|
267131
|
6.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
arch/powerpc/kvm/book3s_hv_rmhandlers.S in the Linux kernel through 4.7 on PowerPC platforms, when CONFIG_KVM_BOOK3S_64_HV is enabled, allows guest OS users to cause a denial of service (host OS infi…
|
CWE-399
Resource Management Errors
|
CVE-2016-5412
|
2024-11-21 11:54 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267132
|
4.3 |
MEDIUM
Physics
|
linux
|
linux_kernel
|
Memory leak in the airspy_probe function in drivers/media/usb/airspy/airspy.c in the airspy USB driver in the Linux kernel before 4.7 allows local users to cause a denial of service (memory consumpti…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-5400
|
2024-11-21 11:54 |
2016-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267133
|
6.5 |
MEDIUM
Network
|
redhat
|
openshift
|
The API server in Kubernetes, as used in Red Hat OpenShift Enterprise 3.2, in a multi tenant environment allows remote authenticated users with knowledge of other project names to obtain sensitive pr…
|
CWE-200
Information Exposure
|
CVE-2016-5392
|
2024-11-21 11:54 |
2016-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267134
|
8.8 |
HIGH
Network
|
crestron
|
dm-txrx-100-str_firmware
|
Multiple cross-site request forgery (CSRF) vulnerabilities on Crestron Electronics DM-TXRX-100-STR devices with firmware through 1.3039.00040 allow remote attackers to hijack the authentication of ar…
|
CWE-352
Origin Validation Error
|
CVE-2016-5671
|
2024-11-21 11:54 |
2016-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267135
|
9.8 |
CRITICAL
Network
|
crestron
|
dm-txrx-100-str_firmware
|
Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 have a hardcoded password of admin for the admin account, which makes it easier for remote attackers to obtain access vi…
|
CWE-255
Credentials Management
|
CVE-2016-5670
|
2024-11-21 11:54 |
2016-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267136
|
9.8 |
CRITICAL
Network
|
crestron
|
dm-txrx-100-str_firmware
|
Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 use a hardcoded 0xb9eed4d955a59eb3 X.509 certificate from an OpenSSL Test Certification Authority, which makes it easier…
|
NVD-CWE-Other
|
CVE-2016-5669
|
2024-11-21 11:54 |
2016-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267137
|
9.8 |
CRITICAL
Network
|
crestron
|
dm-txrx-100-str_firmware
|
Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 allow remote attackers to bypass authentication and change settings via a JSON API call.
|
NVD-CWE-Other
|
CVE-2016-5668
|
2024-11-21 11:54 |
2016-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267138
|
9.8 |
CRITICAL
Network
|
crestron
|
dm-txrx-100-str_firmware
|
Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 allow remote attackers to bypass authentication via a direct request to a page other than index.html.
|
NVD-CWE-Other
|
CVE-2016-5667
|
2024-11-21 11:54 |
2016-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267139
|
9.8 |
CRITICAL
Network
|
crestron
|
dm-txrx-100-str_firmware
|
Crestron Electronics DM-TXRX-100-STR devices with firmware before 1.3039.00040 rely on the client to perform authentication, which allows remote attackers to obtain access by setting the value of obj…
|
NVD-CWE-Other
|
CVE-2016-5666
|
2024-11-21 11:54 |
2016-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267140
|
9.8 |
CRITICAL
Network
|
crestron
|
airmedia_am-100_firmware
|
Directory traversal vulnerability in cgi-bin/rftest.cgi on Crestron AirMedia AM-100 devices with firmware before 1.4.0.13 allows remote attackers to execute arbitrary commands via a .. (dot dot) in t…
|
CWE-77
Command Injection
|
CVE-2016-5640
|
2024-11-21 11:54 |
2016-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|