|
267241
|
6.1 |
MEDIUM
Network
|
redhat
|
satellite
|
Multiple cross-site scripting (XSS) vulnerabilities in Red Hat Satellite 5 allow remote attackers to inject arbitrary web script or HTML via (1) the list_1680466951_oldfilterval parameter to systems/…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2103
|
2024-11-21 11:47 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267242
|
5.4 |
MEDIUM
Network
|
debian xymon
|
debian_linux xymon
|
Multiple cross-site scripting (XSS) vulnerabilities in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow (1) remote Xymon clients to inject arbitrary web script or HTML via a status-message, which is…
|
CWE-79
Cross-site Scripting
|
CVE-2016-2058
|
2024-11-21 11:47 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267243
|
3.3 |
LOW
Local
|
xymon debian
|
xymon debian_linux
|
lib/xymond_ipc.c in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 use weak permissions (666) for an unspecified IPC message queue, which allows local users to inject arbitrary messages by writing to th…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2057
|
2024-11-21 11:47 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267244
|
8.8 |
HIGH
Network
|
xymon debian
|
xymon debian_linux
|
xymond in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow remote authenticated users to execute arbitrary commands via shell metacharacters in the adduser_name argument in (1) web/useradm.c or (2) …
|
CWE-77
Command Injection
|
CVE-2016-2056
|
2024-11-21 11:47 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267245
|
7.5 |
HIGH
Network
|
xymon debian
|
xymon debian_linux
|
xymond/xymond.c in xymond in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow remote attackers to read arbitrary files in the configuration directory via a "config" command.
|
CWE-200
Information Exposure
|
CVE-2016-2055
|
2024-11-21 11:47 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267246
|
9.8 |
CRITICAL
Network
|
debian xymon
|
debian_linux xymon
|
Multiple buffer overflows in xymond/xymond.c in xymond in Xymon 4.1.x, 4.2.x, and 4.3.x before 4.3.25 allow remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2054
|
2024-11-21 11:47 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267247
|
7.4 |
HIGH
Network
|
f5
|
big-iq_security big-ip_webaccelerator big-ip_application_security_manager big-ip_access_policy_manager big-ip_policy_enforcement_manager big-iq_cloud big-iq_application_delivery_con…
|
F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.x, 11.4.x before 11.4.1 build 685-HF10, 11.5.1 before build 10.104.180, 11.5.2 before 11.5.4 build 0.1.256, 11.6.0 before build …
|
CWE-200
Information Exposure
|
CVE-2016-2084
|
2024-11-21 11:47 |
2016-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267248
|
5.7 |
MEDIUM
Network
|
canonical jasper_project
|
ubuntu_linux jasper
|
Memory leak in the jas_iccprof_createfrombuf function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (memory consumption) via a crafted ICC color profile in a JPEG…
|
CWE-399
Resource Management Errors
|
CVE-2016-2116
|
2024-11-21 11:47 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267249
|
7.5 |
HIGH
Network
|
samba canonical debian
|
samba ubuntu_linux debian_linux
|
The MS-SAMR and MS-LSAD protocol implementations in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 mishandle DCERPC connections, which allows man-in-the-middle attackers …
|
CWE-254
7PK - Security Features
|
CVE-2016-2118
|
2024-11-21 11:47 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267250
|
7.4 |
HIGH
Network
|
hp
|
universal_cmbd_foundation
|
HPE Universal CMDB Foundation 10.0, 10.01, 10.10, 10.11, and 10.20 allows remote attackers to obtain sensitive information or conduct URL redirection attacks via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2016-2001
|
2024-11-21 11:47 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|