|
264741
|
6.3 |
MEDIUM
Local
|
mcafee
|
host_intrusion_prevention_services
|
Authentication bypass vulnerability in McAfee Host Intrusion Prevention Services (HIPS) 8.0 Patch 7 and earlier allows authenticated users to manipulate the product's registry keys via specific condi…
|
CWE-284
Improper Access Control
|
CVE-2016-8007
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264742
|
6.5 |
MEDIUM
Network
|
mcafee
|
email_gateway
|
File extension filtering vulnerability in Intel Security McAfee Email Gateway (MEG) before 7.6.404h1128596 allows attackers to fail to identify the file name properly via scanning an email with a for…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8005
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264743
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
SQL injection vulnerability in framework/core/models/expConfig.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the apikey parameter.
|
CWE-89
SQL Injection
|
CVE-2016-7789
|
2024-11-21 11:58 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264744
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
SQL injection vulnerability in framework/modules/users/models/user.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter.
|
CWE-89
SQL Injection
|
CVE-2016-7788
|
2024-11-21 11:58 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264745
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
SQL injection vulnerability in the getSection function in framework/core/subsystems/expRouter.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the s…
|
CWE-89
SQL Injection
|
CVE-2016-7784
|
2024-11-21 11:58 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264746
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
SQL injection vulnerability in framework/core/models/expRecord.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the title parameter.
|
CWE-89
SQL Injection
|
CVE-2016-7783
|
2024-11-21 11:58 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264747
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
SQL injection vulnerability in framework/core/models/expConfig.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the src parameter.
|
CWE-89
SQL Injection
|
CVE-2016-7782
|
2024-11-21 11:58 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264748
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
SQL injection vulnerability in framework/modules/blog/controllers/blogController.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the author paramet…
|
CWE-89
SQL Injection
|
CVE-2016-7781
|
2024-11-21 11:58 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264749
|
9.8 |
CRITICAL
Network
|
exponentcms
|
exponent_cms
|
SQL injection vulnerability in cron/find_help.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the version parameter.
|
CWE-89
SQL Injection
|
CVE-2016-7780
|
2024-11-21 11:58 |
2017-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264750
|
7.5 |
HIGH
Network
|
opensuse fedoraproject libass_project
|
leap opensuse fedora libass
|
The check_allocations function in libass/ass_shaper.c in libass before 0.13.4 allows remote attackers to cause a denial of service (memory allocation failure) via unspecified vectors.
|
CWE-399
Resource Management Errors
|
CVE-2016-7972
|
2024-11-21 11:58 |
2017-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|