|
268151
|
7.5 |
HIGH
Network
|
artifex
|
mujs
|
Artifex Software, Inc. MuJS before a0ceaf5050faf419401fe1b83acfa950ec8a8a89 allows context-dependent attackers to obtain sensitive information by using the "crafted JavaScript" approach, related to a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-9136
|
2024-11-21 12:00 |
2016-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268152
|
7.5 |
HIGH
Network
|
exponentcms
|
exponent_cms
|
Exponent CMS 2.3.9 suffers from a SQL injection vulnerability in "/framework/modules/help/controllers/helpController.php" affecting the version parameter. Impact is Information Disclosure.
|
CWE-200 CWE-89
Information Exposure SQL Injection
|
CVE-2016-9135
|
2024-11-21 12:00 |
2016-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268153
|
7.5 |
HIGH
Network
|
exponentcms
|
exponent_cms
|
Exponent CMS 2.3.9 suffers from a SQL injection vulnerability in "/expPaginator.php" affecting the order parameter. Impact is Information Disclosure.
|
CWE-200 CWE-89
Information Exposure SQL Injection
|
CVE-2016-9134
|
2024-11-21 12:00 |
2016-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268154
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
GitLab versions 8.9.x and above contain a critical security flaw in the "import/export project" feature of GitLab. Added in GitLab 8.9, this feature allows a user to export and then re-import their p…
|
CWE-200
Information Exposure
|
CVE-2016-9086
|
2024-11-21 12:00 |
2016-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268155
|
7.5 |
HIGH
Network
|
isc netapp redhat debian
|
bind data_ontap_edge steelstore_cloud_integrated_storage solidfire enterprise_linux_desktop enterprise_linux_server enterprise_linux_server_aus enterprise_linux_workstation en…
|
named in ISC BIND 9.x before 9.9.9-P4, 9.10.x before 9.10.4-P4, and 9.11.x before 9.11.0-P1 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a DNAME record…
|
CWE-617
Reachable Assertion
|
CVE-2016-8864
|
2024-11-21 12:00 |
2016-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268156
|
6.5 |
MEDIUM
Network
|
foxitsoftware
|
reader phantompdf
|
The thumbnail shell extension plugin (FoxitThumbnailHndlr_x86.dll) in Foxit Reader and PhantomPDF before 8.1 on Windows allows remote attackers to cause a denial of service (out-of-bounds write and a…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-8879
|
2024-11-21 12:00 |
2016-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268157
|
8.8 |
HIGH
Network
|
foxitsoftware
|
reader phantompdf
|
Out-of-Bounds read vulnerability in Foxit Reader and PhantomPDF before 8.1 on Windows, when the gflags app is enabled, allows remote attackers to execute arbitrary code via a crafted BMP image embedd…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-8878
|
2024-11-21 12:00 |
2016-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268158
|
8.8 |
HIGH
Network
|
foxitsoftware
|
reader phantompdf
|
Heap buffer overflow (Out-of-Bounds write) vulnerability in Foxit Reader and PhantomPDF before 8.1 on Windows allows remote attackers to execute arbitrary code via a crafted JPEG2000 image embedded i…
|
CWE-787
Out-of-bounds Write
|
CVE-2016-8877
|
2024-11-21 12:00 |
2016-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268159
|
7.5 |
HIGH
Network
|
foxitsoftware
|
reader phantompdf
|
Out-of-Bounds read vulnerability in Foxit Reader and PhantomPDF before 8.1 on Windows, when the gflags app is enabled, allows remote attackers to execute arbitrary code via a crafted TIFF image embed…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-8876
|
2024-11-21 12:00 |
2016-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268160
|
5.3 |
MEDIUM
Network
|
foxitsoftware
|
reader phantompdf
|
The ConvertToPDF plugin in Foxit Reader and PhantomPDF before 8.1 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application …
|
CWE-125
Out-of-bounds Read
|
CVE-2016-8875
|
2024-11-21 12:00 |
2016-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|