|
266671
|
9.8 |
CRITICAL
Network
|
ge
|
multilink_firmware
|
General Electric (GE) Multilink ML800, ML1200, ML1600, and ML2400 switches with firmware before 5.5.0 and ML810, ML3000, and ML3100 switches with firmware before 5.5.0k have hardcoded credentials, wh…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2016-2310
|
2024-11-21 11:48 |
2016-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266672
|
8.8 |
HIGH
Network
|
opensuse debian 7-zip
|
opensuse debian_linux 7-zip
|
The CInArchive::ReadFileItem method in Archive/Udf/UdfIn.cpp in 7zip 9.20 and 15.05 beta and p7zip allows remote attackers to cause a denial of service (out-of-bounds read) or execute arbitrary code …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2335
|
2024-11-21 11:48 |
2016-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266673
|
7.5 |
HIGH
Network
|
moxa
|
miineport_e2_1242_firmware miineport_e1_4641_firmware miineport_e2_4561_firmware miineport_e3_firmware miineport_e1_7080_firmware
|
Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242 devices with firmware 1.1 Build 10080614, MiiNePor…
|
CWE-200
Information Exposure
|
CVE-2016-2295
|
2024-11-21 11:48 |
2016-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266674
|
7.5 |
HIGH
Network
|
moxa
|
miineport_e2_1242_firmware miineport_e1_7080_firmware miineport_e2_4561_firmware miineport_e3_firmware miineport_e1_4641_firmware
|
Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242 devices with firmware 1.1 Build 10080614, MiiNePor…
|
CWE-287
Improper Authentication
|
CVE-2016-2286
|
2024-11-21 11:48 |
2016-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266675
|
8.8 |
HIGH
Network
|
moxa
|
miineport_e2_1242_firmware miineport_e2_4561_firmware miineport_e1_7080_firmware miineport_e3_firmware miineport_e1_4641_firmware
|
Cross-site request forgery (CSRF) vulnerability on Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242…
|
CWE-352
Origin Validation Error
|
CVE-2016-2285
|
2024-11-21 11:48 |
2016-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266676
|
6.5 |
MEDIUM
Network
|
blackbox
|
alertwerks_servsensor_junior_firmware alertwerks_servsensor_contact_firmware alertwerks_servsensor_firmware
|
Black Box AlertWerks ServSensor with firmware before SP473, AlertWerks ServSensor Junior with firmware before SP473, AlertWerks ServSensor Junior with PoE with firmware before SP473, and AlertWerks S…
|
CWE-255 CWE-200
Credentials Management Information Exposure
|
CVE-2016-2311
|
2024-11-21 11:48 |
2016-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266677
|
7.2 |
HIGH
Network
|
irz
|
ruh2
|
iRZ RUH2 before 2b does not validate firmware patches, which allows remote authenticated users to modify data or cause a denial of service via unspecified vectors.
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2016-2309
|
2024-11-21 11:48 |
2016-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266678
|
4.7 |
MEDIUM
Network
|
cmsmadesimple
|
cms_made_simple
|
CMS Made Simple 2.x before 2.1.3 and 1.x before 1.12.2, when Smarty Cache is activated, allow remote attackers to conduct cache poisoning attacks, modify links, and conduct cross-site scripting (XSS)…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2784
|
2024-11-21 11:48 |
2016-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266679
|
7.8 |
HIGH
Local
|
huawei
|
mobile_broadband_hl_service
|
The Huawei Mobile Broadband HL Service 22.001.25.00.03 and earlier uses a weak ACL for the MobileBrServ program data directory, which allows local users to gain SYSTEM privileges by modifying VERSION…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2855
|
2024-11-21 11:48 |
2016-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266680
|
5.3 |
MEDIUM
Network
|
moodle
|
moodle
|
Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 does not properly restrict links, which allows remote attackers to obtain sensitive URL inf…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2190
|
2024-11-21 11:48 |
2016-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|