CVE Feed

    Dashboard / CVE

    4.8
    Medium

    CVE-2016-4318

    Last Modified: 20 Apr 2025

    Atlassian JIRA Server before 7.1.9 has XSS in project/ViewDefaultProjectRoleActors.jspa via a role name.

    Published: 10 Apr 2017
    8.8
    High

    CVE-2016-4319

    Last Modified: 20 Apr 2025

    Atlassian JIRA Server before 7.1.9 has CSRF in auditing/settings.

    Published: 10 Apr 2017
    6.1
    Medium

    CVE-2016-4334

    Last Modified: 20 Apr 2025

    Jive before 2016.3.1 has an open redirect from the external-link.jspa page.

    Published: 10 Apr 2017
    9.8
    Critical

    CVE-2016-5069

    Last Modified: 20 Apr 2025

    Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 use guessable session tokens, which are in the URL.

    Published: 10 Apr 2017
    9.8
    Critical

    CVE-2016-5070

    Last Modified: 20 Apr 2025

    Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 store passwords in cleartext.

    Published: 10 Apr 2017
    6.5
    Medium

    CVE-2016-5059

    Last Modified: 20 Apr 2025

    OSRAM SYLVANIA Osram Lightify Pro before 2016-07-26 allows attackers to obtain sensitive information by reading screenshots under /private/var/mobile/Containers/Data/Application.

    Published: 10 Apr 2017
    7.5
    High

    CVE-2016-5051

    Last Modified: 20 Apr 2025

    OSRAM SYLVANIA Osram Lightify Home before 2016-07-26 stores a PSK in cleartext under /private/var/mobile/Containers/Data/Application.

    Published: 10 Apr 2017
    7.5
    High

    CVE-2016-5052

    Last Modified: 20 Apr 2025

    OSRAM SYLVANIA Osram Lightify Home through 2016-07-26 does not use SSL pinning.

    Published: 10 Apr 2017
    9.8
    Critical

    CVE-2016-5053

    Last Modified: 20 Apr 2025

    OSRAM SYLVANIA Osram Lightify Home before 2016-07-26 allows remote attackers to execute arbitrary commands via TCP port 4000.

    Published: 10 Apr 2017
    7.5
    High

    CVE-2016-5054

    Last Modified: 20 Apr 2025

    OSRAM SYLVANIA Osram Lightify Home through 2016-07-26 allows Zigbee replay.

    Published: 10 Apr 2017
    6.1
    Medium

    CVE-2016-5055

    Last Modified: 20 Apr 2025

    OSRAM SYLVANIA Osram Lightify Pro before 2016-07-26 has XSS in the username field and Wireless Client Mode configuration page.

    Published: 10 Apr 2017
    7.5
    High

    CVE-2016-5056

    Last Modified: 20 Apr 2025

    OSRAM SYLVANIA Osram Lightify Pro before 2016-07-26 uses only 8 hex digits for a PSK.

    Published: 10 Apr 2017
    7.5
    High

    CVE-2016-5057

    Last Modified: 20 Apr 2025

    OSRAM SYLVANIA Osram Lightify Pro through 2016-07-26 does not use SSL pinning.

    Published: 10 Apr 2017
    9.8
    Critical

    CVE-2016-5065

    Last Modified: 20 Apr 2025

    Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Embedded_Ace_Set_Task.cgi command injection.

    Published: 10 Apr 2017
    9.8
    Critical

    CVE-2016-5066

    Last Modified: 20 Apr 2025

    Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 have weak passwords for admin, rauser, sconsole, and user.

    Published: 10 Apr 2017
    8.8
    High

    CVE-2016-5067

    Last Modified: 20 Apr 2025

    Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Hayes AT command injection.

    Published: 10 Apr 2017
    9.8
    Critical

    CVE-2016-5068

    Last Modified: 20 Apr 2025

    Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 do not require authentication for Embedded_Ace_Get_Task.cgi requests.

    Published: 10 Apr 2017
    6.1
    Medium

    CVE-2016-5073

    Last Modified: 20 Apr 2025

    CloudView NMS before 2.10a has XSS via SNMP.

    Published: 10 Apr 2017
    9.8
    Critical

    CVE-2016-5074

    Last Modified: 20 Apr 2025

    CloudView NMS before 2.10a has a format string issue exploitable over SNMP.

    Published: 10 Apr 2017
    6.1
    Medium

    CVE-2016-5075

    Last Modified: 20 Apr 2025

    CloudView NMS before 2.10a has XSS via a TELNET login.

    Published: 10 Apr 2017
    7.5
    High

    CVE-2016-5076

    Last Modified: 20 Apr 2025

    CloudView NMS before 2.10a allows remote attackers to obtain sensitive information via a direct request for admin/auto.def.

