|
265921
|
4.0 |
MEDIUM
Local
|
docker2aci_project
|
docker2aci
|
docker2aci <= 0.12.3 has an infinite loop when handling local images with cyclic dependency chain.
|
CWE-20 CWE-399
Improper Input Validation Resource Management Errors
|
CVE-2016-8579
|
2024-11-21 11:59 |
2016-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265922
|
9.8 |
CRITICAL
Network
|
redislabs
|
redis
|
A buffer overflow in Redis 3.2.x prior to 3.2.4 causes arbitrary code execution when a crafted command is sent. An out of bounds write vulnerability exists in the handling of the client-output-buffer…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-8339
|
2024-11-21 11:59 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265923
|
7.8 |
HIGH
Local
|
uclouvain
|
openjpeg
|
A buffer overflow in OpenJPEG 2.1.1 causes arbitrary code execution when parsing a crafted image. An exploitable code execution vulnerability exists in the jpeg2000 image file format parser as implem…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-8332
|
2024-11-21 11:59 |
2016-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265924
|
6.1 |
MEDIUM
Network
|
yandex
|
yandex_browser
|
XSS in Yandex Browser Translator in Yandex browser for desktop for versions from 15.12 to 16.2 could be used by remote attacker for evaluation arbitrary javascript code.
|
CWE-79
Cross-site Scripting
|
CVE-2016-8506
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265925
|
6.1 |
MEDIUM
Network
|
yandex
|
yandex.browser
|
XSS in Yandex Browser BookReader in Yandex browser for desktop for versions before 16.6. could be used by remote attacker for evaluation arbitrary javascript code.
|
CWE-79
Cross-site Scripting
|
CVE-2016-8505
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265926
|
4.3 |
MEDIUM
Network
|
yandex
|
yandex_browser
|
CSRF of synchronization form in Yandex Browser for desktop before version 16.6 could be used by remote attacker to steal saved data in browser profile.
|
CWE-352
Origin Validation Error
|
CVE-2016-8504
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265927
|
7.3 |
HIGH
Network
|
yandex
|
yandex_browser
|
Yandex Protect Anti-phishing warning in Yandex Browser for desktop from version 16.7 to 16.9 could be used by remote attacker for brute-forcing passwords from important web-resource with special Java…
|
CWE-254
7PK - Security Features
|
CVE-2016-8503
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265928
|
7.3 |
HIGH
Network
|
yandex
|
yandex_browser
|
Yandex Protect Anti-phishing warning in Yandex Browser for desktop from version 15.12.0 to 16.2 could be used by remote attacker for brute-forcing passwords from important web-resource with special J…
|
CWE-254
7PK - Security Features
|
CVE-2016-8502
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265929
|
5.3 |
MEDIUM
Network
|
yandex
|
yandex_browser
|
Security WiFi bypass in Yandex Browser from version 15.10 to 15.12 allows remote attacker to sniff traffic in open or WEP-protected wi-fi networks despite of special security mechanism is enabled.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-8501
|
2024-11-21 11:59 |
2016-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265930
|
7.6 |
HIGH
Network
|
oracle
|
peoplesoft_enterprise_peopletools
|
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.54 and 8.55 allows remote authenticated users to affect confidentiality and integrity via …
|
CWE-284
Improper Access Control
|
CVE-2016-8296
|
2024-11-21 11:59 |
2016-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|