|
268751
|
9.8 |
CRITICAL
Network
|
netgear nuuo
|
readynas_surveillance nvrmini_2 nvrsolo
|
__debugging_center_utils___.php in NUUO NVRmini 2 1.7.5 through 3.0.0, NUUO NVRsolo 1.7.5 through 3.0.0, and NETGEAR ReadyNAS Surveillance 1.1.1 through 1.4.1 allows remote attackers to execute arbit…
|
CWE-20
Improper Input Validation
|
CVE-2016-5674
|
2024-11-21 11:54 |
2016-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268752
|
9.8 |
CRITICAL
Network
|
vmware
|
vrealize_automation
|
VMware vRealize Automation 7.0.x before 7.1 allows remote attackers to execute arbitrary code via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2016-5336
|
2024-11-21 11:54 |
2016-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268753
|
7.8 |
HIGH
Local
|
vmware
|
identity_manager vrealize_automation
|
VMware Identity Manager 2.x before 2.7 and vRealize Automation 7.0.x before 7.1 allow local users to obtain root access via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2016-5335
|
2024-11-21 11:54 |
2016-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268754
|
9.8 |
CRITICAL
Network
|
vmware
|
photon_os
|
VMware Photos OS OVA 1.0 before 2016-08-14 has a default SSH public key in an authorized_keys file, which allows remote attackers to obtain SSH access by leveraging knowledge of the private key.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2016-5333
|
2024-11-21 11:54 |
2016-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268755
|
5.3 |
MEDIUM
Network
|
vmware
|
vrealize_log_insight
|
Directory traversal vulnerability in VMware vRealize Log Insight 2.x and 3.x before 3.6.0 allows remote attackers to read arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2016-5332
|
2024-11-21 11:54 |
2016-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268756
|
9.8 |
CRITICAL
Network
|
google linux
|
android linux_kernel
|
Multiple integer overflows in the MDSS driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allow attackers to cause…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2016-5344
|
2024-11-21 11:54 |
2016-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268757
|
7.8 |
HIGH
Local
|
google linux
|
android linux_kernel
|
Heap-based buffer overflow in the wcnss_wlan_write function in drivers/net/wireless/wcnss/wcnss_wlan.c in the wcnss_wlan device driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center …
|
CWE-787
Out-of-bounds Write
|
CVE-2016-5342
|
2024-11-21 11:54 |
2016-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268758
|
6.1 |
MEDIUM
Network
|
zimbra
|
zimbra_collaboration_server
|
Multiple cross-site scripting (XSS) vulnerabilities in Zimbra Collaboration before 8.7.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2016-5721
|
2024-11-21 11:54 |
2016-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268759
|
7.8 |
HIGH
Local
|
readydesk
|
readydesk
|
ReadyDesk 9.1 allows local users to determine cleartext SQL Server credentials by reading the SQL_Config.aspx file and decrypting data with a hardcoded key in the ReadyDesk.dll file.
|
NVD-CWE-Other
|
CVE-2016-5683
|
2024-11-21 11:54 |
2016-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268760
|
4.3 |
MEDIUM
Network
|
accellion
|
kiteworks_appliance
|
Directory traversal vulnerability on Accellion Kiteworks appliances before kw2016.03.00 allows remote attackers to read files via a crafted URI.
|
CWE-22
Path Traversal
|
CVE-2016-5664
|
2024-11-21 11:54 |
2016-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|