    Published: 10 Apr 2017
    6.1
    Medium

    CVE-2016-5077

    Last Modified: 20 Apr 2025

    Netikus EventSentry before 3.2.1.44 has XSS via SNMP.

    Published: 10 Apr 2017
    5.4
    Medium

    CVE-2016-5642

    Last Modified: 20 Apr 2025

    Opmantek NMIS before 8.5.12G has XSS via SNMP.

    Published: 10 Apr 2017
    7.5
    High

    CVE-2016-6534

    Last Modified: 20 Apr 2025

    Opmantek NMIS before 4.3.7c has command injection via man, finger, ping, trace, and nslookup in the tools.pl CGI script. Versions before 8.5.12G might be affected in non-default configurations.

    Published: 10 Apr 2017
    5.4
    Medium

    CVE-2016-4317

    Last Modified: 20 Apr 2025

    Atlassian Confluence Server before 5.9.11 has XSS on the viewmyprofile.action page.

    Published: 10 Apr 2017
    8.8
    High

    CVE-2016-5072

    Last Modified: 20 Apr 2025

    OXID eShop before 2016-06-13 allows remote attackers to execute arbitrary code via a GET or POST request to the oxuser class. Fixed versions are Enterprise Edition v5.1.12, Enterprise Edition v5.2.9, Professional Edition v4.8.12, Professional Edition v4.9.9, Community Edition v4.8.12, Community Edition v4.9.9.

    Published: 10 Apr 2017
    6.5
    Medium

    CVE-2017-2668

    Last Modified: 21 Nov 2024

    389-ds-base before versions 1.3.5.17 and 1.3.6.10 is vulnerable to an invalid pointer dereference in the way LDAP bind requests are handled. A remote unauthenticated attacker could use this flaw to make ns-slapd crash via a specially crafted LDAP bind request, resulting in denial of service.

    Published: 10 Apr 2017
    7.5
    High

    CVE-2017-5650

    Last Modified: 20 Apr 2025

    In Apache Tomcat 9.0.0.M1 to 9.0.0.M18 and 8.5.0 to 8.5.12, the handling of an HTTP/2 GOAWAY frame for a connection did not close streams associated with that connection that were currently waiting for a WINDOW_UPDATE before allowing the application to write more data. These waiting streams each consumed a thread. A malicious client could therefore construct a series of HTTP/2 requests that would consume all available processing threads.

    Published: 10 Apr 2017
    6.5
    Medium

    CVE-2017-8086

    Last Modified: 20 Apr 2025

    Memory leak in the v9fs_list_xattr function in hw/9pfs/9p-xattr.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (memory consumption) via vectors involving the orig_value variable.

    Published: 10 Apr 2017
    9.1
    Critical

    CVE-2017-5648

    Last Modified: 20 Apr 2025

    While investigating bug 60718, it was noticed that some calls to application listeners in Apache Tomcat 9.0.0.M1 to 9.0.0.M17, 8.5.0 to 8.5.11, 8.0.0.RC1 to 8.0.41, and 7.0.0 to 7.0.75 did not use the appropriate facade object. When running an untrusted application under a SecurityManager, it was therefore possible for that untrusted application to retain a reference to the request or response object and thereby access and/or modify information associated with another web application.

    Published: 10 Apr 2017
    7.5
    High

    CVE-2017-7618

    Last Modified: 20 Apr 2025

    crypto/ahash.c in the Linux kernel through 4.10.9 allows attackers to cause a denial of service (API operation calling its own callback, and infinite recursion) by triggering EBUSY on a full queue.

    Published: 10 Apr 2017
    3.7
    Low

    CVE-2017-2669

    Last Modified: 21 Nov 2024

    Dovecot before version 2.2.29 is vulnerable to a denial of service. When 'dict' passdb and userdb were used for user authentication, the username sent by the IMAP/POP3 client was sent through var_expand() to perform %variable expansion. Sending specially crafted %variable fields could result in excessive memory usage causing the process to crash (and restart), or excessive CPU usage causing all authentications to hang.

    Published: 10 Apr 2017
    7.5
    High

    CVE-2017-5647

    Last Modified: 20 Apr 2025

    A bug in the handling of the pipelined requests in Apache Tomcat 9.0.0.M1 to 9.0.0.M18, 8.5.0 to 8.5.12, 8.0.0.RC1 to 8.0.42, 7.0.0 to 7.0.76, and 6.0.0 to 6.0.52, when send file was used, results in the pipelined request being lost when send file processing of the previous request completed. This could result in responses appearing to be sent for the wrong request. For example, a user agent that sent requests A, B and C could see the correct response for request A, the response for request C for request B and no response for request C.

