CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2016-4312

    Last Modified: 20 Apr 2025

    XML external entity (XXE) vulnerability in the XACML flow feature in WSO2 Identity Server 5.1.0 before WSO2-CARBON-PATCH-4.4.0-0231 allows remote authenticated users with access to XACML features to read arbitrary files, cause a denial of service, conduct server-side request forgery (SSRF) attacks, or have unspecified other impact via a crafted XACML request to entitlement/eval-policy-submit.jsp. NOTE: this issue can be combined with CVE-2016-4311 to exploit the vulnerability without credentials.

    Published: 16 Feb 2017
    9.8
    Critical

    CVE-2016-4861

    Last Modified: 20 Apr 2025

    The (1) order and (2) group methods in Zend_Db_Select in the Zend Framework before 1.12.20 might allow remote attackers to conduct SQL injection attacks by leveraging failure to remove comments from an SQL statement before validation.

    Published: 16 Feb 2017
    6.1
    Medium

    CVE-2016-9139

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in Open Ticket Request System (OTRS) 3.3.x before 3.3.16, 4.0.x before 4.0.19, and 5.0.x before 5.0.14 allows remote attackers to inject arbitrary web script or HTML via a crafted attachment.

    Published: 16 Feb 2017
    5.5
    Medium

    CVE-2016-9827

    Last Modified: 20 Apr 2025

    The _iprintf function in outputtxt.c in the listswf tool in libming 0.4.7 allows remote attackers to cause a denial of service (buffer over-read) via a crafted SWF file.

    Published: 16 Feb 2017
    5.5
    Medium

    CVE-2016-9828

    Last Modified: 20 Apr 2025

    The dumpBuffer function in read.c in the listswf tool in libming 0.4.7 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted SWF file.

    Published: 16 Feb 2017
    7.8
    High

    CVE-2016-9829

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the parseSWF_DEFINEFONT function in parser.c in the listswf tool in libming 0.4.7 allows remote attackers to have unspecified impact via a crafted SWF file.

    Published: 16 Feb 2017
    7.8
    High

    CVE-2016-9831

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the parseSWF_RGBA function in parser.c in the listswf tool in libming 0.4.7 allows remote attackers to have unspecified impact via a crafted SWF file.

    Published: 16 Feb 2017
    6.1
    Medium

    CVE-2016-4316

    Last Modified: 20 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in WSO2 Carbon 4.4.5 allow remote attackers to inject arbitrary web script or HTML via the (1) setName parameter to identity-mgt/challenges-mgt.jsp; the (2) webappType or (3) httpPort parameter to webapp-list/webapp_info.jsp; the (4) dsName or (5) description parameter to ndatasource/newdatasource.jsp; the (6) phase parameter to viewflows/handlers.jsp; or the (7) url parameter to ndatasource/validateconnection-ajaxprocessor.jsp.

    Published: 16 Feb 2017
    Unknown

    CVE-2016-7293

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue in a "generally available" software product. Notes: none

    Published: 16 Feb 2017
    9.8
    Critical

    CVE-2017-12933

    Last Modified: 20 Apr 2025

    The finish_nested_data function in ext/standard/var_unserializer.re in PHP before 5.6.31, 7.0.x before 7.0.21, and 7.1.x before 7.1.7 is prone to a buffer over-read while unserializing untrusted data. Exploitation of this issue can have an unspecified impact on the integrity of PHP.

    Published: 16 Feb 2017
    7.5
    High

    CVE-2017-3733

    Last Modified: 20 Apr 2025

    During a renegotiation handshake if the Encrypt-Then-Mac extension is negotiated where it was not in the original handshake (or vice-versa) then this can cause OpenSSL 1.1.0 before 1.1.0e to crash (dependent on ciphersuite). Both clients and servers are affected.

    Published: 16 Feb 2017
    7.5
    High

    CVE-2017-6014

    Last Modified: 20 Apr 2025

    In Wireshark 2.2.4 and earlier, a crafted or malformed STANAG 4607 capture file will cause an infinite loop and memory exhaustion. If the packet size field in a packet header is null, the offset to read from will not advance, causing continuous attempts to read the same zero length packet. This will quickly exhaust all system memory.

    Published: 16 Feb 2017
    6.5
    Medium

    CVE-2017-9461

    Last Modified: 20 Apr 2025

    smbd in Samba before 4.4.10 and 4.5.x before 4.5.6 has a denial of service vulnerability (fd_open_atomic infinite loop with high CPU usage and memory consumption) due to wrongly handling dangling symlinks.

    Published: 16 Feb 2017
    5.5
    Medium

    CVE-2017-2618

    Last Modified: 21 Nov 2024

    A flaw was found in the Linux kernel's handling of clearing SELinux attributes on /proc/pid/attr files before 4.9.10. An empty (null) write to this file can crash the system by causing the system to attempt to access unmapped kernel memory.

