|
265631
|
6.5 |
MEDIUM
Network
|
sap
|
sapcryptolib
|
The DSA algorithm implementation in SAP SAPCRYPTOLIB 5.555.38 does not properly check signatures, which allows remote authenticated users to impersonate arbitrary users via unspecified vectors, aka S…
|
CWE-284
Improper Access Control
|
CVE-2016-4407
|
2024-11-21 11:52 |
2016-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265632
|
7.5 |
HIGH
Network
|
sap
|
netweaver sap_aba sap_basis
|
The (1) SAP_BASIS and (2) SAP_ABA components 7.00 SP Level 0031 in SAP NetWeaver 2004s might allow remote attackers to spoof IP addresses written to the Security Audit Log via vectors related to the …
|
CWE-284
Improper Access Control
|
CVE-2016-4551
|
2024-11-21 11:52 |
2016-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265633
|
8.1 |
HIGH
Network
|
hp
|
keyview
|
The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4387, CVE-2016-4388, and CVE-2016-…
|
NVD-CWE-noinfo
|
CVE-2016-4390
|
2024-11-21 11:52 |
2016-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265634
|
8.1 |
HIGH
Network
|
hp
|
keyview
|
The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4387, CVE-2016-4388, and CVE-2016-…
|
NVD-CWE-noinfo
|
CVE-2016-4389
|
2024-11-21 11:52 |
2016-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265635
|
8.1 |
HIGH
Network
|
hp
|
keyview
|
The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4387, CVE-2016-4389, and CVE-2016-…
|
NVD-CWE-noinfo
|
CVE-2016-4388
|
2024-11-21 11:52 |
2016-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265636
|
8.1 |
HIGH
Network
|
hp
|
keyview
|
The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4388, CVE-2016-4389, and CVE-2016-…
|
NVD-CWE-noinfo
|
CVE-2016-4387
|
2024-11-21 11:52 |
2016-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265637
|
9.8 |
CRITICAL
Network
|
apache
|
struts
|
Apache Struts 2 before 2.3.29 and 2.5.x before 2.5.1 allow attackers to have unspecified impact via vectors related to improper action name clean up.
|
NVD-CWE-noinfo
|
CVE-2016-4436
|
2024-11-21 11:52 |
2016-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265638
|
7.8 |
HIGH
Local
|
hp
|
network_automation
|
HPE Network Automation Software 10.10 allows local users to write to arbitrary files via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2016-4386
|
2024-11-21 11:52 |
2016-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265639
|
7.3 |
HIGH
Network
|
hp
|
network_automation
|
The RMI service in HP Network Automation Software 9.1x, 9.2x, 10.0x before 10.00.02.01, and 10.1x before 10.11.00.01 allows remote attackers to execute arbitrary commands via a crafted serialized Jav…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2016-4385
|
2024-11-21 11:52 |
2016-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265640
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
Apple Type Services (ATS) in Apple OS X before 10.12 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4779
|
2024-11-21 11:52 |
2016-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|