|
264501
|
7.5 |
HIGH
Network
|
siemens
|
eta4_firmware eta2_firmware
|
An issue was discovered in Siemens ETA4 firmware (all versions prior to Revision 08) of the SM-2558 extension module for: SICAM AK, SICAM TM 1703, SICAM BC 1703, and SICAM AK 3. Specially crafted pac…
|
CWE-19
Data Processing Errors
|
CVE-2016-7987
|
2024-11-21 11:58 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264502
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
install/index.php in Exponent CMS 2.3.9 allows remote attackers to execute arbitrary commands via shell metacharacters in the sc array parameter.
|
CWE-284
Improper Access Control
|
CVE-2016-7565
|
2024-11-21 11:58 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264503
|
7.5 |
HIGH
Network
|
graphicsmagick opensuse debian
|
graphicsmagick leap opensuse debian_linux
|
Integer underflow in the parse8BIM function in coders/meta.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM chunk, wh…
|
CWE-119 CWE-191
Incorrect Access of Indexable Resource ('Range Error') Integer Underflow (Wrap or Wraparound)
|
CVE-2016-7800
|
2024-11-21 11:58 |
2017-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264504
|
7.5 |
HIGH
Network
|
graphicsmagick debian opensuse
|
graphicsmagick debian_linux leap opensuse
|
The TIFFGetField function in coders/tiff.c in GraphicsMagick 1.3.24 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a file containing an "unterminated" string.
|
CWE-125
Out-of-bounds Read
|
CVE-2016-7449
|
2024-11-21 11:58 |
2017-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264505
|
7.5 |
HIGH
Network
|
graphicsmagick debian opensuse
|
graphicsmagick debian_linux leap opensuse
|
The Utah RLE reader in GraphicsMagick before 1.3.25 allows remote attackers to cause a denial of service (CPU consumption or large memory allocations) via vectors involving the header information and…
|
CWE-399
Resource Management Errors
|
CVE-2016-7448
|
2024-11-21 11:58 |
2017-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264506
|
9.8 |
CRITICAL
Network
|
graphicsmagick debian opensuse
|
graphicsmagick debian_linux leap opensuse
|
Heap-based buffer overflow in the EscapeParenthesis function in GraphicsMagick before 1.3.25 allows remote attackers to have unspecified impact via unknown vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-7447
|
2024-11-21 11:58 |
2017-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264507
|
9.8 |
CRITICAL
Network
|
graphicsmagick debian opensuse
|
graphicsmagick debian_linux leap opensuse
|
Buffer overflow in the MVG and SVG rendering code in GraphicsMagick 1.3.24 allows remote attackers to have unspecified impact via unknown vectors. Note: This vulnerability exists due to an incomplete…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-7446
|
2024-11-21 11:58 |
2017-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264508
|
7.5 |
HIGH
Network
|
dell
|
bsafe_crypto-j
|
An issue was discovered in EMC RSA BSAFE Crypto-J versions prior to 6.2.2. There is an Improper OCSP Validation Vulnerability. OCSP responses have two time values: thisUpdate and nextUpdate. These sp…
|
CWE-404
Improper Resource Shutdown or Release
|
CVE-2016-8212
|
2024-11-21 11:58 |
2017-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264509
|
7.5 |
HIGH
Network
|
dell
|
emc_data_protection_advisor
|
EMC Data Protection Advisor 6.1.x, EMC Data Protection Advisor 6.2, EMC Data Protection Advisor 6.2.1, EMC Data Protection Advisor 6.2.2, EMC Data Protection Advisor 6.2.3 prior to patch 446 has a pa…
|
CWE-22
Path Traversal
|
CVE-2016-8211
|
2024-11-21 11:58 |
2017-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264510
|
7.5 |
HIGH
Network
|
ruby-lang debian
|
openssl debian_linux
|
The openssl gem for Ruby uses the same initialization vector (IV) in GCM Mode (aes-*-gcm) when the IV is set before the key, which makes it easier for context-dependent attackers to bypass the encryp…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2016-7798
|
2024-11-21 11:58 |
2017-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|