|
265921
|
9.8 |
CRITICAL
Network
|
vbulletin
|
vbulletin
|
SQL injection vulnerability in forumrunner/includes/moderation.php in vBulletin before 4.2.2 Patch Level 5 and 4.2.3 before Patch Level 1 allows remote attackers to execute arbitrary SQL commands via…
|
CWE-89
SQL Injection
|
CVE-2016-6195
|
2024-11-21 11:55 |
2016-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265922
|
7.8 |
HIGH
Local
|
cisco
|
anyconnect_secure_mobility_client
|
Cisco AnyConnect Secure Mobility Client before 4.2.05015 and 4.3.x before 4.3.02039 mishandles pathnames, which allows local users to gain privileges via a crafted INF file, aka Bug ID CSCuz92464.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6369
|
2024-11-21 11:55 |
2016-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265923
|
5.9 |
MEDIUM
Network
|
kaspersky
|
safe_browser
|
Kaspersky Safe Browser iOS before 1.7.0 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to obtain sensitive information via a crafted certificate.
|
CWE-200
Information Exposure
|
CVE-2016-6231
|
2024-11-21 11:55 |
2016-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265924
|
3.3 |
LOW
Local
|
moxa
|
oncell_g3001_firmware oncell_g3100v2_firmware
|
Moxa OnCell G3100V2 devices before 2.8 and G3111, G3151, G3211, and G3251 devices before 1.7 use cleartext password storage, which makes it easier for local users to obtain sensitive information by r…
|
CWE-200
Information Exposure
|
CVE-2016-5812
|
2024-11-21 11:55 |
2016-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265925
|
9.8 |
CRITICAL
Network
|
moxa
|
oncell_g3001_firmware oncell_g3100v2_firmware
|
Moxa OnCell G3100V2 devices before 2.8 and G3111, G3151, G3211, and G3251 devices before 1.7 do not properly restrict authentication attempts, which makes it easier for remote attackers to obtain acc…
|
CWE-285
Improper Authorization
|
CVE-2016-5799
|
2024-11-21 11:55 |
2016-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265926
|
6.1 |
MEDIUM
Network
|
cisco
|
firepower_management_center
|
Cross-site scripting (XSS) vulnerability in Cisco Firepower Management Center 4.10.3, 5.2.0, 5.3.0, 5.3.0.2, 5.3.1, and 5.4.0 allows remote attackers to inject arbitrary web script or HTML via unspec…
|
CWE-79
Cross-site Scripting
|
CVE-2016-6365
|
2024-11-21 11:55 |
2016-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265927
|
7.5 |
HIGH
Network
|
cisco
|
unified_communications_manager
|
The User Data Services (UDS) API implementation in Cisco Unified Communications Manager 11.5 allows remote attackers to bypass intended access restrictions and obtain sensitive information via unspec…
|
CWE-200
Information Exposure
|
CVE-2016-6364
|
2024-11-21 11:55 |
2016-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265928
|
7.5 |
HIGH
Network
|
cisco
|
ios_xr
|
Memory leak in Cisco IOS XR 5.1.x through 5.1.3, 5.2.x through 5.2.5, and 5.3.x through 5.3.2 on ASR 9001 devices allows remote attackers to cause a denial of service (control-plane protocol outage) …
|
CWE-399
Resource Management Errors
|
CVE-2016-6355
|
2024-11-21 11:55 |
2016-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265929
|
6.5 |
MEDIUM
Adjacent
|
cisco
|
aironet_access_point_software
|
The rate-limit feature in the 802.11 protocol implementation on Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.121.0 and 8.3.x before 8.3.102.0 allows remote attackers to cause a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-6363
|
2024-11-21 11:55 |
2016-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265930
|
7.8 |
HIGH
Local
|
cisco
|
aironet_access_point_software
|
Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.110.0, 8.2.12x before 8.2.121.0, and 8.3.x before 8.3.102.0 allow local users to gain privileges via crafted CLI parameters, aka Bu…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6362
|
2024-11-21 11:55 |
2016-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|