|
268921
|
8.8 |
HIGH
Network
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Double free vulnerability in Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Wi…
|
NVD-CWE-Other
|
CVE-2016-1111
|
2024-11-21 11:45 |
2016-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268922
|
6.1 |
MEDIUM
Network
|
shiro8
|
category_freearea_addition itemdetail_freearea_addition
|
Cross-site scripting (XSS) vulnerability in the shiro8 (1) category_freearea_ addition_plugin plugin 1.0 and (2) itemdetail_freearea_ addition_plugin plugin 1.0 for EC-CUBE allows remote attackers to…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1205
|
2024-11-21 11:45 |
2016-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268923
|
7.8 |
HIGH
Local
|
atom
|
electron
|
Untrusted search path vulnerability in Atom Electron before 0.33.5 allows local users to gain privileges via a Trojan horse Node.js module in a parent directory of a directory named on a require line.
|
NVD-CWE-Other
|
CVE-2016-1202
|
2024-11-21 11:45 |
2016-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268924
|
2.5 |
LOW
Local
|
cybozu
|
kintone
|
The Cybozu kintone mobile application 1.x before 1.0.6 for Android allows attackers to discover an authentication token via a crafted application.
|
CWE-200
Information Exposure
|
CVE-2016-1185
|
2024-11-21 11:45 |
2016-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268925
|
6.1 |
MEDIUM
Network
|
adobe
|
analytics_appmeasurement_for_flash_library
|
Cross-site scripting (XSS) vulnerability in Adobe Analytics AppMeasurement for Flash Library before 4.0.1, when debugTracking is enabled, allows remote attackers to inject arbitrary web script or HTM…
|
CWE-79
Cross-site Scripting
|
CVE-2016-1036
|
2024-11-21 11:45 |
2016-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268926
|
7.5 |
HIGH
Network
|
adobe
|
robohelp
|
Adobe RoboHelp Server 9 before 9.0.1 mishandles SQL queries, which allows attackers to obtain sensitive information via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-1035
|
2024-11-21 11:45 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268927
|
9.1 |
CRITICAL
Network
|
adobe
|
creative_cloud
|
The Sync Process in the JavaScript API for Creative Cloud Libraries in Adobe Creative Cloud Desktop Application before 3.6.0.244 allows remote attackers to read or write to arbitrary files via unspec…
|
NVD-CWE-noinfo
|
CVE-2016-1034
|
2024-11-21 11:45 |
2016-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268928
|
8.8 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary…
|
CWE-416
Use After Free
|
CVE-2016-1031
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268929
|
8.1 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to bypass intended access restrictions via unspecifi…
|
NVD-CWE-noinfo
|
CVE-2016-1030
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268930
|
8.8 |
HIGH
Network
|
adobe
|
flash_player flash_player_desktop_runtime air_desktop_runtime air_sdk air_sdk_\&_compiler
|
Stack-based buffer overflow in Adobe Flash Player before 18.0.0.343 and 19.x through 21.x before 21.0.0.213 on Windows and OS X and before 11.2.202.616 on Linux allows attackers to execute arbitrary …
|
CWE-787
Out-of-bounds Write
|
CVE-2016-1018
|
2024-11-21 11:45 |
2016-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|