|
265421
|
7.5 |
HIGH
Network
|
cisco
|
firesight_system_software firepower_management_center
|
A vulnerability in the malicious file detection and blocking features of Cisco Firepower Management Center and Cisco FireSIGHT System Software could allow an unauthenticated, remote attacker to bypas…
|
CWE-20
Improper Input Validation
|
CVE-2016-9193
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265422
|
7.8 |
HIGH
Local
|
cisco
|
anyconnect_secure_mobility_client
|
A vulnerability in Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to install and execute an arbitrary executable file with privileges equivalent to t…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-9192
|
2024-11-21 12:00 |
2016-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265423
|
6.0 |
MEDIUM
Local
|
qemu opensuse debian
|
qemu leap debian_linux
|
Memory leak in the v9fs_write function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption) by leveraging failure to fre…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2016-9106
|
2024-11-21 12:00 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265424
|
6.0 |
MEDIUM
Local
|
qemu opensuse debian
|
qemu leap debian_linux
|
Memory leak in the v9fs_link function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption) via vectors involving a refer…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2016-9105
|
2024-11-21 12:00 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265425
|
4.4 |
MEDIUM
Local
|
qemu debian opensuse
|
qemu debian_linux leap
|
Multiple integer overflows in the (1) v9fs_xattr_read and (2) v9fs_xattr_write functions in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allow local guest OS administrators to cause a denial of service …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-9104
|
2024-11-21 12:00 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265426
|
6.0 |
MEDIUM
Local
|
qemu debian
|
qemu debian_linux
|
The v9fs_xattrcreate function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to obtain sensitive host heap memory information by reading xattribute values before wr…
|
CWE-200
Information Exposure
|
CVE-2016-9103
|
2024-11-21 12:00 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265427
|
6.0 |
MEDIUM
Local
|
qemu debian
|
qemu debian_linux
|
Memory leak in the v9fs_xattrcreate function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash)…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2016-9102
|
2024-11-21 12:00 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265428
|
6.0 |
MEDIUM
Local
|
qemu opensuse debian
|
qemu leap debian_linux
|
Memory leak in hw/net/eepro100.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash) by repeatedly unplugging an…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2016-9101
|
2024-11-21 12:00 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265429
|
8.1 |
HIGH
Network
|
fedoraproject canonical djangoproject
|
fedora ubuntu_linux django
|
Django before 1.8.x before 1.8.16, 1.9.x before 1.9.11, and 1.10.x before 1.10.3, when settings.DEBUG is True, allow remote attackers to conduct DNS rebinding attacks by leveraging failure to validat…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-9014
|
2024-11-21 12:00 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265430
|
9.8 |
CRITICAL
Network
|
djangoproject canonical fedoraproject
|
django ubuntu_linux fedora
|
Django 1.8.x before 1.8.16, 1.9.x before 1.9.11, and 1.10.x before 1.10.3 use a hardcoded password for a temporary database user created when running tests with an Oracle database, which makes it eas…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2016-9013
|
2024-11-21 12:00 |
2016-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|