CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2016-9408

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Mod control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving editing users.

    Published: 31 Jan 2017
    6.1
    Medium

    CVE-2016-9409

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving pruning logs.

    Published: 31 Jan 2017
    7.5
    High

    CVE-2016-9410

    Last Modified: 20 Apr 2025

    MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to obtain sensitive database information via vectors involving templates.

    Published: 31 Jan 2017
    5.3
    Medium

    CVE-2016-9411

    Last Modified: 20 Apr 2025

    The Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allows remote attackers to obtain the installation path via vectors involving sending mails.

    Published: 31 Jan 2017
    9.8
    Critical

    CVE-2016-9412

    Last Modified: 20 Apr 2025

    MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allow attackers to have unspecified impact via vectors related to low adminsid and sid entropy.

    Published: 31 Jan 2017
    6.5
    Medium

    CVE-2016-9413

    Last Modified: 20 Apr 2025

    The Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allows remote attackers to conduct clickjacking attacks via unspecified vectors.

    Published: 31 Jan 2017
    7.5
    High

    CVE-2016-9415

    Last Modified: 20 Apr 2025

    MyBB (aka MyBulletinBoard) before 1.8.8 on Windows and MyBB Merge System before 1.8.8 on Windows allow remote attackers to overwrite arbitrary CSS files via vectors related to "style import."

    Published: 31 Jan 2017
    9.8
    Critical

    CVE-2016-9416

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in the users data handler in MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 31 Jan 2017
    7.4
    High

    CVE-2016-9417

    Last Modified: 20 Apr 2025

    The fetch_remote_file function in MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allows remote attackers to conduct server-side request forgery (SSRF) attacks via unspecified vectors.

    Published: 31 Jan 2017
    7.5
    High

    CVE-2016-9418

    Last Modified: 20 Apr 2025

    MyBB (aka MyBulletinBoard) before 1.8.8 on Windows and MyBB Merge System before 1.8.8 on Windows might allow remote attackers to obtain sensitive information from ACP backups via vectors involving a short name.

    Published: 31 Jan 2017
    6.1
    Medium

    CVE-2016-9419

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 31 Jan 2017
    9.8
    Critical

    CVE-2016-9420

    Last Modified: 20 Apr 2025

    MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allow remote attackers to have unspecified impact via vectors related to "loose comparison false positives."

    Published: 31 Jan 2017
    6.1
    Medium

    CVE-2016-9421

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Users module in the Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 might allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 31 Jan 2017
    5.4
    Medium

    CVE-2016-9260

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in Tenable Nessus before 6.9 allows remote authenticated users to inject arbitrary web script or HTML via vectors related to handling of .nessus files.

    Published: 31 Jan 2017
    6.1
    Medium

    CVE-2016-9407

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving Mod control panel logs.

    Published: 31 Jan 2017
    6.2
    Medium

    CVE-2016-9039

    Last Modified: 20 Apr 2025

    An exploitable denial of service exists in the Joyent SmartOS 20161110T013148Z Hyprlofs file system. The vulnerability is present in the Ioctl system call with the command HYPRLOFS_ADD_ENTRIES. An attacker can cause a buffer to be allocated and never freed. When repeatedly exploited this will result in memory exhaustion, resulting in a full system denial of service.

    Published: 31 Jan 2017
    5.9
    Medium

    CVE-2016-5117

    Last Modified: 20 Apr 2025

    OpenNTPD before 6.0p1 does not validate the CN for HTTPS constraint requests, which allows remote attackers to bypass the man-in-the-middle mitigations via a crafted timestamp constraint with a valid certificate.

    Published: 31 Jan 2017
    8.6
    High

    CVE-2016-6621

    Last Modified: 20 Apr 2025

    The setup script for phpMyAdmin before 4.0.10.19, 4.4.x before 4.4.15.10, and 4.6.x before 4.6.6 allows remote attackers to conduct server-side request forgery (SSRF) attacks via unspecified vectors.

    Published: 31 Jan 2017
    10
    Critical

    CVE-2016-10043

    Last Modified: 20 Apr 2025

    An issue was discovered in Radisys MRF Web Panel (SWMS) 9.0.1. The MSM_MACRO_NAME POST parameter in /swms/ms.cgi was discovered to be vulnerable to OS command injection attacks. It is possible to use the pipe character (|) to inject arbitrary OS commands and retrieve the output in the application's responses. Attackers could execute unauthorized commands, which could then be used to disable the software, or read, write, and modify data for which the attacker does not have permissions to access directly. Since the targeted application is directly executing the commands instead of the attacker, any malicious activities may appear to come from the application or the application's owner (apache user).

    Published: 31 Jan 2017
    7.5
    High

    CVE-2016-9249

    Last Modified: 20 Apr 2025

    An undisclosed traffic pattern received by a BIG-IP Virtual Server with TCP Fast Open enabled may cause the Traffic Management Microkernel (TMM) to restart, resulting in a Denial-of-Service (DoS).

