|
271161
|
6.1 |
MEDIUM
Network
|
microsoft
|
exchange_server
|
Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) in Microsoft Exchange Server 2016 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Exchange …
|
CWE-79
Cross-site Scripting
|
CVE-2016-0031
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271162
|
6.1 |
MEDIUM
Network
|
microsoft
|
exchange_server
|
Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) in Microsoft Exchange Server 2013 PS1, 2013 Cumulative Update 10, and 2016 allows remote attackers to inject arbitrary web script …
|
CWE-79
Cross-site Scripting
|
CVE-2016-0030
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271163
|
6.1 |
MEDIUM
Network
|
microsoft
|
exchange_server
|
Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) in Microsoft Exchange Server 2016 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Exchange …
|
CWE-79
Cross-site Scripting
|
CVE-2016-0029
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271164
|
8.8 |
HIGH
Network
|
microsoft
|
edge
|
The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code via unspecified vectors, aka "Scripting Engine Memory Corruption Vulnerability."
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0024
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271165
|
7.8 |
HIGH
Local
|
microsoft
|
windows_7 windows_server_2008
|
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 mishandle DLL loading, which allows local users to gain privileges via a crafted application, aka "MAPI DLL Loading …
|
NVD-CWE-Other
|
CVE-2016-0020
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271166
|
8.1 |
HIGH
Network
|
microsoft
|
windows_10
|
The Remote Desktop Protocol (RDP) service implementation in Microsoft Windows 10 Gold and 1511 allows remote attackers to bypass intended access restrictions and establish sessions for blank-password…
|
CWE-254
7PK - Security Features
|
CVE-2016-0019
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271167
|
7.3 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_7 windows_8
|
Microsoft Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 R2, and Windows 10 Gold and 1511 mishandle DLL loading, which allows local users to gain privileges via a crafted application, aka…
|
CWE-426
Untrusted Search Path
|
CVE-2016-0018
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271168
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_rt windows_10 windows_8.1 windows_7 windows_rt_8.1 windows_vista windows_8
|
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 mishandl…
|
CWE-426
Untrusted Search Path
|
CVE-2016-0016
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271169
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_7 windows_vista windows_8
|
DirectShow in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 Gold and 1511 allows remote attac…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0015
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271170
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_rt windows_10 windows_8.1 windows_7 windows_rt_8.1 windows_vista windows_8
|
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 mishandl…
|
CWE-426
Untrusted Search Path
|
CVE-2016-0014
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|