|
266571
|
8.8 |
HIGH
Network
|
cisco
|
application_control_engine_software
|
The Device Manager GUI in Cisco Application Control Engine (ACE) 4710 A5 before A5(3.1) allows remote authenticated users to bypass intended RBAC restrictions and execute arbitrary CLI commands with …
|
CWE-78
OS Command
|
CVE-2016-1297
|
2024-11-21 11:46 |
2016-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266572
|
9.8 |
CRITICAL
Network
|
cisco
|
nx-os
|
Cisco NX-OS 7.0(1)N1(1), 7.0(1)N1(3), and 7.0(4)N1(1) on Nexus 2000 Fabric Extender devices has a blank root password, which allows local users to gain privileges via unspecified vectors, aka Bug ID …
|
CWE-255 CWE-264
Credentials Management Permissions, Privileges, and Access Controls
|
CVE-2016-1341
|
2024-11-21 11:46 |
2016-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266573
|
9.8 |
CRITICAL
Network
|
google novell opensuse debian
|
chrome suse_package_hub_for_suse_linux_enterprise leap opensuse debian_linux
|
Google Chrome before 48.0.2564.116 allows remote attackers to bypass the Blink Same Origin Policy and a sandbox protection mechanism via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1629
|
2024-11-21 11:46 |
2016-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266574
|
6.3 |
MEDIUM
Network
|
google debian
|
chrome debian_linux
|
pi.c in OpenJPEG, as used in PDFium in Google Chrome before 48.0.2564.109, does not validate a certain precision value, which allows remote attackers to execute arbitrary code or cause a denial of se…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1628
|
2024-11-21 11:46 |
2016-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266575
|
7.5 |
HIGH
Network
|
cisco
|
asr_5000_series_software
|
The SSH implementation in Cisco StarOS before 19.3.M0.62771 and 20.x before 20.0.M0.62768 on ASR 5000 devices mishandles a multi-user public-key authentication configuration, which allows remote auth…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-1335
|
2024-11-21 11:46 |
2016-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266576
|
5.3 |
MEDIUM
Network
|
cisco
|
small_business_wireless_access_points_firmware
|
Cisco Small Business 500 Wireless Access Point devices with firmware 1.0.4.4 allow remote attackers to set the system time via a crafted POST request, aka Bug ID CSCuy01457.
|
CWE-20
Improper Input Validation
|
CVE-2016-1334
|
2024-11-21 11:46 |
2016-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266577
|
6.5 |
MEDIUM
Network
|
cisco
|
ios
|
Cisco IOS 15.5(3)M and 15.6(1)T0a on Cisco 1000 Connected Grid routers allows remote authenticated users to cause a denial of service (device reload) via an SNMP request for unspecified BRIDGE MIB OI…
|
CWE-399
Resource Management Errors
|
CVE-2016-1333
|
2024-11-21 11:46 |
2016-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266578
|
6.1 |
MEDIUM
Network
|
sun
|
opensolaris
|
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Emergency Responder 11.5(0.99833.5) allow remote attackers to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID C…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1331
|
2024-11-21 11:46 |
2016-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266579
|
6.5 |
MEDIUM
Adjacent
|
zzinc
|
keymouse_firmware
|
Cisco IOS 15.2(4)E on Industrial Ethernet 2000 devices allows remote attackers to cause a denial of service (device reload) via crafted Cisco Discovery Protocol (CDP) packets, aka Bug ID CSCuy27746.
|
CWE-399
Resource Management Errors
|
CVE-2016-1330
|
2024-11-21 11:46 |
2016-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266580
|
5.8 |
MEDIUM
Network
|
cisco
|
universal_small_cell_firmware
|
Cisco Universal Small Cell devices with firmware R2.12 through R3.5 contain an image-decryption key in flash memory, which allows remote attackers to bypass a certain certificate-validation feature a…
|
CWE-200
Information Exposure
|
CVE-2016-1321
|
2024-11-21 11:46 |
2016-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|