|
267241
|
6.1 |
MEDIUM
Network
|
f5
|
websafe_alert_server
|
A Cross Site Scripting (XSS) vulnerability in versions of F5 WebSafe Dashboard 3.9.x and earlier, aka F5 WebSafe Alert Server, allows an unauthenticated user to inject HTML via a crafted alert.
|
CWE-79
Cross-site Scripting
|
CVE-2016-5235
|
2024-11-21 11:53 |
2019-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267242
|
6.1 |
MEDIUM
Network
|
apache
|
http_server
|
Possible CRLF injection allowing HTTP response splitting attacks for sites which use mod_userdir. This issue was mitigated by changes made in 2.4.25 and 2.2.32 which prohibit CR or LF injection into …
|
CWE-93
CRLF Injection
|
CVE-2016-4975
|
2024-11-21 11:53 |
2018-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267243
|
9.8 |
CRITICAL
Network
|
google
|
chrome_os
|
Chrome OS before 53.0.2785.144 allows remote attackers to execute arbitrary commands at boot.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-5179
|
2024-11-21 11:53 |
2018-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267244
|
9.8 |
CRITICAL
Network
|
apache
|
ws-xmlrpc
|
The Apache XML-RPC (aka ws-xmlrpc) library 3.1.3, as used in Apache Archiva, allows remote attackers to execute arbitrary code via a crafted serialized Java object in an <ex:serializable> element.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2016-5003
|
2024-11-21 11:53 |
2017-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267245
|
7.8 |
HIGH
Local
|
apache
|
xml-rpc
|
XML external entity (XXE) vulnerability in the Apache XML-RPC (aka ws-xmlrpc) library 3.1.3, as used in Apache Archiva, allows remote attackers to conduct server-side request forgery (SSRF) attacks v…
|
CWE-611
XXE
|
CVE-2016-5002
|
2024-11-21 11:53 |
2017-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267246
|
7.5 |
HIGH
Network
|
juniper
|
junose
|
Receipt of a specifically malformed IPv6 packet processed by the router may trigger a line card reset: processor exception 0x68616c74 (halt) in task: scheduler. The line card will reboot and recover …
|
CWE-19
Data Processing Errors
|
CVE-2016-4925
|
2024-11-21 11:53 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267247
|
5.5 |
MEDIUM
Local
|
juniper
|
junos
|
An incorrect permissions vulnerability in Juniper Networks Junos OS on vMX may allow local unprivileged users on a host system read access to vMX or vPFE images and obtain sensitive information conta…
|
CWE-275
Permission Issues
|
CVE-2016-4924
|
2024-11-21 11:53 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267248
|
6.1 |
MEDIUM
Network
|
juniper
|
junos
|
Insufficient cross site scripting protection in J-Web component in Juniper Networks Junos OS may potentially allow a remote unauthenticated user to inject web script or HTML and steal sensitive data …
|
CWE-79
Cross-site Scripting
|
CVE-2016-4923
|
2024-11-21 11:53 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267249
|
7.8 |
HIGH
Local
|
juniper
|
junos
|
Certain combinations of Junos OS CLI commands and arguments have been found to be exploitable in a way that can allow unauthorized access to the operating system. This may allow any user with permiss…
|
CWE-77
Command Injection
|
CVE-2016-4922
|
2024-11-21 11:53 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267250
|
7.5 |
HIGH
Network
|
juniper
|
junos
|
By flooding a Juniper Networks router running Junos OS with specially crafted IPv6 traffic, all available resources can be consumed, leading to the inability to store next hop information for legitim…
|
CWE-399
Resource Management Errors
|
CVE-2016-4921
|
2024-11-21 11:53 |
2017-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|