CVE Feed

    Dashboard / CVE

    7.3
    High

    CVE-2016-10096

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in register.php in GeniXCMS before 1.0.0 allows remote attackers to execute arbitrary SQL commands via the activation parameter.

    Published: 1 Jan 2017
    8.1
    High

    CVE-2016-10621

    Last Modified: 21 Nov 2024

    fibjs is a runtime for javascript applictions built on google v8 JS. fibjs downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested binary with an attacker controlled binary if the attacker is on the network or positioned in between the user and the remote server.

    Published: 1 Jan 2017
    8.1
    High

    CVE-2016-10624

    Last Modified: 21 Nov 2024

    selenium-chromedriver is a simple utility for downloading the Selenium Webdriver for Google Chrome selenium-chromedriver downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested binary with an attacker controlled binary if the attacker is on the network or positioned in between the user and the remote server.

    Published: 1 Jan 2017
    7
    High

    CVE-2017-0403

    Last Modified: 20 Apr 2025

    An elevation of privilege vulnerability in the kernel performance subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32402548.

    Published: 1 Jan 2017
    7
    High

    CVE-2017-0404

    Last Modified: 20 Apr 2025

    An elevation of privilege vulnerability in the kernel sound subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32510733.

    Published: 1 Jan 2017
    5.4
    Medium

    CVE-2016-6857

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Create Catalogue feature in Hybris Management Console (HMC) in SAP Hybris before 5.2.0.13, 5.3.x before 5.3.0.11, 5.4.x before 5.4.0.11, 5.5.0.x before 5.5.0.10, 5.5.1.x before 5.5.1.11, 5.6.x before 5.6.0.11, and 5.7.x before 5.7.0.15 allows remote authenticated users to inject arbitrary web script or HTML via the ID field.

    Published: 31 Dec 2016
    5.4
    Medium

    CVE-2016-6858

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Create Employee feature in Hybris Management Console (HMC) in SAP Hybris before 5.0.4.11, 5.1.0.x before 5.1.0.11, 5.1.1.x before 5.1.1.12, 5.2.0.x and 5.3.0.x before 5.3.0.10, 5.4.x before 5.4.0.9, 5.5.0.x before 5.5.0.9, 5.5.1.x before 5.5.1.10, 5.6.x before 5.6.0.8, and 5.7.x before 5.7.0.9 allows remote authenticated users to inject arbitrary web script or HTML via the Name field.

    Published: 31 Dec 2016
    4.3
    Medium

    CVE-2016-6859

    Last Modified: 12 Apr 2025

    Hybris Management Console (HMC) in SAP Hybris before 6.0 allows remote attackers to obtain sensitive information by triggering an error and then reading a Java stack trace.

    Published: 31 Dec 2016
    6.1
    Medium

    CVE-2016-6856

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Inbox Search feature in Hybris Management Console (HMC) in SAP Hybris before 6.0 allows remote attackers to inject arbitrary web script or HTML via the itemsperpage parameter.

    Published: 31 Dec 2016
    Unknown

    CVE-2016-1003

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-10033. Reason: This candidate is a duplicate of CVE-2016-10033. A typo caused the wrong ID to be used. Notes: All CVE users should reference CVE-2016-10033 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 31 Dec 2016
    Unknown

    CVE-2016-1004

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2016. Notes: none

    Published: 31 Dec 2016
    7.8
    High

    CVE-2016-10317

    Last Modified: 20 Apr 2025

    The fill_threshhold_buffer function in base/gxht_thresh.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PostScript document.

    Published: 31 Dec 2016
    9.8
    Critical

    CVE-2016-10033

    Last Modified: 21 Apr 2026

    The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted Sender property.

    Published: 30 Dec 2016
    9.8
    Critical

    CVE-2016-10074

    Last Modified: 12 Apr 2025

    The mail transport (aka Swift_Transport_MailTransport) in Swift Mailer before 5.4.5 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted e-mail address in the (1) From, (2) ReturnPath, or (3) Sender header.

    Published: 30 Dec 2016
    9.8
    Critical

    CVE-2016-10034

    Last Modified: 12 Apr 2025

    The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.7.2, and Zend Framework before 2.4.11 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted e-mail address.

    Published: 30 Dec 2016
    9.8
    Critical

    CVE-2016-10045

    Last Modified: 12 Apr 2025

    The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code by leveraging improper interaction between the escapeshellarg function and internal escaping performed in the mail function in PHP. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-10033.

    Published: 30 Dec 2016
    7
    High

    CVE-2016-10088

    Last Modified: 12 Apr 2025

    The sg implementation in the Linux kernel through 4.9 does not properly restrict write operations in situations where the KERNEL_DS option is set, which allows local users to read or write to arbitrary kernel memory locations or cause a denial of service (use-after-free) by leveraging access to a /dev/sg device, related to block/bsg.c and drivers/scsi/sg.c. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-9576.

