|
265971
|
7.8 |
HIGH
Local
|
hancom
|
hancom_office_2014
|
When opening a Hangul Hcell Document (.cell) and processing a particular record within the Workbook stream, an index miscalculation leading to a heap overlow can be made to occur in Hancom Office 201…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4295
|
2024-11-21 11:51 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265972
|
7.8 |
HIGH
Local
|
hancom
|
hancom_office_2014
|
When opening a Hangul Hcell Document (.cell) and processing a property record within the Workbook stream, Hancom Office 2014 will attempt to allocate space for an element using a length from the file…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4294
|
2024-11-21 11:51 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265973
|
7.8 |
HIGH
Local
|
hancom
|
hancom_office_2014
|
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a static size to allocate a heap buffer yet explicitly trust a size from the fi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4292
|
2024-11-21 11:51 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265974
|
7.8 |
HIGH
Local
|
hancom
|
hancom_office_2014
|
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a field from the structure in an operation that can cause the integer to overfl…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-4291
|
2024-11-21 11:51 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265975
|
8.4 |
HIGH
Local
|
bluestacks
|
bluestacks
|
A local privilege escalation vulnerability exists in BlueStacks App Player. The BlueStacks App Player installer creates a registry key with weak permissions that allows users to execute arbitrary pro…
|
CWE-275
Permission Issues
|
CVE-2016-4288
|
2024-11-21 11:51 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265976
|
7.8 |
HIGH
Local
|
hancom
|
hancom_office_2014
|
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate space for a block of data within the file. When calculating thi…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-4290
|
2024-11-21 11:51 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265977
|
4.3 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
An issue was discovered in Open-Xchange OX App Suite before 7.8.1-rev11. Custom messages can be shown at the login screen to notify external users about issues with sharing links. This mechanism can …
|
NVD-CWE-Other
|
CVE-2016-4048
|
2024-11-21 11:51 |
2016-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265978
|
4.3 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
An issue was discovered in Open-Xchange OX App Suite before 7.8.1-rev8. References to external Open XML document type definitions (.dtd resources) can be placed within .docx and .xslx files. Those re…
|
CWE-200 CWE-611
Information Exposure XXE
|
CVE-2016-4047
|
2024-11-21 11:51 |
2016-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265979
|
5.8 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
An issue was discovered in Open-Xchange OX App Suite before 7.8.1-rev11. The API to configure external mail accounts can be abused to map and access network components within the trust boundary of th…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2016-4046
|
2024-11-21 11:51 |
2016-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265980
|
6.1 |
MEDIUM
Network
|
open-xchange
|
open-xchange_appsuite
|
An issue was discovered in Open-Xchange OX App Suite before 7.8.1-rev11. Script code can be embedded to RSS feeds using a URL notation. In case a user clicks the corresponding link at the RSS reader …
|
CWE-79
Cross-site Scripting
|
CVE-2016-4045
|
2024-11-21 11:51 |
2016-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|