    Published: 16 Feb 2017
    7.5
    High

    CVE-2017-6058

    Last Modified: 20 Apr 2025

    Buffer overflow in NetRxPkt::ehdr_buf in hw/net/net_rx_pkt.c in QEMU (aka Quick Emulator), when the VLANSTRIP feature is enabled on the vmxnet3 device, allows remote attackers to cause a denial of service (out-of-bounds access and QEMU process crash) via vectors related to VLAN stripping.

    Published: 16 Feb 2017
    8.8
    High

    CVE-2017-0308

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where untrusted input is used for buffer size calculation leading to denial of service or escalation of privileges.

    Published: 15 Feb 2017
    6.5
    Medium

    CVE-2017-0310

    Last Modified: 20 Apr 2025

    All versions of NVIDIA GPU Display Driver contain a vulnerability in the kernel mode layer handler where improper access controls allowing unprivileged user to cause a denial of service.

    Published: 15 Feb 2017
    8.8
    High

    CVE-2017-0311

    Last Modified: 20 Apr 2025

    NVIDIA GPU Display Driver R378 contains a vulnerability in the kernel mode layer handler where improper access control may lead to denial of service or possible escalation of privileges.

    Published: 15 Feb 2017
    7.8
    High

    CVE-2017-0312

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscapeID 0x100008b where user provided input is used as the limit for a loop may lead to denial of service or potential escalation of privileges

    Published: 15 Feb 2017
    7.8
    High

    CVE-2017-0313

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) implementation of the SubmitCommandVirtual DDI (DxgkDdiSubmitCommandVirtual) where untrusted input is used to reference memory outside of the intended boundary of the buffer leading to denial of service or escalation of privileges.

    Published: 15 Feb 2017
    7.8
    High

    CVE-2017-0315

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where an attempt to access an invalid object pointer may lead to denial of service or potential escalation of privileges.

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2017-0318

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Linux GPU Display Driver contain a vulnerability in the kernel mode layer handler where improper validation of an input parameter may cause a denial of service on the system.

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2017-0319

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler where improper handling of values may cause a denial of service on the system.

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2017-0320

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler where improper handling of values may cause a denial of service on the system.

    Published: 15 Feb 2017
    8.8
    High

    CVE-2017-0321

    Last Modified: 20 Apr 2025

    All versions of NVIDIA GPU Display Driver contain a vulnerability in the kernel mode layer handler where a NULL pointer dereference caused by invalid user input may lead to denial of service or potential escalation of privileges.

    Published: 15 Feb 2017
    7.8
    High

    CVE-2017-0322

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler where a value passed from a user to the driver is not correctly validated and used as the index to an array, leading to denial of service or potential escalation of privileges.

    Published: 15 Feb 2017
    7.8
    High

    CVE-2017-0324

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape where the size of an input buffer is not validated, leading to denial of service or potential escalation of privileges.

    Published: 15 Feb 2017
    7.8
    High

    CVE-2017-0314

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) implementation of the SubmitCommandVirtual DDI (DxgkDdiSubmitCommandVirtual) where untrusted input is used to reference memory outside of the intended boundary of the buffer leading to denial of service or escalation of privileges.

    Published: 15 Feb 2017
    7.5
    High

    CVE-2017-0317

    Last Modified: 20 Apr 2025

    All versions of NVIDIA GPU and GeForce Experience installer contain a vulnerability where it fails to set proper permissions on the package extraction path thus allowing a non-privileged user to tamper with the extracted files, potentially leading to escalation of privileges via code execution.

    Published: 15 Feb 2017
    7.8
    High

    CVE-2017-0323

    Last Modified: 20 Apr 2025

    All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler where a NULL pointer dereference caused by invalid user input may lead to denial of service or potential escalation of privileges.

    Published: 15 Feb 2017
    8.8
    High

    CVE-2017-0309

    Last Modified: 20 Apr 2025

    All versions of NVIDIA GPU Display Driver contain a vulnerability in the kernel mode layer handler where multiple integer overflows may cause improper memory allocation leading to a denial of service or potential escalation of privileges.

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2016-8675

    Last Modified: 20 Apr 2025

    The get_vlc2 function in get_bits.h in Libav before 11.9 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted mp3 file, possibly related to startcode sequences during m4v detection.

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2016-7499

    Last Modified: 20 Apr 2025

    The sbr_make_f_master function in aacsbr.c in Libav 11.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted mp3 file.

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2016-7393

    Last Modified: 20 Apr 2025

    Stack-based buffer overflow in the aac_sync function in aac_parser.c in Libav before 11.5 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2016-7477

    Last Modified: 20 Apr 2025

    The ff_put_pixels8_xy2_mmx function in rnd_template.c in Libav 11.7 allows remote attackers to cause a denial of service (invalid memory access and crash) via a crafted mp3 file. NOTE: this issue was originally reported as involving a NULL pointer dereference.

