|
265211
|
5.3 |
MEDIUM
Network
|
setucocms_project
|
setucocms
|
SetsucoCMS all versions allows remote attackers to cause a denial of service via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2016-4894
|
2024-11-21 11:53 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265212
|
8.8 |
HIGH
Network
|
setucocms_project
|
setucocms
|
SQL injection vulnerability in the SetsucoCMS all versions allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2016-4893
|
2024-11-21 11:53 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265213
|
6.1 |
MEDIUM
Network
|
setucocms_project
|
setucocms
|
Cross-site scripting vulnerability in SetsucoCMS all versions allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-4892
|
2024-11-21 11:53 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265214
|
8.8 |
HIGH
Network
|
setucocms_project
|
setucocms
|
Cross-site request forgery (CSRF) vulnerability in SetsucoCMS all versions allows remote attackers to hijack the authentication of an administrator to change settings via unspecified vectors.
|
CWE-352
Origin Validation Error
|
CVE-2016-4891
|
2024-11-21 11:53 |
2017-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265215
|
7.0 |
HIGH
Local
|
setroubleshoot_project redhat
|
setroubleshoot enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc_node
|
setroubleshoot allows local users to bypass an intended container protection mechanism and execute arbitrary commands by (1) triggering an SELinux denial with a crafted file name, which is handled by…
|
CWE-77
Command Injection
|
CVE-2016-4989
|
2024-11-21 11:53 |
2017-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265216
|
4.6 |
MEDIUM
Physics
|
kernel redhat ibm
|
util-linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux_eus powerkvm …
|
The parse_dos_extended function in partitions/dos.c in the libblkid library in util-linux allows physically proximate attackers to cause a denial of service (memory consumption) via a crafted MSDOS p…
|
NVD-CWE-noinfo
|
CVE-2016-5011
|
2024-11-21 11:53 |
2017-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265217
|
7.5 |
HIGH
Network
|
libdwarf_project
|
libdwarf
|
dwarf_macro5.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a debugging information entry using DWARF5 and without a DW_AT_name.
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-5041
|
2024-11-21 11:53 |
2017-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265218
|
6.1 |
MEDIUM
Network
|
paessler
|
prtg_network_monitor
|
Paessler PRTG before 16.2.24.4045 has XSS via SNMP.
|
CWE-79
Cross-site Scripting
|
CVE-2016-5078
|
2024-11-21 11:53 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265219
|
6.1 |
MEDIUM
Network
|
netikus
|
eventsentry
|
Netikus EventSentry before 3.2.1.44 has XSS via SNMP.
|
CWE-79
Cross-site Scripting
|
CVE-2016-5077
|
2024-11-21 11:53 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265220
|
7.5 |
HIGH
Network
|
cloudviewnms
|
cloudview_nms
|
CloudView NMS before 2.10a allows remote attackers to obtain sensitive information via a direct request for admin/auto.def.
|
CWE-200
Information Exposure
|
CVE-2016-5076
|
2024-11-21 11:53 |
2017-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|