|
264861
|
4.4 |
MEDIUM
Local
|
qemu
|
qemu
|
The (1) mptsas_config_manufacturing_1 and (2) mptsas_config_ioc_0 functions in hw/scsi/mptconfig.c in QEMU (aka Quick Emulator) allow local guest OS administrators to cause a denial of service (QEMU …
|
NVD-CWE-noinfo
|
CVE-2016-7157
|
2024-11-21 11:57 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264862
|
4.4 |
MEDIUM
Local
|
qemu debian
|
qemu debian_linux
|
The pvscsi_convert_sglist function in hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by lev…
|
CWE-704
Incorrect Type Conversion or Cast
|
CVE-2016-7156
|
2024-11-21 11:57 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264863
|
4.4 |
MEDIUM
Local
|
qemu debian
|
qemu debian_linux
|
hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out-of-bounds access or infinite loop, and QEMU process crash) via a crafted page …
|
NVD-CWE-noinfo
|
CVE-2016-7155
|
2024-11-21 11:57 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264864
|
6.0 |
MEDIUM
Local
|
qemu debian
|
qemu debian_linux
|
Directory traversal vulnerability in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to access host files outside the export path via a .. (dot dot) in an unspecified s…
|
CWE-22
Path Traversal
|
CVE-2016-7116
|
2024-11-21 11:57 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264865
|
4.4 |
MEDIUM
Local
|
qemu debian redhat
|
qemu debian_linux virtualization openstack
|
Integer overflow in the net_tx_pkt_init function in hw/net/net_tx_pkt.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (QEMU process crash) via the max…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-6888
|
2024-11-21 11:57 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264866
|
5.6 |
MEDIUM
Network
|
netapp
|
netapp_plug-in
|
NetApp Plug-in for Symantec NetBackup prior to version 2.0.1 makes use of a non-unique server certificate, making it vulnerable to impersonation.
|
CWE-295
Improper Certificate Validation
|
CVE-2016-7171
|
2024-11-21 11:57 |
2016-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264867
|
6.4 |
MEDIUM
Local
|
siemens
|
simatic_wincc simatic_wincc_runtime simatic_wincc_\(tia_portal\) simit simatic_pcs7 simatic_step_7_\(tia_portal\) simatic_pcs_7 sinema_remote_connect simatic_step_7 simatic…
|
A vulnerability has been identified in Primary Setup Tool (PST) (All versions < V4.2 HF1), SIMATIC IT Production Suite (All versions < V7.0 SP1 HFX 2), SIMATIC NET PC-Software (All versions < V14), S…
|
CWE-254 CWE-284
7PK - Security Features Improper Access Control
|
CVE-2016-7165
|
2024-11-21 11:57 |
2016-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264868
|
6.1 |
MEDIUM
Network
|
moinmo
|
moinmoin
|
MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation" approach, related to a "Cross Site Scripting (XSS)" issue affecting the action=AttachFile…
|
CWE-79
Cross-site Scripting
|
CVE-2016-7148
|
2024-11-21 11:57 |
2016-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264869
|
6.1 |
MEDIUM
Network
|
moinmo
|
moinmoin
|
MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation or crafted URL" approach, related to a "Cross Site Scripting (XSS)" issue affecting the ac…
|
CWE-79
Cross-site Scripting
|
CVE-2016-7146
|
2024-11-21 11:57 |
2016-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264870
|
8.8 |
HIGH
Network
|
microsoft
|
sql_server
|
Microsoft SQL Server 2012 SP2 and 2012 SP3 does not properly perform a cast of an unspecified pointer, which allows remote authenticated users to gain privileges via unknown vectors, aka "SQL RDBMS E…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-7254
|
2024-11-21 11:57 |
2016-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|