|
266221
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3266
|
2024-11-21 11:49 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266222
|
5.5 |
MEDIUM
Local
|
microsoft
|
word_viewer live_meeting windows_server_2012 lync office windows_10 windows_8.1 windows_server_2008 skype_for_business windows_7 windows_rt_8.1 windows_vista
|
Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10…
|
CWE-200
Information Exposure
|
CVE-2016-3263
|
2024-11-21 11:49 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266223
|
5.5 |
MEDIUM
Local
|
microsoft
|
word_viewer live_meeting windows_server_2012 lync office windows_10 windows_8.1 windows_server_2008 skype_for_business windows_7 windows_rt_8.1 windows_vista
|
Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10…
|
CWE-200
Information Exposure
|
CVE-2016-3262
|
2024-11-21 11:49 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266224
|
5.5 |
MEDIUM
Local
|
microsoft
|
word_viewer .net_framework live_meeting windows_server_2012 lync office windows_10 windows_8.1 windows_server_2008 silverlight skype_for_business windows_7 windows…
|
Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10…
|
CWE-200
Information Exposure
|
CVE-2016-3209
|
2024-11-21 11:49 |
2016-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266225
|
5.4 |
MEDIUM
Network
|
ibm
|
websphere_application_server
|
Cross-site scripting (XSS) vulnerability in the Web UI in IBM WebSphere Application Server (WAS) Liberty before 16.0.0.3 allows remote authenticated users to inject arbitrary web script or HTML via v…
|
CWE-79
Cross-site Scripting
|
CVE-2016-3042
|
2024-11-21 11:49 |
2016-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266226
|
7.5 |
HIGH
Network
|
redhat fedoraproject
|
jboss_enterprise_application_platform jboss_enterprise_web_server fedora
|
mod_cluster, as used in Red Hat JBoss Web Server 2.1, allows remote attackers to cause a denial of service (Apache http server crash) via an MCMP message containing a series of = (equals) characters …
|
CWE-20
Improper Input Validation
|
CVE-2016-3110
|
2024-11-21 11:49 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266227
|
6.8 |
MEDIUM
Network
|
ibm
|
security_privileged_identity_manager_virtual_appliance
|
IBM WebSphere Application Server (WAS) Liberty, as used in IBM Security Privileged Identity Manager (ISPIM) Virtual Appliance 2.x before 2.0.2 FP8, allows remote authenticated users to redirect users…
|
CWE-601
Open Redirect
|
CVE-2016-3040
|
2024-11-21 11:49 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266228
|
8.8 |
HIGH
Network
|
ibm
|
connections
|
Cross-site request forgery (CSRF) vulnerability in IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to hijack the authentication of arbitrary …
|
CWE-352
Origin Validation Error
|
CVE-2016-3007
|
2024-11-21 11:49 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266229
|
5.4 |
MEDIUM
Network
|
ibm
|
connections
|
Cross-site scripting (XSS) vulnerability in the Web UI in IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to inject arbitrary web script or H…
|
CWE-79
Cross-site Scripting
|
CVE-2016-3006
|
2024-11-21 11:49 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266230
|
5.4 |
MEDIUM
Network
|
ibm
|
connections
|
Cross-site scripting (XSS) vulnerability in the Web UI in IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to inject arbitrary web script or H…
|
CWE-79
Cross-site Scripting
|
CVE-2016-3003
|
2024-11-21 11:49 |
2016-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|