|
265161
|
7.3 |
HIGH
Local
|
mcafee
|
anti-malware_scan_engine
|
Software Integrity Attacks vulnerability in Intel Security Anti-Virus Engine (AVE) 5200 through 5800 allows local users to bypass local security protection via a crafted input file.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8031
|
2024-11-21 11:58 |
2017-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265162
|
5.5 |
MEDIUM
Local
|
f5
|
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<…
|
In some cases the MCPD binary cache in F5 BIG-IP devices may allow a user with Advanced Shell access, or privileges to generate a qkview, to temporarily obtain normally unrecoverable information.
|
CWE-200
Information Exposure
|
CVE-2016-7474
|
2024-11-21 11:58 |
2017-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265163
|
7.5 |
HIGH
Network
|
clusterlabs suse opensuse_project opensuse redhat
|
pacemaker linux_enterprise_software_development_kit leap linux_enterprise_high_availability enterprise_linux_resilient_storage enterprise_linux_high_availability
|
Pacemaker before 1.1.15, when using pacemaker remote, might allow remote attackers to cause a denial of service (node disconnection) via an unauthenticated connection.
|
CWE-254
7PK - Security Features
|
CVE-2016-7797
|
2024-11-21 11:58 |
2017-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265164
|
5.9 |
MEDIUM
Network
|
f5
|
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<…
|
An unauthenticated remote attacker may be able to disrupt services on F5 BIG-IP 11.4.1 - 11.5.4 devices with maliciously crafted network traffic. This vulnerability affects virtual servers associated…
|
CWE-284
Improper Access Control
|
CVE-2016-7468
|
2024-11-21 11:58 |
2017-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265165
|
9.8 |
CRITICAL
Network
|
alienvault
|
ossim unified_security_management
|
The logcheck function in session.inc in AlienVault OSSIM before 5.3.1, when an action has been created, and USM before 5.3.1 allows remote attackers to bypass authentication and consequently obtain s…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-7955
|
2024-11-21 11:58 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265166
|
10.0 |
CRITICAL
Network
|
mcafee
|
epolicy_orchestrator
|
SQL injection vulnerability in core services in Intel Security McAfee ePolicy Orchestrator (ePO) 5.3.2 and earlier and 5.1.3 and earlier allows attackers to alter a SQL query, which can result in dis…
|
CWE-89
SQL Injection
|
CVE-2016-8027
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265167
|
7.8 |
HIGH
Local
|
mcafee
|
security_scan_plus
|
Arbitrary command execution vulnerability in Intel Security McAfee Security Scan Plus (SSP) 3.11.469 and earlier allows authenticated users to gain elevated privileges via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8026
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265168
|
6.2 |
MEDIUM
Network
|
mcafee
|
virusscan_enterprise
|
SQL injection vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote authenticated users to obtain product information via a crafted HTTP request paramete…
|
CWE-89
SQL Injection
|
CVE-2016-8025
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265169
|
8.1 |
HIGH
Network
|
mcafee
|
virusscan_enterprise
|
Improper neutralization of CRLF sequences in HTTP headers vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote unauthenticated attacker to obtain sensit…
|
CWE-113
HTTP Response Splitting
|
CVE-2016-8024
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265170
|
8.1 |
HIGH
Network
|
mcafee
|
virusscan_enterprise
|
Authentication bypass by assumed-immutable data vulnerability in Intel Security VirusScan Enterprise Linux (VSEL) 2.0.3 (and earlier) allows remote unauthenticated attacker to bypass server authentic…
|
CWE-287
Improper Authentication
|
CVE-2016-8023
|
2024-11-21 11:58 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|