-21 11:45 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267099
|
9.8 |
CRITICAL
Network
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous before 15.010.20060 on Windows and OS X allow attacker…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1007
|
2024-11-21 11:45 |
2016-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267100
|
8.8 |
HIGH
Network
|
corega
|
cg-wlbargmh_firmware cg-wlbargnl_firmware
|
Cross-site request forgery (CSRF) vulnerability on Corega CG-WLBARGMH and CG-WLBARGNL devices allows remote attackers to hijack the authentication of administrators for requests that perform administ…
|
CWE-352
Origin Validation Error
|
CVE-2016-1158
|
2024-11-21 11:45 |
2016-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|