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2016-8674

    Last Modified: 20 Apr 2025

    The pdf_to_num function in pdf-object.c in MuPDF before 1.10 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted file.

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2016-8676

    Last Modified: 20 Apr 2025

    The get_vlc2 function in get_bits.h in Libav 11.9 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted mp3 file. NOTE: this issue exists due to an incomplete fix for CVE-2016-8675.

    Published: 15 Feb 2017
    8.8
    High

    CVE-2017-3801

    Last Modified: 20 Apr 2025

    A vulnerability in the web-based GUI of Cisco UCS Director 6.0.0.0 and 6.0.0.1 could allow an authenticated, local attacker to execute arbitrary workflow items with just an end-user profile, a Privilege Escalation Vulnerability. The vulnerability is due to improper role-based access control (RBAC) after the Developer Menu is enabled in Cisco UCS Director. An attacker could exploit this vulnerability by enabling Developer Mode for his/her user profile with an end-user profile and then adding new catalogs with arbitrary workflow items to his/her profile. An exploit could allow an attacker to perform any actions defined by these workflow items, including actions affecting other tenants. Cisco Bug IDs: CSCvb64765.

    Published: 15 Feb 2017
    4.3
    Medium

    CVE-2016-6060

    Last Modified: 20 Apr 2025

    An undisclosed vulnerability in IBM Rational DOORS Next Generation 4.0, 5.0, and 6.0 could allow a JazzGuest user to see project names. IBM Reference #: 1995547.

    Published: 15 Feb 2017
    7.5
    High

    CVE-2016-8682

    Last Modified: 20 Apr 2025

    The ReadSCTImage function in coders/sct.c in GraphicsMagick 1.3.25 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted SCT header.

    Published: 15 Feb 2017
    7.8
    High

    CVE-2016-8683

    Last Modified: 20 Apr 2025

    The ReadPCXImage function in coders/pcx.c in GraphicsMagick 1.3.25 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure and a "file truncation error for corrupt file."

    Published: 15 Feb 2017
    7.8
    High

    CVE-2016-8684

    Last Modified: 20 Apr 2025

    The MagickMalloc function in magick/memory.c in GraphicsMagick 1.3.25 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure and a "file truncation error for corrupt file."

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2017-5896

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the fz_subsample_pixmap function in fitz/pixmap.c in MuPDF 1.10a allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted image.

    Published: 15 Feb 2017
    9.8
    Critical

    CVE-2016-0360

    Last Modified: 20 Apr 2025

    IBM Websphere MQ JMS 7.0.1, 7.1, 7.5, 8.0, and 9.0 client provides classes that deserialize objects from untrusted sources which could allow a malicious user to execute arbitrary Java code by adding vulnerable classes to the classpath. IBM Reference #: 1983457.

    Published: 15 Feb 2017
    9.8
    Critical

    CVE-2016-3694

    Last Modified: 20 Apr 2025

    Multiple SQL injection vulnerabilities in modified eCommerce Shopsoftware 2.0.0.0 revision 9678, when the easybill-module is not installed, allow remote attackers to execute arbitrary SQL commands via the (1) orders_status or (2) customers_status parameter to api/easybill/easybillcsv.php.

    Published: 15 Feb 2017
    8.8
    High

    CVE-2016-6033

    Last Modified: 20 Apr 2025

    IBM Tivoli Storage Manager for Virtual Environments 7.1 (VMware) is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM Reference #: 1995545.

    Published: 15 Feb 2017
    5.3
    Medium

    CVE-2016-6077

    Last Modified: 20 Apr 2025

    IBM Cognos Disclosure Management 10.2 could allow a malicious attacker to execute commands as a lower privileged user that opens a malicious document. IBM Reference #: 1991584.

    Published: 15 Feb 2017
    7.8
    High

    CVE-2016-6079

    Last Modified: 20 Apr 2025

    IBM AIX 5.3, 6.1, 7.1, and 7.2 contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges. IBM APARs: IV88658, IV87981, IV88419, IV87640, IV88053.

    Published: 15 Feb 2017
    5.5
    Medium

    CVE-2016-6832

    Last Modified: 20 Apr 2025

    Heap-based buffer overflow in the ff_audio_resample function in resample.c in libav before 11.4 allows remote attackers to cause a denial of service (crash) via vectors related to buffer resizing.

    Published: 15 Feb 2017
    7.5
    High

    CVE-2016-6866

    Last Modified: 20 Apr 2025

    slock allows attackers to bypass the screen lock via vectors involving an invalid password hash, which triggers a NULL pointer dereference and crash.

    Published: 15 Feb 2017