|
267141
|
6.1 |
MEDIUM
Network
|
blackberry
|
enterprise_server
|
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted …
|
CWE-79
Cross-site Scripting
|
CVE-2016-1918
|
2024-11-21 11:47 |
2016-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267142
|
6.1 |
MEDIUM
Network
|
blackberry
|
enterprise_server
|
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted …
|
CWE-79
Cross-site Scripting
|
CVE-2016-1917
|
2024-11-21 11:47 |
2016-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267143
|
5.4 |
MEDIUM
Network
|
blackberry
|
enterprise_server
|
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote authenticated users to inject arbitrary web script or HTML by l…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1916
|
2024-11-21 11:47 |
2016-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267144
|
9.8 |
CRITICAL
Network
|
hp
|
data_protector
|
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2016-2008
|
2024-11-21 11:47 |
2016-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267145
|
9.8 |
CRITICAL
Network
|
hp
|
data_protector
|
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3354.
|
NVD-CWE-noinfo
|
CVE-2016-2007
|
2024-11-21 11:47 |
2016-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267146
|
9.8 |
CRITICAL
Network
|
hp
|
data_protector
|
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3353.
|
NVD-CWE-noinfo
|
CVE-2016-2006
|
2024-11-21 11:47 |
2016-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267147
|
9.8 |
CRITICAL
Network
|
hp
|
data_protector
|
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3352.
|
NVD-CWE-noinfo
|
CVE-2016-2005
|
2024-11-21 11:47 |
2016-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267148
|
9.8 |
CRITICAL
Network
|
hp
|
data_protector
|
HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allow remote attackers to execute arbitrary code via unspecified vectors related to lack of authentication. NOTE: this vulner…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2016-2004
|
2024-11-21 11:47 |
2016-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267149
|
9.8 |
CRITICAL
Network
|
hp
|
xp7_command_view_advanced_edition_suite p9000_command_view_advanced_edition_software
|
HPE P9000 Command View Advanced Edition Software (CVAE) 7.x and 8.x before 8.4.0-00 and XP7 CVAE 7.x and 8.x before 8.4.0-00 allow remote attackers to execute arbitrary commands via a crafted seriali…
|
NVD-CWE-Other
|
CVE-2016-2003
|
2024-11-21 11:47 |
2016-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267150
|
9.8 |
CRITICAL
Network
|
hp
|
vertica
|
The validateAdminConfig handler in the Analytics Management Console in HPE Vertica 7.0.x before 7.0.2.12, 7.1.x before 7.1.2-12, and 7.2.x before 7.2.2-1 allows remote attackers to execute arbitrary …
|
CWE-77
Command Injection
|
CVE-2016-2002
|
2024-11-21 11:47 |
2016-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|