    Published: 30 Dec 2016
    9.8
    Critical

    CVE-2016-10082

    Last Modified: 12 Apr 2025

    include/functions_installer.inc.php in Serendipity through 2.0.5 is vulnerable to File Inclusion and a possible Code Execution attack during a first-time installation because it fails to sanitize the dbType POST parameter before adding it to an include() call in the bundled-libs/serendipity_generateFTPChecksums.php file.

    Published: 30 Dec 2016
    6.1
    Medium

    CVE-2016-10083

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in admin/plugin.php in Piwigo through 2.8.3 allows remote attackers to inject arbitrary web script or HTML via a crafted filename that is mishandled in a certain error case.

    Published: 30 Dec 2016
    7.2
    High

    CVE-2016-10084

    Last Modified: 12 Apr 2025

    admin/batch_manager.php in Piwigo through 2.8.3 allows remote authenticated administrators to conduct File Inclusion attacks via the $page['tab'] variable (aka the mode parameter).

    Published: 30 Dec 2016
    7.2
    High

    CVE-2016-10085

    Last Modified: 12 Apr 2025

    admin/languages.php in Piwigo through 2.8.3 allows remote authenticated administrators to conduct File Inclusion attacks via the tab parameter.

    Published: 30 Dec 2016
    7.5
    High

    CVE-2016-10109

    Last Modified: 20 Apr 2025

    Use-after-free vulnerability in pcsc-lite before 1.8.20 allows a remote attackers to cause denial of service (crash) via a command that uses "cardsList" after the handle has been released through the SCardReleaseContext function.

    Published: 30 Dec 2016
    7.8
    High

    CVE-2016-10089

    Last Modified: 20 Apr 2025

    Nagios 4.3.2 and earlier allows local users to gain root privileges via a hard link attack on the Nagios init script file, related to CVE-2016-8641.

    Published: 30 Dec 2016
    9.8
    Critical

    CVE-2016-10327

    Last Modified: 20 Apr 2025

    LibreOffice before 2016-12-22 has an out-of-bounds write caused by a heap-based buffer overflow related to the EnhWMFReader::ReadEnhWMF function in vcl/source/filter/wmf/enhwmf.cxx.

    Published: 30 Dec 2016
    7.8
    High

    CVE-2016-10081

    Last Modified: 12 Apr 2025

    /usr/bin/shutter in Shutter through 0.93.1 allows user-assisted remote attackers to execute arbitrary commands via a crafted image name that is mishandled during a "Run a plugin" action.

    Published: 29 Dec 2016
    7.8
    High

    CVE-2015-0854

    Last Modified: 12 Apr 2025

    App/HelperFunctions.pm in Shutter through 0.93.1 allows user-assisted remote attackers to execute arbitrary commands via a crafted image name that is mishandled during a "Show in Folder" action.

    Published: 29 Dec 2016
    5.4
    Medium

    CVE-2016-9891

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in admin/media.php and admin/media_item.php in Dotclear before 2.11 allows remote authenticated users to inject arbitrary web script or HTML via the upfiletitle or media_title parameter (aka the media title).

    Published: 29 Dec 2016
    8.5
    High

    CVE-2016-7462

    Last Modified: 12 Apr 2025

    The Suite REST API in VMware vRealize Operations (aka vROps) 6.x before 6.4.0 allows remote authenticated users to write arbitrary content to files or rename files via a crafted DiskFileItem in a relay-request payload that is mishandled during deserialization.

    Published: 29 Dec 2016
    7.8
    High

    CVE-2016-2246

    Last Modified: 12 Apr 2025

    HP ThinPro 4.4 through 6.1 mishandles the keyboard layout control panel and virtual keyboard application, which allows local users to bypass intended access restrictions and gain privileges via unspecified vectors.

    Published: 29 Dec 2016
    7.8
    High

    CVE-2016-7079

    Last Modified: 12 Apr 2025

    The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors, a different vulnerability than CVE-2016-7080.

    Published: 29 Dec 2016
    7.8
    High

    CVE-2016-7086

    Last Modified: 12 Apr 2025

    The installer in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows allows local users to gain privileges via a Trojan horse setup64.exe file in the installation directory.

    Published: 29 Dec 2016
    7.8
    High

    CVE-2016-7080

    Last Modified: 12 Apr 2025

    The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors, a different vulnerability than CVE-2016-7079.

    Published: 29 Dec 2016
    5.3
    Medium

    CVE-2016-7087

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in the Connection Server in VMware Horizon View 5.x before 5.3.7, 6.x before 6.2.3, and 7.x before 7.0.1 allows remote attackers to obtain sensitive information via unspecified vectors.

    Published: 29 Dec 2016
    9.8
    Critical

    CVE-2016-7456

    Last Modified: 12 Apr 2025

    VMware vSphere Data Protection (VDP) 5.5.x though 6.1.x has an SSH private key with a publicly known password, which makes it easier for remote attackers to obtain login access via an SSH session.