    Published: 31 Jan 2017
    5.5
    Medium

    CVE-2017-5849

    Last Modified: 20 Apr 2025

    tiffttopnm in netpbm 10.47.63 does not properly use the libtiff TIFFRGBAImageGet function, which allows remote attackers to cause a denial of service (out-of-bounds read and write) via a crafted tiff image file, related to transposing width and height values.

    Published: 31 Jan 2017
    6.5
    Medium

    CVE-2017-14604

    Last Modified: 20 Apr 2025

    GNOME Nautilus before 3.23.90 allows attackers to spoof a file type by using the .desktop file extension, as demonstrated by an attack in which a .desktop file's Name field ends in .pdf but this file's Exec field launches a malicious "sh -c" command. In other words, Nautilus provides no UI indication that a file actually has the potentially unsafe .desktop extension; instead, the UI only shows the .pdf extension. One (slightly) mitigating factor is that an attack requires the .desktop file to have execute permission. The solution is to ask the user to confirm that the file is supposed to be treated as a .desktop file, and then remember the user's answer in the metadata::trusted field.

    Published: 31 Jan 2017
    5.5
    Medium

    CVE-2017-5987

    Last Modified: 20 Apr 2025

    The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows local OS guest privileged users to cause a denial of service (infinite loop and QEMU process crash) via vectors involving the transfer mode register during multi block transfer.

    Published: 31 Jan 2017
    8.8
    High

    CVE-2015-2180

    Last Modified: 20 Apr 2025

    The DBMail driver in the Password plugin in Roundcube before 1.1.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the password.

    Published: 30 Jan 2017
    8.8
    High

    CVE-2015-2181

    Last Modified: 20 Apr 2025

    Multiple buffer overflows in the DBMail driver in the Password plugin in Roundcube before 1.1.0 allow remote attackers to have unspecified impact via the (1) password or (2) username.

    Published: 30 Jan 2017
    5.5
    Medium

    CVE-2016-5026

    Last Modified: 20 Apr 2025

    hs.py in OnionShare before 0.9.1 allows local users to modify the hiddenservice by pre-creating the /tmp/onionshare directory.

    Published: 30 Jan 2017
    5.5
    Medium

    CVE-2016-5434

    Last Modified: 20 Apr 2025

    libalpm, as used in pacman 5.0.1, allows remote attackers to cause a denial of service (infinite loop or out-of-bounds read) via a crafted signature file.

    Published: 30 Jan 2017
    8.8
    High

    CVE-2016-6266

    Last Modified: 20 Apr 2025

    ccca_ajaxhandler.php in Trend Micro Smart Protection Server 2.5 before build 2200, 2.6 before build 2106, and 3.0 before build 1330 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the (1) host or (2) apikey parameter in a register action, (3) enable parameter in a save_stting action, or (4) host or (5) apikey parameter in a test_connection action.

    Published: 30 Jan 2017
    6.1
    Medium

    CVE-2016-9119

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in the link dialogue in GUI editor in MoinMoin before 1.9.8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 30 Jan 2017
    9.8
    Critical

    CVE-2016-9132

    Last Modified: 20 Apr 2025

    In Botan 1.8.0 through 1.11.33, when decoding BER data an integer overflow could occur, which would cause an incorrect length field to be computed. Some API callers may use the returned (incorrect and attacker controlled) length field in a way which later causes memory corruption or other failure.

    Published: 30 Jan 2017
    8.8
    High

    CVE-2016-6267

    Last Modified: 20 Apr 2025

    SnmpUtils in Trend Micro Smart Protection Server 2.5 before build 2200, 2.6 before build 2106, and 3.0 before build 1330 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the (1) spare_Community, (2) spare_AllowGroupIP, or (3) spare_AllowGroupNetmask parameter to admin_notification.php.

    Published: 30 Jan 2017
    9.1
    Critical

    CVE-2016-6269

    Last Modified: 20 Apr 2025

    Multiple directory traversal vulnerabilities in Trend Micro Smart Protection Server 2.5 before build 2200, 2.6 before build 2106, and 3.0 before build 1330 allow remote attackers to read and delete arbitrary files via the tmpfname parameter to (1) log_mgt_adhocquery_ajaxhandler.php, (2) log_mgt_ajaxhandler.php, (3) log_mgt_ajaxhandler.php or (4) tf parameter to wcs_bwlists_handler.php.

    Published: 30 Jan 2017
    6.6
    Medium

    CVE-2015-7331

    Last Modified: 20 Apr 2025

    The mcollective-puppet-agent plugin before 1.11.1 for Puppet allows remote attackers to execute arbitrary code via vectors involving the --server argument.

    Published: 30 Jan 2017
    7.8
    High

    CVE-2016-2399

    Last Modified: 20 Apr 2025

    Integer overflow in the quicktime_read_pascal function in libquicktime 1.2.4 and earlier allows remote attackers to cause a denial of service or possibly have other unspecified impact via a crafted hdlr MP4 atom.

    Published: 30 Jan 2017
    5.9
    Medium

    CVE-2016-2402

    Last Modified: 20 Apr 2025

    OkHttp before 2.7.4 and 3.x before 3.1.2 allows man-in-the-middle attackers to bypass certificate pinning by sending a certificate chain with a certificate from a non-pinned trusted CA and the pinned certificate.

