|
266581
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox
|
Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 on Linux make cairo _cairo_surface_get_extents calls that do not properly interact with libav header allocation in FFmpeg 0.10, which allo…
|
CWE-20
Improper Input Validation
|
CVE-2016-2839
|
2024-11-21 11:48 |
2016-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266582
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Heap-based buffer overflow in the nsBidi::BracketData::AddOpening function in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allows remote attackers to execute arbitrary code via direct…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2838
|
2024-11-21 11:48 |
2016-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266583
|
6.3 |
MEDIUM
Network
|
mozilla oracle
|
firefox linux
|
Heap-based buffer overflow in the ClearKey Content Decryption Module (CDM) in the Encrypted Media Extensions (EME) API in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 might allow remo…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2837
|
2024-11-21 11:48 |
2016-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266584
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allow remote attackers to cause a denial of service (memory corruption and a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2836
|
2024-11-21 11:48 |
2016-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266585
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 48.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly exe…
|
NVD-CWE-noinfo
|
CVE-2016-2835
|
2024-11-21 11:48 |
2016-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266586
|
4.3 |
MEDIUM
Network
|
mozilla
|
firefox
|
Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 preserve the network connection used for favicon resource retrieval after the associated browser window is closed, which makes it easier f…
|
CWE-200
Information Exposure
|
CVE-2016-2830
|
2024-11-21 11:48 |
2016-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266587
|
7.8 |
HIGH
Local
|
pulsesecure
|
odyssey_access_client pulse_secure_desktop pulse_secure_security standalone_pulse_installer_service
|
Pulse Secure Desktop before 5.2R2 and Pulse Secure Installer Service before 8.2R2 and below for Windows allow restricted users to gain privileges via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2408
|
2024-11-21 11:48 |
2016-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266588
|
5.9 |
MEDIUM
Network
|
hp isc fedoraproject redhat
|
hp-ux bind fedora enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server_tus enterprise_linux_server enterprise_linux_eus
|
ISC BIND 9.x before 9.9.9-P2, 9.10.x before 9.10.4-P2, and 9.11.x before 9.11.0b2, when lwresd or the named lwres option is enabled, allows remote attackers to cause a denial of service (daemon crash…
|
CWE-20
Improper Input Validation
|
CVE-2016-2775
|
2024-11-21 11:48 |
2016-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266589
|
6.5 |
MEDIUM
Network
|
ibm
|
rational_team_concert rational_collaborative_lifecycle_management
|
The GIT Integration component in IBM Rational Team Concert (RTC) 5.x before 5.0.2 iFix14 and 6.x before 6.0.1 iFix5 and Rational Collaborative Lifecycle Management 5.x before 5.0.2 iFix14 and 6.x bef…
|
CWE-200
Information Exposure
|
CVE-2016-2865
|
2024-11-21 11:48 |
2016-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266590
|
5.4 |
MEDIUM
Network
|
paloaltonetworks
|
pan-os
|
Cross-site scripting (XSS) vulnerability in the management interface in Palo Alto Networks PAN-OS 7.x before 7.0.8 allows remote authenticated users to inject arbitrary web script or HTML via unspeci…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2219
|
2024-11-21 11:48 |
2016-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|