|
266821
|
7.5 |
HIGH
Network
|
nodejs fedoraproject
|
node.js fedora
|
The HTTP header parsing code in Node.js 0.10.x before 0.10.42, 0.11.6 through 0.11.16, 0.12.x before 0.12.10, 4.x before 4.3.0, and 5.x before 5.6.0 allows remote attackers to bypass an HTTP response…
|
CWE-20
Improper Input Validation
|
CVE-2016-2216
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266822
|
8.1 |
HIGH
Network
|
beanshell debian canonical
|
beanshell debian_linux ubuntu_linux
|
BeanShell (bsh) before 2.0b6, when included on the classpath by an application that uses Java serialization or XStream, allows remote attackers to execute arbitrary code via crafted serialized data, …
|
CWE-19
Data Processing Errors
|
CVE-2016-2510
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266823
|
6.5 |
MEDIUM
Local
|
qemu canonical debian
|
qemu ubuntu_linux debian_linux
|
QEMU, when built with the Pseudo Random Number Generator (PRNG) back-end support, allows local guest OS users to cause a denial of service (process crash) via an entropy request, which triggers arbit…
|
CWE-331
Insufficient Entropy
|
CVE-2016-2858
|
2024-11-21 11:48 |
2016-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266824
|
6.5 |
MEDIUM
Network
|
schneider-electric
|
proface_gp-pro_ex_pfxexedls proface_gp-pro_ex_pfxexedv proface_gp-pro_ex_ex-ed proface_gp-pro_ex_pfxexgrpls
|
Stack-based buffer overflow in Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4.05.000 allows remote attackers to execute arbitra…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-2292
|
2024-11-21 11:48 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266825
|
6.5 |
MEDIUM
Network
|
schneider-electric
|
proface_gp-pro_ex_pfxexedls proface_gp-pro_ex_pfxexedv proface_gp-pro_ex_ex-ed proface_gp-pro_ex_pfxexgrpls
|
Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4.05.000 allow remote attackers to execute arbitrary code or cause a denial of ser…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-2291
|
2024-11-21 11:48 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266826
|
8.8 |
HIGH
Network
|
schneider-electric
|
proface_gp-pro_ex_pfxexedls proface_gp-pro_ex_pfxexedv proface_gp-pro_ex_ex-ed proface_gp-pro_ex_pfxexgrpls
|
Heap-based buffer overflow in Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4.05.000 allows remote attackers to execute arbitrar…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-2290
|
2024-11-21 11:48 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266827
|
6.3 |
MEDIUM
Local
|
rockwellautomation
|
integrated_architecture_builder
|
IAB.exe in Rockwell Automation Integrated Architecture Builder (IAB) before 9.6.0.8 and 9.7.x before 9.7.0.2 allows remote attackers to execute arbitrary code via a crafted project file.
|
CWE-284
Improper Access Control
|
CVE-2016-2277
|
2024-11-21 11:48 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266828
|
7.5 |
HIGH
Network
|
eaton_lighting_systems
|
eg2_web_control
|
Eaton Lighting EG2 Web Control 4.04P and earlier allows remote attackers to have an unspecified impact via a modified cookie.
|
CWE-284
Improper Access Control
|
CVE-2016-2272
|
2024-11-21 11:48 |
2016-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266829
|
9.8 |
CRITICAL
Network
|
patterson_dental
|
eaglesoft
|
Patterson Dental Eaglesoft 17 has a hardcoded password of sql for the dba account, which allows remote attackers to obtain sensitive Dental.DB patient information via SQL statements.
|
NVD-CWE-Other
|
CVE-2016-2343
|
2024-11-21 11:48 |
2016-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266830
|
7.5 |
HIGH
Network
|
iconics
|
webhmi
|
Directory traversal vulnerability in ICONICS WebHMI 9 and earlier allows remote attackers to read configuration files, and consequently discover password hashes, via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2016-2289
|
2024-11-21 11:48 |
2016-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|