    Published: 30 Jan 2017
    7.8
    High

    CVE-2016-6167

    Last Modified: 20 Apr 2025

    Multiple untrusted search path vulnerabilities in Putty beta 0.67 allow local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse (1) UxTheme.dll or (2) ntmarta.dll file in the current working directory.

    Published: 30 Jan 2017
    7.8
    High

    CVE-2016-6268

    Last Modified: 20 Apr 2025

    Trend Micro Smart Protection Server 2.5 before build 2200, 2.6 before build 2106, and 3.0 before build 1330 allows local webserv users to execute arbitrary code with root privileges via a Trojan horse .war file in the Solr webapps directory.

    Published: 30 Jan 2017
    8.8
    High

    CVE-2016-6270

    Last Modified: 20 Apr 2025

    The handle_certificate function in /vmi/manager/engine/management/commands/apns_worker.py in Trend Micro Virtual Mobile Infrastructure before 5.1 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the password to api/v1/cfg/oauth/save_identify_pfx/.

    Published: 30 Jan 2017
    9.8
    Critical

    CVE-2016-6604

    Last Modified: 20 Apr 2025

    NULL pointer dereference in Samsung Exynos fimg2d driver for Android L(5.0/5.1) and M(6.0) allows attackers to have unspecified impact via unknown vectors. The Samsung ID is SVE-2016-6382.

    Published: 30 Jan 2017
    7.5
    High

    CVE-2016-9939

    Last Modified: 20 Apr 2025

    Crypto++ (aka cryptopp and libcrypto++) 5.6.4 contained a bug in its ASN.1 BER decoding routine. The library will allocate a memory block based on the length field of the ASN.1 object. If there is not enough content octets in the ASN.1 object, then the function will fail and the memory block will be zeroed even if its unused. There is a noticeable delay during the wipe for a large allocation.

    Published: 30 Jan 2017
    7.5
    High

    CVE-2016-7544

    Last Modified: 20 Apr 2025

    Crypto++ 5.6.4 incorrectly uses Microsoft's stack-based _malloca and _freea functions. The library will request a block of memory to align a table in memory. If the table is later reallocated, then the wrong pointer could be freed.

    Published: 30 Jan 2017
    6.5
    Medium

    CVE-2017-5572

    Last Modified: 20 Apr 2025

    An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can corrupt the host database.

    Published: 30 Jan 2017
    4.9
    Medium

    CVE-2017-5573

    Last Modified: 20 Apr 2025

    An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can cancel tasks of other administrators.

    Published: 30 Jan 2017
    7.8
    High

    CVE-2017-5627

    Last Modified: 20 Apr 2025

    An issue was discovered in Artifex Software, Inc. MuJS before 4006739a28367c708dea19aeb19b8a1a9326ce08. The jsR_setproperty function in jsrun.c lacks a check for a negative array length. This leads to an integer overflow in the js_pushstring function in jsrun.c when parsing a specially crafted JS file.

    Published: 30 Jan 2017
    9.8
    Critical

    CVE-2017-5611

    Last Modified: 20 Apr 2025

    SQL injection vulnerability in wp-includes/class-wp-query.php in WP_Query in WordPress before 4.7.2 allows remote attackers to execute arbitrary SQL commands by leveraging the presence of an affected plugin or theme that mishandles a crafted post type name.

    Published: 30 Jan 2017
    9.8
    Critical

    CVE-2016-10176

    Last Modified: 20 Apr 2025

    The NETGEAR WNR2000v5 router allows an administrator to perform sensitive actions by invoking the apply.cgi URL on the web server of the device. This special URL is handled by the embedded web server (uhttpd) and processed accordingly. The web server also contains another URL, apply_noauth.cgi, that allows an unauthenticated user to perform sensitive actions on the device. This functionality can be exploited to change the router settings (such as the answers to the password-recovery questions) and achieve remote code execution.

    Published: 30 Jan 2017
    7.5
    High

    CVE-2016-10183

    Last Modified: 20 Apr 2025

    An issue was discovered on the D-Link DWR-932B router. qmiweb allows directory listing with ../ traversal.

    Published: 30 Jan 2017
    7.5
    High

    CVE-2016-10185

    Last Modified: 20 Apr 2025

    An issue was discovered on the D-Link DWR-932B router. A secure_mode=no line exists in /var/miniupnpd.conf.

    Published: 30 Jan 2017
    6.5
    Medium

    CVE-2017-5632

    Last Modified: 20 Apr 2025

    An issue was discovered on the ASUS RT-N56U Wireless Router with Firmware 3.0.0.4.374_979. When executing an "nmap -O" command that specifies an IP address of an affected device, one can crash the device's WAN connection, causing disconnection from the Internet, a Denial of Service (DoS). The attack is only possible from within the local area network.

    Published: 30 Jan 2017
    9.8
    Critical

    CVE-2016-10177

    Last Modified: 20 Apr 2025

    An issue was discovered on the D-Link DWR-932B router. Undocumented TELNET and SSH services provide logins to admin with the password admin and root with the password 1234.

    Published: 30 Jan 2017