|
266011
|
8.8 |
HIGH
Network
|
tibco
|
enterprise_message_service_appliance_firmware enterprise_message_service
|
Buffer overflow in tibemsd in the server in TIBCO Enterprise Message Service (EMS) before 8.3.0 and EMS Appliance before 2.4.0 allows remote authenticated users to cause a denial of service or possib…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3628
|
2024-11-21 11:50 |
2016-04-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266012
|
6.5 |
MEDIUM
Network
|
dotcms
|
dotcms
|
SQL injection vulnerability in dotCMS before 3.5 allows remote administrators to execute arbitrary SQL commands via the c0-e3 parameter to dwr/call/plaincall/UserAjax.getUsersList.dwr.
|
CWE-200
Information Exposure
|
CVE-2016-3688
|
2024-11-21 11:50 |
2016-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266013
|
7.8 |
HIGH
Local
|
watchguard
|
panda_endpoint_administration_agent
|
Panda Endpoint Administration Agent before 7.50.00, as used in Panda Security for Business products for Windows, uses a weak ACL for the Panda Security/WaAgent directory and sub-directories, which al…
|
CWE-276
Incorrect Default Permissions
|
CVE-2016-3943
|
2024-11-21 11:50 |
2016-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266014
|
5.5 |
MEDIUM
Local
|
videolan canonical
|
vlc_media_player ubuntu_linux
|
Buffer overflow in the AStreamPeekStream function in input/stream.c in VideoLAN VLC media player before 2.2.0 allows remote attackers to cause a denial of service (crash) via a crafted wav file, rela…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3941
|
2024-11-21 11:50 |
2016-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266015
|
5.9 |
MEDIUM
Network
|
f5
|
big-ip_edge_gateway big-ip_access_policy_manager
|
The Single Sign-On (SSO) feature in F5 BIG-IP APM 11.x before 11.6.0 HF6 and BIG-IP Edge Gateway 11.0.0 through 11.3.0 might allow remote attackers to obtain sensitive SessionId information by levera…
|
CWE-200
Information Exposure
|
CVE-2016-3686
|
2024-11-21 11:50 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266016
|
8.8 |
HIGH
Network
|
fedoraproject opensuse mercurial debian suse
|
fedora leap mercurial debian_linux linux_enterprise_software_development_kit linux_enterprise_debuginfo opensuse
|
The binary delta decoder in Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a (1) clone, (2) push, or (3) pull command, related to (a) a list sizing rounding error and (b…
|
CWE-19
Data Processing Errors
|
CVE-2016-3630
|
2024-11-21 11:50 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266017
|
9.8 |
CRITICAL
Network
|
paloaltonetworks
|
pan-os
|
Buffer overflow in the GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remote attackers to cause a denial of s…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3657
|
2024-11-21 11:50 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266018
|
7.5 |
HIGH
Network
|
paloaltonetworks
|
pan-os
|
The GlobalProtect Portal in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote attackers to cause a denial of service (service c…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3656
|
2024-11-21 11:50 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266019
|
9.8 |
CRITICAL
Network
|
paloaltonetworks
|
pan-os
|
The management web interface in Palo Alto Networks PAN-OS before 5.0.18, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5 allows remote attackers to execute arbitrary OS commands via …
|
CWE-20 CWE-78
Improper Input Validation OS Command
|
CVE-2016-3655
|
2024-11-21 11:50 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266020
|
7.2 |
HIGH
Network
|
paloaltonetworks
|
pan-os
|
The device management command line interface (CLI) in Palo Alto Networks PAN-OS before 5.0.18, 5.1.x before 5.1.11, 6.0.x before 6.0.13, 6.1.x before 6.1.10, and 7.0.x before 7.0.5H2 allows remote au…
|
CWE-20
Improper Input Validation
|
CVE-2016-3654
|
2024-11-21 11:50 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|