|
265731
|
9.8 |
CRITICAL
Network
|
google
|
chrome v8
|
Multiple unspecified vulnerabilities in Google V8 before 4.9.385.26, as used in Google Chrome before 49.0.2623.75, allow attackers to cause a denial of service or possibly have other impact via unkno…
|
NVD-CWE-noinfo
|
CVE-2016-2843
|
2024-11-21 11:48 |
2016-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265732
|
5.3 |
MEDIUM
Network
|
moxa
|
ioadmin_firmware iologik_firmware
|
Moxa ioLogik E2200 devices before 3.12 and ioAdmin Configuration Utility before 3.18 do not properly encrypt data, which makes it easier for remote attackers to obtain the associated cleartext via un…
|
CWE-255
Credentials Management
|
CVE-2016-2283
|
2024-11-21 11:48 |
2016-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265733
|
5.3 |
MEDIUM
Network
|
moxa
|
ioadmin_firmware iologik_firmware
|
Moxa ioLogik E2200 devices before 3.12 and ioAdmin Configuration Utility before 3.18 do not properly encrypt credentials, which makes it easier for remote attackers to obtain the associated cleartext…
|
CWE-255
Credentials Management
|
CVE-2016-2282
|
2024-11-21 11:48 |
2016-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265734
|
5.9 |
MEDIUM
Network
|
hp
|
futuresmart_firmware
|
HP LaserJet printers and MFPs and OfficeJet Enterprise printers with firmware before 3.7.01 allow remote attackers to obtain sensitive information via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-2244
|
2024-11-21 11:48 |
2016-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265735
|
7.9 |
HIGH
Local
|
hp
|
700_series_firmware 800_series_firmware z240_firmware z238_firmware zbook_firmware 1000_series_firmware elitebook_folio_1012_x2_g2
|
Sure Start on HP Commercial PCs 2015 allows local users to cause a denial of service (BIOS recovery failure) by leveraging administrative access.
|
CWE-284
Improper Access Control
|
CVE-2016-2243
|
2024-11-21 11:48 |
2016-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265736
|
9.8 |
CRITICAL
Network
|
openssl
|
openssl
|
The doapr_outch function in crypto/bio/b_print.c in OpenSSL 1.0.1 before 1.0.1s and 1.0.2 before 1.0.2g does not verify that a certain memory allocation succeeds, which allows remote attackers to cau…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2842
|
2024-11-21 11:48 |
2016-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265737
|
6.1 |
MEDIUM
Network
|
rockwellautomation
|
compactlogix_1769-l16er-bb1b_firmware compactlogix_1769-l18er-bb1b_firmware compactlogix_1769-l18erm-bb1b_firmware compactlogix_1769-l24er-qb1b_firmware compactlogix_1769-l24er-qbfc1b_fir…
|
Cross-site scripting (XSS) vulnerability in the web server in Rockwell Automation Allen-Bradley CompactLogix 1769-L* before 28.011+ allows remote attackers to inject arbitrary web script or HTML via …
|
CWE-79
Cross-site Scripting
|
CVE-2016-2279
|
2024-11-21 11:48 |
2016-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265738
|
7.2 |
HIGH
Network
|
schneider-electric
|
struxureware_building_operations_automation_server_as_firmware struxureware_building_operations_automation_server_as-p_firmware
|
Schneider Electric Struxureware Building Operations Automation Server AS 1.7 and earlier and AS-P 1.7 and earlier allows remote authenticated administrators to execute arbitrary OS commands by defeat…
|
CWE-284
Improper Access Control
|
CVE-2016-2278
|
2024-11-21 11:48 |
2016-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265739
|
6.8 |
MEDIUM
Network
|
phpmyadmin
|
phpmyadmin
|
The checkHTTP function in libraries/Config.class.php in phpMyAdmin 4.5.x before 4.5.5.1 does not verify X.509 certificates from api.github.com SSL servers, which allows man-in-the-middle attackers to…
|
CWE-20
Improper Input Validation
|
CVE-2016-2562
|
2024-11-21 11:48 |
2016-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265740
|
5.4 |
MEDIUM
Network
|
phpmyadmin
|
phpmyadmin
|
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.4.x before 4.4.15.5 and 4.5.x before 4.5.5.1 allow remote authenticated users to inject arbitrary web script or HTML via (1) normal…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2561
|
2024-11-21 11:48 |
2016-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|