    Published: 10 Apr 2017
    9.8
    Critical

    CVE-2017-5651

    Last Modified: 20 Apr 2025

    In Apache Tomcat 9.0.0.M1 to 9.0.0.M18 and 8.5.0 to 8.5.12, the refactoring of the HTTP connectors introduced a regression in the send file processing. If the send file processing completed quickly, it was possible for the Processor to be added to the processor cache twice. This could result in the same Processor being used for multiple requests which in turn could lead to unexpected errors and/or response mix-up.

    Published: 10 Apr 2017
    7.3
    High

    CVE-2017-5662

    Last Modified: 20 Apr 2025

    In Apache Batik before 1.9, files lying on the filesystem of the server which uses batik can be revealed to arbitrary users who send maliciously formed SVG files. The file types that can be shown depend on the user context in which the exploitable application is running. If the user is root a full compromise of the server - including confidential or sensitive files - would be possible. XXE can also be used to attack the availability of the server via denial of service as the references within a xml document can trivially trigger an amplification attack.

    Published: 10 Apr 2017
    7.8
    High

    CVE-2017-7605

    Last Modified: 20 Apr 2025

    aacplusenc.c in HE-AAC+ Codec (aka libaacplus) 2.0.2 has an assertion failure, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file.

    Published: 9 Apr 2017
    7.8
    High

    CVE-2017-7603

    Last Modified: 20 Apr 2025

    au_channel.h in HE-AAC+ Codec (aka libaacplus) 2.0.2 has a signed integer overflow, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file.

    Published: 9 Apr 2017
    7.8
    High

    CVE-2017-7604

    Last Modified: 20 Apr 2025

    au_channel.h in HE-AAC+ Codec (aka libaacplus) 2.0.2 has a left-shift undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file.

    Published: 9 Apr 2017
    6.1
    Medium

    CVE-2017-7590

    Last Modified: 20 Apr 2025

    OpenIDM through 4.0.0 and 4.5.0 is vulnerable to persistent cross-site scripting (XSS) attacks within the Admin UI, as demonstrated by a crafted Managed Object Name.

    Published: 9 Apr 2017
    6.1
    Medium

    CVE-2017-7591

    Last Modified: 20 Apr 2025

    OpenIDM through 4.0.0 and 4.5.0 is vulnerable to reflected cross-site scripting (XSS) attacks within the Admin UI, as demonstrated by the _sortKeys parameter to the authzRoles script under managed/user/.

    Published: 9 Apr 2017
    6.5
    Medium

    CVE-2017-7589

    Last Modified: 20 Apr 2025

    In OpenIDM through 4.0.0 before 4.5.0, the info endpoint may leak sensitive information upon a request by the "anonymous" user, as demonstrated by responses with a 200 HTTP status code and a JSON object containing IP address strings. This is related to a missing access-control check in bin/defaults/script/info/login.js.

    Published: 9 Apr 2017
    7.8
    High

    CVE-2017-7598

    Last Modified: 20 Apr 2025

    tif_dirread.c in LibTIFF 4.0.7 might allow remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted image.

    Published: 9 Apr 2017
    7.8
    High

    CVE-2017-7601

    Last Modified: 20 Apr 2025

    LibTIFF 4.0.7 has a "shift exponent too large for 64-bit type long" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image.

    Published: 9 Apr 2017
    5.5
    Medium

    CVE-2017-7595

    Last Modified: 20 Apr 2025

    The JPEGSetupEncode function in tiff_jpeg.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted image.

    Published: 9 Apr 2017
    7.8
    High

    CVE-2017-7596

    Last Modified: 20 Apr 2025

    LibTIFF 4.0.7 has an "outside the range of representable values of type float" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image.

    Published: 9 Apr 2017
    7.8
    High

    CVE-2017-7602

    Last Modified: 20 Apr 2025

    LibTIFF 4.0.7 has a signed integer overflow, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image.

    Published: 9 Apr 2017
    7.8
    High

    CVE-2017-7597

    Last Modified: 20 Apr 2025

    tif_dirread.c in LibTIFF 4.0.7 has an "outside the range of representable values of type float" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image.

    Published: 9 Apr 2017
    7.8
    High

    CVE-2017-7599

    Last Modified: 20 Apr 2025

    LibTIFF 4.0.7 has an "outside the range of representable values of type short" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image.

    Published: 9 Apr 2017
    7.8
    High

    CVE-2017-7600

    Last Modified: 20 Apr 2025

    LibTIFF 4.0.7 has an "outside the range of representable values of type unsigned char" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image.

    Published: 9 Apr 2017
    5.5
    Medium

    CVE-2017-7616

    Last Modified: 20 Apr 2025

    Incorrect error handling in the set_mempolicy and mbind compat syscalls in mm/mempolicy.c in the Linux kernel through 4.10.9 allows local users to obtain sensitive information from uninitialized stack data by triggering failure of a certain bitmap operation.

    Published: 8 Apr 2017