CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2016-9964

    Last Modified: 12 Apr 2025

    redirect() in bottle.py in bottle 0.12.10 doesn't filter a "\r\n" sequence, which leads to a CRLF attack, as demonstrated by a redirect("233\r\nSet-Cookie: name=salt") call.

    Published: 16 Dec 2016
    9.8
    Critical

    CVE-2016-9965

    Last Modified: 12 Apr 2025

    Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allows attackers to crash the system easily resulting in a possible DoS attack, or possibly gain privileges. The Samsung ID is SVE-2016-7119.

    Published: 16 Dec 2016
    9.8
    Critical

    CVE-2016-9966

    Last Modified: 12 Apr 2025

    Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allows attackers to crash the system easily resulting in a possible DoS attack, or possibly gain privileges. The Samsung ID is SVE-2016-7120.

    Published: 16 Dec 2016
    9.8
    Critical

    CVE-2016-9967

    Last Modified: 12 Apr 2025

    Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allows attackers to crash the system easily resulting in a possible DoS attack, or possibly gain privileges. The Samsung ID is SVE-2016-7121.

    Published: 16 Dec 2016
    9.8
    Critical

    CVE-2013-1430

    Last Modified: 12 Apr 2025

    An issue was discovered in xrdp before 0.9.1. When successfully logging in using RDP into an xrdp session, the file ~/.vnc/sesman_${username}_passwd is created. Its content is the equivalent of the user's cleartext password, DES encrypted with a known key.

    Published: 16 Dec 2016
    6.6
    Medium

    CVE-2016-3129

    Last Modified: 12 Apr 2025

    A remote shell execution vulnerability in the BlackBerry Good Enterprise Mobility Server (GEMS) implementation of the Apache Karaf command shell in GEMS versions 2.1.5.3 to 2.2.22.25 allows remote attackers to obtain local administrator rights on the GEMS server via commands executed on the Karaf command shell.

    Published: 16 Dec 2016
    7.4
    High

    CVE-2016-6657

    Last Modified: 12 Apr 2025

    An open redirect vulnerability has been detected with some Pivotal Cloud Foundry Elastic Runtime components. Users of affected versions should apply the following mitigation: Upgrade PCF Elastic Runtime 1.8.x versions to 1.8.12 or later. Upgrade PCF Ops Manager 1.7.x versions to 1.7.18 or later and 1.8.x versions to 1.8.10 or later.

    Published: 16 Dec 2016
    7.5
    High

    CVE-2016-9837

    Last Modified: 12 Apr 2025

    An issue was discovered in templates/beez3/html/com_content/article/default.php in Joomla! before 3.6.5. Inadequate permissions checks in the Beez3 layout override of the com_content article view allow users to view articles that should not be publicly accessible, as demonstrated by an index.php?option=com_content&view=article&id=1&template=beez3 request.

    Published: 16 Dec 2016
    7.5
    High

    CVE-2016-9838

    Last Modified: 12 Apr 2025

    An issue was discovered in components/com_users/models/registration.php in Joomla! before 3.6.5. Incorrect filtering of registration form data stored to the session on a validation error enables a user to gain access to a registered user's account and reset the user's group mappings, username, and password, as demonstrated by submitting a form that targets the `registration.register` task.

    Published: 16 Dec 2016
    7.2
    High

    CVE-2016-6656

    Last Modified: 12 Apr 2025

    An issue was discovered in Pivotal Greenplum before 4.3.10.0. Creation of external tables using GPHDFS protocol has a vulnerability whereby arbitrary commands can be injected into the system. In order to exploit this vulnerability the user must have superuser 'gpadmin' access to the system or have been granted GPHDFS protocol permissions in order to create a GPHDFS external table.

    Published: 16 Dec 2016
    5.9
    Medium

    CVE-2016-9963

    Last Modified: 20 Apr 2025

    Exim before 4.87.1 might allow remote attackers to obtain the private DKIM signing key via vectors related to log files and bounce messages.

    Published: 16 Dec 2016
    7.5
    High

    CVE-2016-10002

    Last Modified: 20 Apr 2025

    Incorrect processing of responses to If-None-Modified HTTP conditional requests in Squid HTTP Proxy 3.1.10 through 3.1.23, 3.2.0.3 through 3.5.22, and 4.0.1 through 4.0.16 leads to client-specific Cookie data being leaked to other clients. Attack requests can easily be crafted by a client to probe a cache for this information.

