|
266801
|
6.1 |
MEDIUM
Network
|
debian horde fedoraproject
|
debian_linux horde_groupware groupware fedora
|
Cross-site scripting (XSS) vulnerability in horde/templates/topbar/_menubar.html.php in Horde Groupware before 5.2.12 and Horde Groupware Webmail Edition before 5.2.12 allows remote attackers to inje…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2228
|
2024-11-21 11:48 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266802
|
6.5 |
MEDIUM
Network
|
optipng canonical debian opensuse
|
optipng ubuntu_linux debian_linux leap opensuse
|
The bmp_read_rows function in pngxtern/pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (invalid memory write and crash) via a series of delta escapes in a craf…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2191
|
2024-11-21 11:48 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266803
|
7.8 |
HIGH
Local
|
huawei
|
utps_firmware
|
Untrusted search path vulnerability in Huawei UTPS before UTPS-V200R003B015D15SP00C983 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse DLL in an unsp…
|
NVD-CWE-Other
|
CVE-2016-2780
|
2024-11-21 11:48 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266804
|
8.8 |
HIGH
Network
|
huawei
|
policy_center_firmware
|
Huawei Policy Center with software before V100R003C10SPC020 allows remote authenticated users to gain privileges and cause a denial of service (system crash) via a crafted URL.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2405
|
2024-11-21 11:48 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266805
|
8.4 |
HIGH
Local
|
nvidia
|
gpu_driver_r340 gpu_driver_r352
|
The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows allows local users to obtain sensitive information, cause a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2558
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266806
|
8.4 |
HIGH
Local
|
nvidia
|
gpu_driver_r340 gpu_driver_r352
|
The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows allows local users to obtain sensitive information from ker…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2557
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266807
|
7.8 |
HIGH
Local
|
nvidia
|
gpu_driver_r340 gpu_driver_r352
|
The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows improperly allows access to restricted functionality, which…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2556
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266808
|
8.4 |
HIGH
Local
|
qemu canonical debian redhat
|
qemu ubuntu_linux debian_linux openstack virtualization enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise…
|
The net_checksum_calculate function in net/checksum.c in QEMU allows local guest OS users to cause a denial of service (out-of-bounds heap read and crash) via the payload length in a crafted packet.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2857
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266809
|
9.8 |
CRITICAL
Network
|
debian kamailio
|
debian_linux kamailio
|
Heap-based buffer overflow in the encode_msg function in encode_msg.c in the SEAS module in Kamailio (formerly OpenSER and SER) before 4.3.5 allows remote attackers to cause a denial of service (memo…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2385
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266810
|
7.5 |
HIGH
Network
|
postgresql
|
postgresql
|
PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that pe…
|
CWE-254
7PK - Security Features
|
CVE-2016-2193
|
2024-11-21 11:48 |
2016-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|