|
267351
|
5.9 |
MEDIUM
Network
|
grandstream
|
wave
|
The com.softphone.common package in the Grandstream Wave app 1.0.1.26 and earlier for Android does not properly validate SSL certificates, which allows man-in-the-middle attackers to spoof the Grands…
|
CWE-295
Improper Certificate Validation
|
CVE-2016-1519
|
2024-11-21 11:46 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267352
|
8.1 |
HIGH
Network
|
grandstream
|
wave
|
The auto-provisioning mechanism in the Grandstream Wave app 1.0.1.26 and earlier for Android and Grandstream Video IP phones allows man-in-the-middle attackers to spoof provisioning data and conseque…
|
CWE-284
Improper Access Control
|
CVE-2016-1518
|
2024-11-21 11:46 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267353
|
8.1 |
HIGH
Network
|
d-link
|
dap-1353_h\/w_b1_firmware dap-2553_h\/w_a1_firmware dap-3520_h\/w_a1_firmware
|
D-Link DAP-1353 H/W vers. B1 3.15 and earlier, D-Link DAP-2553 H/W ver. A1 1.31 and earlier, and D-Link DAP-3520 H/W ver. A1 1.16 and earlier reveal wireless passwords and administrative usernames an…
|
CWE-200
Information Exposure
|
CVE-2016-1559
|
2024-11-21 11:46 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267354
|
9.8 |
CRITICAL
Network
|
netgear
|
wnap320_firmware wndap350_firmware wndap360_firmware
|
Netgear WNAP320, WNDAP350, and WNDAP360 before 3.5.5.0 reveal wireless passwords and administrative usernames and passwords over SNMP.
|
CWE-200
Information Exposure
|
CVE-2016-1557
|
2024-11-21 11:46 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267355
|
7.5 |
HIGH
Network
|
netgear
|
wnap320_firmware wndap350_firmware wndap360_firmware wndap210v2_firmware wn604_firmware wnd930_firmware
|
Information disclosure in Netgear WN604 before 3.3.3; WNAP210, WNAP320, WNDAP350, and WNDAP360 before 3.5.5.0; and WND930 before 2.0.11 allows remote attackers to read the wireless WPS PIN or passphr…
|
CWE-200
Information Exposure
|
CVE-2016-1556
|
2024-11-21 11:46 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267356
|
9.8 |
CRITICAL
Network
|
dlink
|
dap-3662_firmware dap-2310_firmware dap-2330_firmware dap-2360_firmware dap-2553_firmware dap-2660_firmware dap-2690_firmware dap-2695_firmware dap-3320_firmware dap-2230_f…
|
Buffer overflow in D-Link DAP-2310 2.06 and earlier, DAP-2330 1.06 and earlier, DAP-2360 2.06 and earlier, DAP-2553 H/W ver. B1 3.05 and earlier, DAP-2660 1.11 and earlier, DAP-2690 3.15 and earlier,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1558
|
2024-11-21 11:46 |
2017-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267357
|
7.3 |
HIGH
Local
|
vtiger
|
vtiger_crm
|
Unrestricted file upload vulnerability in the Settings_Vtiger_CompanyDetailsSave_Action class in modules/Settings/Vtiger/actions/CompanyDetailsSave.php in Vtiger CRM 6.4.0 allows remote authenticated…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2016-1713
|
2024-11-21 11:46 |
2017-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267358
|
5.5 |
MEDIUM
Local
|
opencv
|
opencv
|
OpenCV 3.0.0 allows remote attackers to cause a denial of service (segfault) via vectors involving corrupt chunks.
|
CWE-20
Improper Input Validation
|
CVE-2016-1517
|
2024-11-21 11:46 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267359
|
8.8 |
HIGH
Network
|
opencv debian
|
opencv debian_linux
|
OpenCV 3.0.0 has a double free issue that allows attackers to execute arbitrary code.
|
CWE-415
Double Free
|
CVE-2016-1516
|
2024-11-21 11:46 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267360
|
6.5 |
MEDIUM
Network
|
novell
|
netiq_idm_servicenow_driver
|
An information leak in the NetIQ IDM ServiceNow Driver before 1.0.0.1 could expose cryptographic attributes to logged-in users.
|
CWE-200
Information Exposure
|
CVE-2016-1603
|
2024-11-21 11:46 |
2017-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|