|
264721
|
7.5 |
HIGH
Network
|
apache
|
traffic_server
|
Apache Traffic Server 6.0.0 to 6.2.0 are affected by an HPACK Bomb Attack.
|
CWE-399
Resource Management Errors
|
CVE-2016-5396
|
2024-11-21 11:54 |
2017-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264722
|
6.5 |
MEDIUM
Network
|
symantec
|
messaging_gateway
|
Directory traversal vulnerability in the charting component in Symantec Messaging Gateway before 10.6.2 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the sn paramete…
|
CWE-22
Path Traversal
|
CVE-2016-5312
|
2024-11-21 11:54 |
2017-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264723
|
5.5 |
MEDIUM
Local
|
symantec broadcom
|
protection_engine protection_for_sharepoint_servers mail_security_for_microsoft_exchange messaging_gateway mail_security_for_domino endpoint_protection endpoint_protection_for_small…
|
The RAR file parser component in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection: Network (ATP); Symantec Email Security.Cloud; Symantec Data Center Security: Server; Symantec …
|
CWE-787
Out-of-bounds Write
|
CVE-2016-5310
|
2024-11-21 11:54 |
2017-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264724
|
5.5 |
MEDIUM
Local
|
symantec broadcom
|
protection_engine protection_for_sharepoint_servers mail_security_for_microsoft_exchange messaging_gateway mail_security_for_domino endpoint_protection endpoint_protection_for_small…
|
The RAR file parser component in the AntiVirus Decomposer engine in Symantec Advanced Threat Protection: Network (ATP); Symantec Email Security.Cloud; Symantec Data Center Security: Server; Symantec …
|
CWE-125
Out-of-bounds Read
|
CVE-2016-5309
|
2024-11-21 11:54 |
2017-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264725
|
8.8 |
HIGH
Network
|
symantec
|
web_gateway
|
Symantec Web Gateway (SWG) before 5.2.5 allows remote authenticated users to execute arbitrary OS commands.
|
CWE-78
OS Command
|
CVE-2016-5313
|
2024-11-21 11:54 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264726
|
5.5 |
MEDIUM
Local
|
libtiff debian
|
libtiff debian_linux
|
The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image.
|
CWE-125
Out-of-bounds Read
|
CVE-2016-5322
|
2024-11-21 11:54 |
2017-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264727
|
6.1 |
MEDIUM
Network
|
smartbear
|
swagger-ui
|
Swagger-UI before 2.2.1 has XSS via the Default field in the Definitions section.
|
CWE-79
Cross-site Scripting
|
CVE-2016-5682
|
2024-11-21 11:54 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264728
|
5.4 |
MEDIUM
Network
|
opmantek
|
network_management_information_system
|
Opmantek NMIS before 8.5.12G has XSS via SNMP.
|
CWE-79
Cross-site Scripting
|
CVE-2016-5642
|
2024-11-21 11:54 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264729
|
5.5 |
MEDIUM
Local
|
google
|
android
|
The high level operating systems (HLOS) was not providing sufficient memory address information to ensure that secure applications inside Qualcomm Secure Execution Environment (QSEE) only write to le…
|
CWE-200
Information Exposure
|
CVE-2016-5349
|
2024-11-21 11:54 |
2017-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264730
|
8.8 |
HIGH
Network
|
netiq
|
access_manager
|
A cross site request forgery protection mechanism in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be circumvented by repeated uploads causing a high load.
|
CWE-352
Origin Validation Error
|
CVE-2016-5758
|
2024-11-21 11:54 |
2017-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|