|
264991
|
5.4 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 2.x and 3.x, text injection can occur in email headers, potentially leading to outbound spam.
|
CWE-74
Injection
|
CVE-2016-5013
|
2024-11-21 11:53 |
2017-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264992
|
5.3 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 3.x, glossary search displays entries without checking user permissions to view them.
|
CWE-200
Information Exposure
|
CVE-2016-5012
|
2024-11-21 11:53 |
2017-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264993
|
6.1 |
MEDIUM
Network
|
google
|
chrome
|
Blink in Google Chrome prior to 55.0.2883.75 for Linux, Windows and Mac executed javascript: URLs entered in the URL bar in the context of the current tab, which allowed a socially engineered user to…
|
CWE-79
Cross-site Scripting
|
CVE-2016-5226
|
2024-11-21 11:53 |
2017-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264994
|
4.3 |
MEDIUM
Network
|
google
|
chrome
|
Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handled form actions, which allowed a remote attacker to bypass Content Security Poli…
|
CWE-19
Data Processing Errors
|
CVE-2016-5225
|
2024-11-21 11:53 |
2017-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264995
|
4.3 |
MEDIUM
Network
|
google
|
chrome
|
A timing attack on denormalized floating point arithmetic in SVG filters in Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote atta…
|
CWE-189
Numeric Errors
|
CVE-2016-5224
|
2024-11-21 11:53 |
2017-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264996
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Integer overflow in PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption or DoS via …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-5223
|
2024-11-21 11:53 |
2017-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264997
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Incorrect handling of invalid URLs in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to spoof the contents of the Omnibox (URL …
|
CWE-20
Improper Input Validation
|
CVE-2016-5222
|
2024-11-21 11:53 |
2017-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264998
|
6.3 |
MEDIUM
Network
|
google
|
chrome
|
Type confusion in libGLESv2 in ANGLE in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android possibly allowed a remote attacker to bypass buffer validation via…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-5221
|
2024-11-21 11:53 |
2017-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264999
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handled navigation within PDFs, which allowed a remote attacker to read local files …
|
CWE-200
Information Exposure
|
CVE-2016-5220
|
2024-11-21 11:53 |
2017-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265000
|
6.3 |
MEDIUM
Network
|
google
|
chrome
|
A heap use after free in V8 in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption via a craf…
|
CWE-416
Use After Free
|
CVE-2016-5219
|
2024-11-21 11:53 |
2017-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|