|
265321
|
8.8 |
HIGH
Network
|
adobe redhat
|
flash_player flash_player_desktop_runtime enterprise_linux_server enterprise_linux_workstation enterprise_linux_desktop
|
Adobe Flash Player before 18.0.0.382 and 19.x through 23.x before 23.0.0.185 on Windows and OS X and before 11.2.202.637 on Linux allows attackers to bypass intended access restrictions via unspecifi…
|
CWE-284
Improper Access Control
|
CVE-2016-4286
|
2024-11-21 11:51 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265322
|
8.8 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime
|
Adobe Flash Player before 18.0.0.382 and 19.x through 23.x before 23.0.0.185 on Windows and OS X and before 11.2.202.637 on Linux allows attackers to execute arbitrary code or cause a denial of servi…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-4273
|
2024-11-21 11:51 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265323
|
7.8 |
HIGH
Local
|
sap
|
sapconsole
|
SAP Console (aka SAPConsole) 7.30 allows local users to discover SAP Server login credentials by reading the Windows registry, aka SAP Security Note 2121461.
|
CWE-255 CWE-200
Credentials Management Information Exposure
|
CVE-2016-3946
|
2024-11-21 11:51 |
2016-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265324
|
5.4 |
MEDIUM
Network
|
huawei
|
policy_center
|
Cross-site scripting (XSS) vulnerability in Huawei Policy Center before V100R003C10SPC020 allows remote authenticated users to inject arbitrary web script or HTML via vectors related to "special char…
|
CWE-79
Cross-site Scripting
|
CVE-2016-4058
|
2024-11-21 11:51 |
2016-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265325
|
9.8 |
CRITICAL
Network
|
iperf3_project novell opensuse debian
|
iperf3 suse_package_hub_for_suse_linux_enterprise leap opensuse debian_linux
|
The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a non-hex charac…
|
CWE-120
Classic Buffer Overflow
|
CVE-2016-4303
|
2024-11-21 11:51 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265326
|
7.8 |
HIGH
Local
|
oracle libtiff
|
vm_server libtiff
|
Heap-based buffer overflow in the loadImage function in the tiffcrop tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) or execute arbitrary …
|
CWE-119 CWE-787
Incorrect Access of Indexable Resource ('Range Error') Out-of-bounds Write
|
CVE-2016-3991
|
2024-11-21 11:51 |
2016-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265327
|
7.8 |
HIGH
Local
|
libtiff oracle
|
libtiff vm_server
|
Heap-based buffer overflow in the horizontalDifference8 function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code …
|
CWE-119 CWE-787
Incorrect Access of Indexable Resource ('Range Error') Out-of-bounds Write
|
CVE-2016-3990
|
2024-11-21 11:51 |
2016-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265328
|
7.8 |
HIGH
Local
|
redhat libarchive
|
enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc_node enterprise_linux_server_eus enterprise_linux_hpc_…
|
Heap-based buffer overflow in the parse_codes function in archive_read_support_format_rar.c in libarchive before 3.2.1 allows remote attackers to execute arbitrary code via a RAR file with a zero-siz…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4302
|
2024-11-21 11:51 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265329
|
7.8 |
HIGH
Local
|
libarchive
|
libarchive
|
Stack-based buffer overflow in the parse_device function in archive_read_support_format_mtree.c in libarchive before 3.2.1 allows remote attackers to execute arbitrary code via a crafted mtree file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4301
|
2024-11-21 11:51 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265330
|
7.8 |
HIGH
Local
|
libarchive redhat
|
libarchive enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc_node enterprise_linux_server_eus enterpr…
|
Integer overflow in the read_SubStreamsInfo function in archive_read_support_format_7zip.c in libarchive before 3.2.1 allows remote attackers to execute arbitrary code via a 7zip file with a large nu…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-4300
|
2024-11-21 11:51 |
2016-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|