|
265771
|
5.9 |
MEDIUM
Network
|
aeon
|
waon
|
WAON "Service Application" for Android 1.4.1 and earlier does not verify SSL certificates.
|
CWE-295
Improper Certificate Validation
|
CVE-2016-4832
|
2024-11-21 11:53 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265772
|
5.9 |
MEDIUM
Network
|
akindo-sushiro
|
sushiro
|
Sushiro App for iOS 2.1.16 and earlier and Sushiro App for Android 2.1.16.1 and earlier do not verify SSL certificates.
|
CWE-295
Improper Certificate Validation
|
CVE-2016-4830
|
2024-11-21 11:53 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265773
|
5.9 |
MEDIUM
Network
|
dmm
|
ppv_play_player
|
DMM Movie Player App for Android before 1.2.1, and DMM Movie Player App for iPhone/iPad before 2.1.3 does not verify SSL certificates.
|
CWE-295
Improper Certificate Validation
|
CVE-2016-4829
|
2024-11-21 11:53 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265774
|
6.5 |
MEDIUM
Network
|
imagemagick
|
imagemagick
|
coders/tiff.c in ImageMagick before 6.9.5-3 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF file.
|
CWE-125
Out-of-bounds Read
|
CVE-2016-5010
|
2024-11-21 11:53 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265775
|
8.8 |
HIGH
Network
|
cs-cart
|
cs-cart
|
Twigmo bundled with CS-Cart 4.3.9 and earlier and Twigmo bundled with CS-Cart Multi-Vendor 4.3.9 and earlier allow remote authenticated users to execute arbitrary PHP code on the servers.
|
CWE-20
Improper Input Validation
|
CVE-2016-4862
|
2024-11-21 11:53 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265776
|
8.1 |
HIGH
Network
|
linecorp
|
line
|
LINE for Windows before 4.8.3 allows man-in-the-middle attackers to execute arbitrary code.
|
CWE-284
Improper Access Control
|
CVE-2016-4850
|
2024-11-21 11:53 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265777
|
4.3 |
MEDIUM
Network
|
cybozu
|
mailwise
|
Cybozu Mailwise before 5.4.0 allows remote attackers to conduct clickjacking attacks.
|
CWE-200
Information Exposure
|
CVE-2016-4844
|
2024-11-21 11:53 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265778
|
6.5 |
MEDIUM
Network
|
cybozu
|
mailwise
|
Cybozu Mailwise before 5.4.0 allows remote attackers to obtain sensitive cookie information.
|
CWE-200
Information Exposure
|
CVE-2016-4843
|
2024-11-21 11:53 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265779
|
4.3 |
MEDIUM
Network
|
cybozu
|
mailwise
|
Cybozu Mailwise before 5.4.0 allows remote attackers to obtain information on when an email is read.
|
CWE-200
Information Exposure
|
CVE-2016-4842
|
2024-11-21 11:53 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265780
|
5.9 |
MEDIUM
Network
|
dmm
|
dmmfx_demo_trade gaitamejapan_fx_trade dmmfx_trade
|
DMMFX Trade for Android 1.5.0 and earlier, DMMFX DEMO Trade for Android 1.5.0 and earlier, and GAITAMEJAPAN FX Trade for Android 1.4.0 and earlier do not verify SSL certificates.
|
CWE-295
Improper Certificate Validation
|
CVE-2016-4818
|
2024-11-21 11:53 |
2017-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|