|
266421
|
6.5 |
MEDIUM
Network
|
cisco
|
adaptive_security_appliance_software
|
The XML parser in Cisco Adaptive Security Appliance (ASA) Software through 9.5.2 allows remote authenticated users to cause a denial of service (instability, memory consumption, or device reload) by …
|
CWE-119 CWE-399
Incorrect Access of Indexable Resource ('Range Error') Resource Management Errors
|
CVE-2016-1385
|
2024-11-21 11:46 |
2016-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266422
|
7.5 |
HIGH
Network
|
cisco
|
ios_xr
|
Cisco IOS XR through 5.3.2 mishandles Local Packet Transport Services (LPTS) flow-base entries, which allows remote attackers to cause a denial of service (session drop) by making many connection att…
|
CWE-20
Improper Input Validation
|
CVE-2016-1407
|
2024-11-21 11:46 |
2016-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266423
|
8.8 |
HIGH
Network
|
cisco
|
evolved_programmable_network_manager prime_infrastructure
|
The API web interface in Cisco Prime Infrastructure before 3.1 and Cisco Evolved Programmable Network Manager before 1.2.4 allows remote authenticated users to bypass intended RBAC restrictions and o…
|
CWE-284
Improper Access Control
|
CVE-2016-1406
|
2024-11-21 11:46 |
2016-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266424
|
7.5 |
HIGH
Network
|
cisco
|
telepresence_video_communication_server
|
Cisco TelePresence Video Communications Server (VCS) X8.x before X8.7.2 allows remote attackers to cause a denial of service (service disruption) via a crafted URI in a SIP header, aka Bug ID CSCuy43…
|
CWE-20
Improper Input Validation
|
CVE-2016-1400
|
2024-11-21 11:46 |
2016-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266425
|
7.5 |
HIGH
Network
|
cisco
|
web_security_appliance_\(wsa\)
|
Memory leak in Cisco AsyncOS through 8.8 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consumption) via an unspecified HTTP status code, aka Bug…
|
CWE-399
Resource Management Errors
|
CVE-2016-1383
|
2024-11-21 11:46 |
2016-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266426
|
7.5 |
HIGH
Network
|
cisco
|
web_security_appliance_\(wsa\)
|
Cisco AsyncOS before 8.5.3-069 and 8.6 through 8.8 on Web Security Appliance (WSA) devices mishandles memory allocation for HTTP requests, which allows remote attackers to cause a denial of service (…
|
CWE-20
Improper Input Validation
|
CVE-2016-1382
|
2024-11-21 11:46 |
2016-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266427
|
7.5 |
HIGH
Network
|
cisco
|
web_security_appliance
|
Memory leak in Cisco AsyncOS 8.5 through 9.0 before 9.0.1-162 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consumption) via an HTTP file-range …
|
CWE-399
Resource Management Errors
|
CVE-2016-1381
|
2024-11-21 11:46 |
2016-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266428
|
7.5 |
HIGH
Network
|
cisco
|
web_security_appliance
|
Cisco AsyncOS 8.0 before 8.0.6-119 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (proxy-process hang) via a crafted HTTP POST request, aka Bug ID CSCuo1…
|
CWE-20
Improper Input Validation
|
CVE-2016-1380
|
2024-11-21 11:46 |
2016-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266429
|
6.1 |
MEDIUM
Network
|
wordpress
|
wordpress
|
Multiple cross-site scripting (XSS) vulnerabilities in wp-includes/class-wp-theme.php in WordPress before 4.4.1 allow remote attackers to inject arbitrary web script or HTML via a (1) stylesheet name…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1564
|
2024-11-21 11:46 |
2016-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266430
|
7.5 |
HIGH
Network
|
cisco
|
identity_services_engine_software
|
The Active Directory (AD) integration component in Cisco Identity Service Engine (ISE) before 1.2.0.899 patch 7, when AD group-membership authorization is enabled, allows remote attackers to cause a …
|
CWE-287 CWE-119
Improper Authentication Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1402
|
2024-11-21 11:46 |
2016-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|