|
264461
|
8.1 |
HIGH
Network
|
oracle
|
flexcube_universal_banking
|
Vulnerability in the Oracle FLEXCUBE Universal Banking component of Oracle Financial Services Applications (subcomponent: Core). Supported versions that are affected are 11.3.0, 11.4.0, 12.0.1, 12.0.…
|
CWE-284
Improper Access Control
|
CVE-2016-8297
|
2024-11-21 11:59 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264462
|
6.1 |
MEDIUM
Network
|
oracle
|
flexcube_private_banking
|
Vulnerability in the Oracle FLEXCUBE Private Banking component of Oracle Financial Services Applications (subcomponent: Product / Instrument Search). Supported versions that are affected are 2.0.1, 2…
|
CWE-284
Improper Access Control
|
CVE-2016-8282
|
2024-11-21 11:59 |
2017-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264463
|
5.3 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 2.x and 3.x, the capability to view course notes is checked in the wrong context.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8644
|
2024-11-21 11:59 |
2017-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264464
|
4.3 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 2.x and 3.x, non-admin site managers may accidentally edit admins via web services.
|
CWE-284
Improper Access Control
|
CVE-2016-8643
|
2024-11-21 11:59 |
2017-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264465
|
5.3 |
MEDIUM
Network
|
moodle
|
moodle
|
In Moodle 2.x and 3.x, the question engine allows access to files that should not be available.
|
CWE-284
Improper Access Control
|
CVE-2016-8642
|
2024-11-21 11:59 |
2017-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264466
|
5.9 |
MEDIUM
Network
|
matrixssl
|
matrixssl
|
The pstm_exptmod function in MatrixSSL 3.8.6 and earlier does not properly perform modular exponentiation, which might allow remote attackers to predict the secret key via unspecified vectors. NOTE: …
|
CWE-200
Information Exposure
|
CVE-2016-8671
|
2024-11-21 11:59 |
2017-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264467
|
5.5 |
MEDIUM
Local
|
google
|
android
|
An elevation of privilege vulnerability in the bootloader could enable a local attacker to execute arbitrary modem commands on the device. This issue is rated as High because it is a local permanent …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8467
|
2024-11-21 11:59 |
2017-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264468
|
9.8 |
CRITICAL
Network
|
gnu fedoraproject
|
guile fedora
|
The REPL server (--listen) in GNU Guile 2.0.12 allows an attacker to execute arbitrary code via an HTTP inter-protocol attack.
|
CWE-284
Improper Access Control
|
CVE-2016-8606
|
2024-11-21 11:59 |
2017-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264469
|
5.3 |
MEDIUM
Network
|
fedoraproject gnu
|
fedora guile
|
The mkdir procedure of GNU Guile temporarily changed the process' umask to zero. During that time window, in a multithreaded application, other threads could end up creating files with insecure permi…
|
CWE-275
Permission Issues
|
CVE-2016-8605
|
2024-11-21 11:59 |
2017-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264470
|
7.0 |
HIGH
Local
|
lenovo
|
xclarity_administrator
|
Privilege Escalation in Lenovo XClarity Administrator earlier than 1.2.0, if LXCA is used to manage rack switches or chassis with embedded input/output modules (IOMs), certain log files viewable by a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8221
|
2024-11-21 11:59 |
2017-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|