CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2016-6240

    Last Modified: 20 Apr 2025

    Integer truncation error in the amap_alloc function in OpenBSD 5.8 and 5.9 allows local users to execute arbitrary code with kernel privileges via a large size value.

    Published: 7 Mar 2017
    5.5
    Medium

    CVE-2016-6245

    Last Modified: 20 Apr 2025

    OpenBSD 5.8 and 5.9 allows local users to cause a denial of service (kernel panic) via a large size in a getdents system call.

    Published: 7 Mar 2017
    4.4
    Medium

    CVE-2016-6246

    Last Modified: 20 Apr 2025

    OpenBSD 5.8 and 5.9 allows certain local users with kern.usermount privileges to cause a denial of service (kernel panic) by mounting a tmpfs with a VNOVAL in the (1) username, (2) groupname, or (3) device name of the root node.

    Published: 7 Mar 2017
    5.5
    Medium

    CVE-2016-6247

    Last Modified: 20 Apr 2025

    OpenBSD 5.8 and 5.9 allows certain local users to cause a denial of service (kernel panic) by unmounting a filesystem with an open vnode on the mnt_vnodelist.

    Published: 7 Mar 2017
    7.5
    High

    CVE-2016-6255

    Last Modified: 20 Apr 2025

    Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to write to arbitrary files in the webroot via a POST request without a registered handler.

    Published: 7 Mar 2017
    5.5
    Medium

    CVE-2016-6350

    Last Modified: 20 Apr 2025

    OpenBSD 5.8 and 5.9 allows local users to cause a denial of service (NULL pointer dereference and panic) via a sysctl call with a path starting with 10,9.

    Published: 7 Mar 2017
    5.5
    Medium

    CVE-2016-6522

    Last Modified: 20 Apr 2025

    Integer overflow in the uvm_map_isavail function in uvm/uvm_map.c in OpenBSD 5.9 allows local users to cause a denial of service (kernel panic) via a crafted mmap call, which triggers the new mapping to overlap with an existing mapping.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2016-7781

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in framework/modules/blog/controllers/blogController.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the author parameter.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2016-7782

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in framework/core/models/expConfig.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the src parameter.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2016-7783

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in framework/core/models/expRecord.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the title parameter.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2016-7784

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in the getSection function in framework/core/subsystems/expRouter.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the section parameter.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2016-8863

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the create_url_list function in gena/gena_device.c in Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a valid URI followed by an invalid one in the CALLBACK header of an SUBSCRIBE request.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2016-9020

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in framework/modules/help/controllers/helpController.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the version parameter.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2016-9087

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in framework/modules/filedownloads/controllers/filedownloadController.php in Exponent CMS 2.3.9 and earlier allows remote attackers to execute arbitrary SQL commands via the fileid parameter.

    Published: 7 Mar 2017
    7.5
    High

    CVE-2016-9643

    Last Modified: 20 Apr 2025

    The regex code in Webkit 2.4.11 allows remote attackers to cause a denial of service (memory consumption) as demonstrated in a large number of ($ (open parenthesis and dollar) followed by {-2,16} and a large number of +) (plus close parenthesis).

    Published: 7 Mar 2017
    6.1
    Medium

    CVE-2016-4946

    Last Modified: 20 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Cloudera HUE 3.9.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) First name or (2) Last name field in the HUE Users page.

    Published: 7 Mar 2017
    7.5
    High

    CVE-2016-6244

    Last Modified: 20 Apr 2025

    The sys_thrsigdivert function in kern/kern_sig.c in the OpenBSD kernel 5.9 allows remote attackers to cause a denial of service (panic) via a negative "ts.tv_sec" value.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2016-7145

    Last Modified: 20 Apr 2025

    The m_authenticate function in ircd/m_authenticate.c in nefarious2 allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted AUTHENTICATE parameter.

    Published: 7 Mar 2017
    Unknown

    CVE-2016-9571

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-9606. Reason: This candidate is a duplicate of CVE-2016-9606. Reason: this ID was intended for one issue, but was associated with two issues. Notes: All CVE users should reference CVE-2016-9606 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 7 Mar 2017
    6.1
    Medium

    CVE-2016-9148

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in CA Service Desk Manager (formerly CA Service Desk) 12.9 and 14.1 allows remote attackers to inject arbitrary web script or HTML via the QBE.EQ.REF_NUM parameter.

    Published: 7 Mar 2017
    7.5
    High

    CVE-2016-9164

    Last Modified: 20 Apr 2025

    Directory traversal vulnerability in diag.jsp file in CA Unified Infrastructure Management (formerly CA Nimsoft Monitor) 8.4 SP1 and earlier and CA Unified Infrastructure Management Snap (formerly CA Nimsoft Monitor Snap) allows remote attackers to read arbitrary files via unspecified vectors.

    Published: 7 Mar 2017
    7.5
    High

    CVE-2016-10252

    Last Modified: 20 Apr 2025

    Memory leak in the IsOptionMember function in MagickCore/option.c in ImageMagick before 6.9.2-2, as used in ODR-PadEnc and other products, allows attackers to trigger memory consumption.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2017-7858

    Last Modified: 20 Apr 2025

    FreeType 2 before 2017-03-07 has an out-of-bounds write related to the TT_Get_MM_Var function in truetype/ttgxvar.c and the sfnt_init_face function in sfnt/sfobjs.c.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2017-5400

    Last Modified: 25 Nov 2025

    JIT-spray targeting asm.js combined with a heap spray allows for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.

    Published: 7 Mar 2017
    6.1
    Medium

    CVE-2017-6508

    Last Modified: 20 Apr 2025

    CRLF injection vulnerability in the url_parse function in url.c in Wget through 1.19.1 allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in the host subcomponent of a URL.

