|
265511
|
7.5 |
HIGH
Network
|
gsi
|
old_gsi_maps
|
Directory traversal vulnerability in kml2jsonp.php in Geospatial Information Authority of Japan (aka GSI) Old_GSI_Maps before January 2015 on Windows allows remote attackers to read arbitrary files v…
|
CWE-22
Path Traversal
|
CVE-2016-4814
|
2024-11-21 11:53 |
2016-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265512
|
8.8 |
HIGH
Network
|
netcommons
|
netcommons
|
NetCommons 2.4.2.1 and earlier allows remote authenticated secretariat (aka CLERK) users to gain privileges by creating a SYSTEM_ADMIN account.
|
CWE-284
Improper Access Control
|
CVE-2016-4813
|
2024-11-21 11:53 |
2016-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265513
|
4.4 |
MEDIUM
Local
|
qemu canonical debian
|
qemu ubuntu_linux debian_linux
|
The get_cmd function in hw/scsi/esp.c in QEMU might allow local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors related to reading from t…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-5238
|
2024-11-21 11:53 |
2016-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265514
|
8.1 |
HIGH
Network
|
huawei
|
rse6500_firmware vp9600_series_firmware
|
Buffer overflow in Huawei VP9660, VP9650, and VP9630 multipoint control unit devices with software before V500R002C00SPC200 and RSE6500 videoconference devices with software before V500R002C00SPC100,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-5234
|
2024-11-21 11:53 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265515
|
5.3 |
MEDIUM
Network
|
libimobiledevice canonical opensuse
|
libimobiledevice libusbmuxd ubuntu_linux leap opensuse
|
The socket_create function in common/socket.c in libimobiledevice and libusbmuxd allows remote attackers to bypass intended access restrictions and communicate with services on iOS devices by connect…
|
CWE-284
Improper Access Control
|
CVE-2016-5104
|
2024-11-21 11:53 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265516
|
4.3 |
MEDIUM
Network
|
keystone
|
openstack_identity
|
The Fernet Token Provider in OpenStack Identity (Keystone) 9.0.x before 9.0.1 (mitaka) allows remote authenticated users to prevent revocation of a chain of tokens and bypass intended access restrict…
|
CWE-284
Improper Access Control
|
CVE-2016-4911
|
2024-11-21 11:53 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265517
|
3.7 |
LOW
Network
|
huawei
|
mate_8_firmware
|
Huawei Mate 8 smartphones with software NXT-AL10 before NXT-AL10C00B182, NXT-CL00 before NXT-CL00C92B182, NXT-DL00 before NXT-DL00C17B182, and NXT-TL00 before NXT-TL00C01B182 allow remote base statio…
|
CWE-200
Information Exposure
|
CVE-2016-5233
|
2024-11-21 11:53 |
2016-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265518
|
9.8 |
CRITICAL
Network
|
graphicsmagick suse oracle opensuse canonical debian imagemagick
|
graphicsmagick studio_onsite linux_enterprise_software_development_kit linux_enterprise_debuginfo solaris linux leap opensuse ubuntu_linux debian_linux linux_enterprise_…
|
The OpenBlob function in blob.c in GraphicsMagick before 1.3.24 and ImageMagick allows remote attackers to execute arbitrary code via a | (pipe) character at the start of a filename.
|
NVD-CWE-noinfo
|
CVE-2016-5118
|
2024-11-21 11:53 |
2016-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265519
|
9.8 |
CRITICAL
Network
|
debian videolan
|
debian_linux vlc_media_player
|
Buffer overflow in the DecodeAdpcmImaQT function in modules/codec/adpcm.c in VideoLAN VLC media player before 2.2.4 allows remote attackers to cause a denial of service (crash) or possibly execute ar…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-5108
|
2024-11-21 11:53 |
2016-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265520
|
5.6 |
MEDIUM
Local
|
xen
|
xen
|
The p2m_teardown function in arch/arm/p2m.c in Xen 4.4.x through 4.6.x allows local guest OS users with access to the driver domain to cause a denial of service (NULL pointer dereference and host OS …
|
NVD-CWE-Other
|
CVE-2016-5242
|
2024-11-21 11:53 |
2016-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|