    Published: 29 Dec 2016
    5.8
    Medium

    CVE-2016-7458

    Last Modified: 12 Apr 2025

    VMware vSphere Client 5.5 before U3e and 6.0 before U2a allows remote vCenter Server and ESXi instances to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

    Published: 29 Dec 2016
    9.1
    Critical

    CVE-2016-7460

    Last Modified: 12 Apr 2025

    The Single Sign-On feature in VMware vCenter Server 5.5 before U3e and 6.0 before U2a and vRealize Automation 6.x before 6.2.5 allows remote attackers to read arbitrary files or cause a denial of service via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

    Published: 29 Dec 2016
    5.4
    Medium

    CVE-2016-7463

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Host Client in VMware vSphere Hypervisor (aka ESXi) 5.5 and 6.0 allows remote authenticated users to inject arbitrary web script or HTML via a crafted VM.

    Published: 29 Dec 2016
    5.5
    Medium

    CVE-2016-5328

    Last Modified: 12 Apr 2025

    VMware Tools 9.x and 10.x before 10.1.0 on OS X, when System Integrity Protection (SIP) is enabled, allows local users to determine kernel memory addresses and bypass the kASLR protection mechanism via unspecified vectors.

    Published: 29 Dec 2016
    5.5
    Medium

    CVE-2016-5329

    Last Modified: 12 Apr 2025

    VMware Fusion 8.x before 8.5 on OS X, when System Integrity Protection (SIP) is enabled, allows local users to determine kernel memory addresses and bypass the kASLR protection mechanism via unspecified vectors.

    Published: 29 Dec 2016
    5.3
    Medium

    CVE-2016-5334

    Last Modified: 12 Apr 2025

    VMware Identity Manager 2.x before 2.7.1 and vRealize Automation 7.x before 7.2.0 allow remote attackers to read /SAAS/WEB-INF and /SAAS/META-INF files via unspecified vectors.

    Published: 29 Dec 2016
    7.8
    High

    CVE-2016-7081

    Last Modified: 12 Apr 2025

    Multiple heap-based buffer overflows in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allow guest OS users to execute arbitrary code on the host OS via unspecified vectors.

    Published: 29 Dec 2016
    7.8
    High

    CVE-2016-7082

    Last Modified: 12 Apr 2025

    VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allow guest OS users to execute arbitrary code on the host OS or cause a denial of service (host OS memory corruption) via an EMF file.

    Published: 29 Dec 2016
    7.8
    High

    CVE-2016-7083

    Last Modified: 12 Apr 2025

    VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allow guest OS users to execute arbitrary code on the host OS or cause a denial of service (host OS memory corruption) via TrueType fonts embedded in EMFSPOOL.

    Published: 29 Dec 2016
    7.8
    High

    CVE-2016-7084

    Last Modified: 12 Apr 2025

    tpview.dll in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allows guest OS users to execute arbitrary code on the host OS or cause a denial of service (host OS memory corruption) via a JPEG 2000 image.

    Published: 29 Dec 2016
    7.8
    High

    CVE-2016-7085

    Last Modified: 12 Apr 2025

    Untrusted search path vulnerability in the installer in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows allows local users to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 29 Dec 2016
    10
    Critical

    CVE-2016-7457

    Last Modified: 12 Apr 2025

    VMware vRealize Operations (aka vROps) 6.x before 6.4.0 allows remote authenticated users to gain privileges, or halt and remove virtual machines, via unspecified vectors.

    Published: 29 Dec 2016
    7.7
    High

    CVE-2016-7459

    Last Modified: 12 Apr 2025

    VMware vCenter Server 5.5 before U3e and 6.0 before U2a allows remote authenticated users to read arbitrary files via a (1) Log Browser, (2) Distributed Switch setup, or (3) Content Library XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

    Published: 29 Dec 2016
    8.8
    High

    CVE-2016-7461

    Last Modified: 12 Apr 2025

    The drag-and-drop (aka DnD) function in VMware Workstation Pro 12.x before 12.5.2 and VMware Workstation Player 12.x before 12.5.2 and VMware Fusion and Fusion Pro 8.x before 8.5.2 allows guest OS users to execute arbitrary code on the host OS or cause a denial of service (out-of-bounds memory access on the host OS) via unspecified vectors.

    Published: 29 Dec 2016
    7.5
    High

    CVE-2016-10087

    Last Modified: 20 Apr 2025

    The png_set_text_2 function in libpng 0.71 before 1.0.67, 1.2.x before 1.2.57, 1.4.x before 1.4.20, 1.5.x before 1.5.28, and 1.6.x before 1.6.27 allows context-dependent attackers to cause a NULL pointer dereference vectors involving loading a text chunk into a png structure, removing the text, and then adding another text chunk to the structure.

    Published: 29 Dec 2016
    8.6
    High

    CVE-2016-10745

    Last Modified: 21 Nov 2024

    In Pallets Jinja before 2.8.1, str.format allows a sandbox escape.

    Published: 29 Dec 2016