|
267641
|
7.5 |
HIGH
Network
|
squid-cache
|
squid
|
Squid 3.x before 3.5.15 and 4.x before 4.0.7 does not properly append data to String objects, which allows remote servers to cause a denial of service (assertion failure and daemon exit) via a long s…
|
CWE-20
Improper Input Validation
|
CVE-2016-2569
|
2024-11-21 11:48 |
2016-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267642
|
7.8 |
HIGH
Local
|
flexera
|
installshield
|
Untrusted search path vulnerability in Flexera InstallShield through 2015 SP1 allows local users to gain privileges via a Trojan horse DLL in the current working directory of a setup-launcher executa…
|
NVD-CWE-Other
|
CVE-2016-2542
|
2024-11-21 11:48 |
2016-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267643
|
7.5 |
HIGH
Network
|
is_my_json_valid_project
|
is_my_json_valid
|
The is-my-json-valid package before 2.12.4 for Node.js has an incorrect exports['utc-millisec'] regular expression, which allows remote attackers to cause a denial of service (blocked event loop) via…
|
CWE-20
Improper Input Validation
|
CVE-2016-2537
|
2024-11-21 11:48 |
2016-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267644
|
8.8 |
HIGH
Network
|
sap google
|
3d_visual_enterprise_viewer sketchup
|
Multiple use-after-free vulnerabilities in SAP 3D Visual Enterprise Viewer allow remote attackers to execute arbitrary code via a crafted SketchUp document. NOTE: the primary affected product may be…
|
CWE-399
Resource Management Errors
|
CVE-2016-2536
|
2024-11-21 11:48 |
2016-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267645
|
5.9 |
MEDIUM
Network
|
fedoraproject digium
|
fedora asterisk certified_asterisk
|
chan_sip in Asterisk Open Source 1.8.x, 11.x before 11.21.1, 12.x, and 13.x before 13.7.1 and Certified Asterisk 1.8.28, 11.6 before 11.6-cert12, and 13.1 before 13.1-cert3, when the timert1 sip.conf…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2016-2316
|
2024-11-21 11:48 |
2016-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267646
|
6.5 |
MEDIUM
Network
|
digium
|
asterisk certified_asterisk
|
Asterisk Open Source 1.8.x, 11.x before 11.21.1, 12.x, and 13.x before 13.7.1 and Certified Asterisk 1.8.28, 11.6 before 11.6-cert12, and 13.1 before 13.1-cert3 allow remote authenticated users to ca…
|
NVD-CWE-Other
|
CVE-2016-2232
|
2024-11-21 11:48 |
2016-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267647
|
9.8 |
CRITICAL
Network
|
advantech
|
vesp211-eu_firmware vesp211-232_firmware
|
The web interface on Advantech/B+B SmartWorx VESP211-EU devices with firmware 1.7.2 and VESP211-232 devices with firmware 1.5.1 and 1.7.2 relies on the client to implement access control, which allow…
|
CWE-284
Improper Access Control
|
CVE-2016-2275
|
2024-11-21 11:48 |
2016-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267648
|
5.5 |
MEDIUM
Local
|
xen
|
xen
|
VMX in Xen 4.6.x and earlier, when using an Intel or Cyrix CPU, allows local HVM guest users to cause a denial of service (guest crash) via vectors related to a non-canonical RIP.
|
NVD-CWE-Other
|
CVE-2016-2271
|
2024-11-21 11:48 |
2016-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267649
|
6.8 |
MEDIUM
Network
|
debian fedoraproject xen oracle
|
debian_linux fedora xen vm_server
|
Xen 4.6.x and earlier allows local guest administrators to cause a denial of service (host reboot) via vectors related to multiple mappings of MMIO pages with different cachability settings.
|
CWE-20
Improper Input Validation
|
CVE-2016-2270
|
2024-11-21 11:48 |
2016-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267650
|
5.3 |
MEDIUM
Adjacent
|
belden
|
hirschmann_firmware hirschmann_l2b
|
The password-sync feature on Belden Hirschmann Classic Platform switches L2B before 05.3.07 and L2E, L2P, L3E, and L3P before 09.0.06 sets an SNMP community to the same string as the administrator pa…
|
CWE-200
Information Exposure
|
CVE-2016-2509
|
2024-11-21 11:48 |
2016-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|