|
266741
|
7.8 |
HIGH
Local
|
nvidia
|
geforce_experience
|
For the NVIDIA Quadro, NVS, and GeForce products, GFE GameStream and NVTray Plugin unquoted service path vulnerabilities are examples of the unquoted service path vulnerability in Windows. A successf…
|
NVD-CWE-Other
|
CVE-2016-5852
|
2024-11-21 11:55 |
2016-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266742
|
5.4 |
MEDIUM
Network
|
ibm
|
financial_transaction_manager
|
Cross-site scripting (XSS) vulnerability in the Web UI in IBM Financial Transaction Manager (FTM) for ACH Services 3.0.0.x before fp0015 and 3.0.1.0 before iFix0002 allows remote authenticated users …
|
CWE-79
Cross-site Scripting
|
CVE-2016-5920
|
2024-11-21 11:55 |
2016-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266743
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance
|
A vulnerability in local FTP to the Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to cause a partial denial of service (DoS) condition when the FTP application …
|
CWE-20
Improper Input Validation
|
CVE-2016-6358
|
2024-11-21 11:55 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266744
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance
|
A vulnerability in the configured security policies, including drop email filtering, in Cisco AsyncOS for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypas…
|
CWE-388
7PK - Errors
|
CVE-2016-6357
|
2024-11-21 11:55 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266745
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance web_security_appliance
|
A vulnerability in Advanced Malware Protection (AMP) for Cisco Email Security Appliances (ESA) and Web Security Appliances (WSA) could allow an unauthenticated, remote attacker to cause a partial den…
|
CWE-20
Improper Input Validation
|
CVE-2016-6360
|
2024-11-21 11:55 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266746
|
7.5 |
HIGH
Network
|
cisco
|
email_security_appliance
|
A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email Security Appliances could allow an unauthenticated, remote attacker to cause an affected device to sto…
|
CWE-20
Improper Input Validation
|
CVE-2016-6356
|
2024-11-21 11:55 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266747
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
drivers/infiniband/ulp/srpt/ib_srpt.c in the Linux kernel before 4.5.1 allows local users to cause a denial of service (NULL pointer dereference and system crash) by using an ABORT_TASK command to ab…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-6327
|
2024-11-21 11:55 |
2016-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266748
|
7.8 |
HIGH
Local
|
apache
|
tomcat
|
The Tomcat package on Red Hat Enterprise Linux (RHEL) 5 through 7, JBoss Web Server 3.0, and JBoss EWS 2 uses weak permissions for (1) /etc/sysconfig/tomcat and (2) /etc/tomcat/tomcat.conf, which all…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6325
|
2024-11-21 11:55 |
2016-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266749
|
7.5 |
HIGH
Network
|
gnu opensuse fedoraproject
|
glibc opensuse fedora
|
The makecontext function in the GNU C Library (aka glibc or libc6) before 2.25 creates execution contexts incompatible with the unwinder on ARM EABI (32-bit) platforms, which might allow context-depe…
|
CWE-284
Improper Access Control
|
CVE-2016-6323
|
2024-11-21 11:55 |
2016-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266750
|
7.5 |
HIGH
Network
|
citrix
|
license_server license_server_vpx
|
The lmadmin component in Flexera FlexNet Publisher (aka Flex License Manager) before 2015 SP5 and 2016 before R1 SP1, as used by Citrix License Server for Windows before 11.14.0.1 and Citrix License …
|
NVD-CWE-noinfo
|
CVE-2016-6273
|
2024-11-21 11:55 |
2016-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|