    Published: 7 Mar 2017
    7
    High

    CVE-2017-2636

    Last Modified: 20 Apr 2025

    Race condition in drivers/tty/n_hdlc.c in the Linux kernel through 4.10.1 allows local users to gain privileges or cause a denial of service (double free) by setting the HDLC line discipline.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2017-5401

    Last Modified: 25 Nov 2025

    A crash triggerable by web content in which an "ErrorResult" references unassigned memory due to a logic error. The resulting crash may be exploitable. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.

    Published: 7 Mar 2017
    5.3
    Medium

    CVE-2017-5405

    Last Modified: 25 Nov 2025

    Certain response codes in FTP connections can result in the use of uninitialized values for ports in FTP operations. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2017-5398

    Last Modified: 25 Nov 2025

    Memory safety bugs were reported in Thunderbird 45.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2017-5402

    Last Modified: 25 Nov 2025

    A use-after-free can occur when events are fired for a "FontFace" object after the object has been already been destroyed while working with fonts. This results in a potentially exploitable crash. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2017-5404

    Last Modified: 25 Nov 2025

    A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it. This results in a potentially exploitable crash. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.

    Published: 7 Mar 2017
    6.5
    Medium

    CVE-2017-5407

    Last Modified: 25 Nov 2025

    Using SVG filters that don't use the fixed point math implementation on a target iframe, a malicious page can extract pixel values from a targeted user. This can be used to extract history information and read text values across domains. This violates same-origin policy and leads to information disclosure. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.

    Published: 7 Mar 2017
    5.3
    Medium

    CVE-2017-5408

    Last Modified: 25 Nov 2025

    Video files loaded video captions cross-origin without checking for the presence of CORS headers permitting such cross-origin use, leading to potential information disclosure for video captions. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.

    Published: 7 Mar 2017
    9.8
    Critical

    CVE-2017-5410

    Last Modified: 25 Nov 2025

    Memory corruption resulting in a potentially exploitable crash during garbage collection of JavaScript due errors in how incremental sweeping is managed for memory cleanup. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.

    Published: 7 Mar 2017
    6.1
    Medium

    CVE-2017-5197

    Last Modified: 20 Apr 2025

    There is XSS in SilverStripe CMS before 3.4.4 and 3.5.x before 3.5.2. The attack vector is a page name. An example payload is a crafted JavaScript event handler within a malformed SVG element.

    Published: 6 Mar 2017
    8
    High

    CVE-2017-5633

    Last Modified: 20 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities on the D-Link DI-524 Wireless Router with firmware 9.01 allow remote attackers to (1) change the admin password, (2) reboot the device, or (3) possibly have unspecified other impact via crafted requests to CGI programs.

    Published: 6 Mar 2017
    7.5
    High

    CVE-2017-5999

    Last Modified: 20 Apr 2025

    An issue was discovered in sysPass 2.x before 2.1, in which an algorithm was never sufficiently reviewed by cryptographers. The fact that inc/SP/Core/Crypt.class is using the MCRYPT_RIJNDAEL_256() function (the 256-bit block version of Rijndael, not AES) instead of MCRYPT_RIJNDAEL_128 (real AES) could help an attacker to create unknown havoc in the remote system.

    Published: 6 Mar 2017
    8.8
    High

    CVE-2017-6411

    Last Modified: 20 Apr 2025

    Cross Site Request Forgery (CSRF) on D-Link DSL-2730U C1 IN_1.00 devices allows remote attackers to change the DNS or firewall configuration or any password.

    Published: 6 Mar 2017
    8.8
    High

    CVE-2017-6334

    Last Modified: 21 Apr 2026

    dnslookup.cgi on NETGEAR DGN2200 devices with firmware through 10.0.0.50 allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in the host_name field of an HTTP POST request, a different vulnerability than CVE-2017-6077.

    Published: 6 Mar 2017
    Unknown

    CVE-2015-7958

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2015. Notes: none

    Published: 6 Mar 2017
    Unknown

    CVE-2015-7956

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2015. Notes: none

    Published: 6 Mar 2017
    Unknown

    CVE-2015-7957

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2015. Notes: none

    Published: 6 Mar 2017
    Unknown

    CVE-2015-7959

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2015. Notes: none

    Published: 6 Mar 2017
    Unknown

    CVE-2015-7960

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2015. Notes: none

    Published: 6 Mar 2017
    Unknown

    CVE-2016-9648

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2016. Notes: none

    Published: 6 Mar 2017
    Unknown

    CVE-2016-9649

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2016. Notes: none

    Published: 6 Mar 2017
    8.1
    High

    CVE-2017-6351

    Last Modified: 20 Apr 2025

    The WePresent WiPG-1500 device with firmware 1.0.3.7 has a manufacturer account that has a hardcoded username / password. Once the device is set to DEBUG mode, an attacker can connect to the device using the telnet protocol and log into the device with the 'abarco' hardcoded manufacturer account. This account is not documented, nor is the DEBUG feature or the use of telnetd on port tcp/5885.

    Published: 6 Mar 2017
    6.1
    Medium

    CVE-2017-6503

    Last Modified: 20 Apr 2025

    WebUI in qBittorrent before 3.3.11 did not escape many values, which could potentially lead to XSS.

    Published: 6 Mar 2017
    6.1
    Medium

    CVE-2017-6504

    Last Modified: 20 Apr 2025

    WebUI in qBittorrent before 3.3.11 did not set the X-Frame-Options header, which could potentially lead to clickjacking.

    Published: 6 Mar 2017
    Unknown

    CVE-2016-9647

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2016. Notes: none

    Published: 6 Mar 2017