    Published: 16 Dec 2016
    7.5
    High

    CVE-2016-10003

    Last Modified: 20 Apr 2025

    Incorrect HTTP Request header comparison in Squid HTTP Proxy 3.5.0.1 through 3.5.22, and 4.0.1 through 4.0.16 results in Collapsed Forwarding feature mistakenly identifying some private responses as being suitable for delivery to multiple clients.

    Published: 16 Dec 2016
    7.5
    High

    CVE-2017-6318

    Last Modified: 20 Apr 2025

    saned in sane-backends 1.0.25 allows remote attackers to obtain sensitive memory information via a crafted SANE_NET_CONTROL_OPTION packet.

    Published: 16 Dec 2016
    Unknown

    CVE-2017-3769

    Last Modified: 29 Jul 2024

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 16 Dec 2016
    5.5
    Medium

    CVE-2016-9591

    Last Modified: 21 Nov 2024

    JasPer before version 2.0.12 is vulnerable to a use-after-free in the way it decodes certain JPEG 2000 image files resulting in a crash on the application using JasPer.

    Published: 16 Dec 2016
    Unknown

    CVE-2017-3755

    Last Modified: 29 Jul 2024

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 16 Dec 2016
    Unknown

    CVE-2017-3766

    Last Modified: 29 Jul 2024

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 16 Dec 2016
    5.3
    Medium

    CVE-2015-3271

    Last Modified: 12 Apr 2025

    Apache Tika server (aka tika-server) in Apache Tika 1.9 might allow remote attackers to read arbitrary files via the HTTP fileUrl header.

    Published: 15 Dec 2016
    Unknown

    CVE-2016-8708

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-8823. Reason: This candidate is a reservation duplicate of CVE-2016-8823. Notes: All CVE users should reference CVE-2016-8823 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-5740

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.2-rev5. JavaScript code can be used as part of ical attachments within scheduling E-Mails. This content, for example an appointment's location, will be presented to the user at the E-Mail App, depending on the invitation workflow. This code gets executed within the context of the user's current session. Malicious script code can be executed within a user's context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.).

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-6842

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.2-rev8. Setting the user's name to JS code makes that code execute when selecting that user's "Templates" folder from OX Documents settings. This requires the folder to be shared to the victim. Malicious script code can be executed within a user's context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.).

    Published: 15 Dec 2016
    5.5
    Medium

    CVE-2016-6848

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.2-rev8. API requests can be used to inject, generate and download executable files to the client ("Reflected File Download"). Malicious platform specific (e.g. Microsoft Windows) batch file can be created via a trusted domain without authentication that, if executed by the user, may lead to local code execution.

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-6934

    Last Modified: 12 Apr 2025

    Adobe Experience Manager Forms versions 6.2 and earlier, LiveCycle 11.0.1, LiveCycle 10.0.4 have an input validation issue in the PMAdmin module that could be used in cross-site scripting attacks.

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-7883

    Last Modified: 12 Apr 2025

    Adobe Experience Manager version 6.2 has an input validation issue in create Launch wizard that could be used in cross-site scripting attacks.

    Published: 15 Dec 2016
    9.8
    Critical

    CVE-2016-7886

    Last Modified: 12 Apr 2025

    Adobe InDesign version 11.4.1 and earlier, Adobe InDesign Server 11.0.0 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-7891

    Last Modified: 12 Apr 2025

    Adobe RoboHelp version 2015.0.3 and earlier, RoboHelp 11 and earlier have an input validation issue that could be used in cross-site scripting attacks.

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-2840

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange Server 6 / OX AppSuite before 7.8.0-rev26. The "session" parameter for file-download requests can be used to inject script code that gets reflected through the subsequent status page. Malicious script code can be executed within a trusted domain's context. While no OX App Suite specific data can be manipulated, the vulnerability can be exploited without being authenticated and therefore used for social engineering attacks, stealing cookies or redirecting from trustworthy to malicious hosts.

    Published: 15 Dec 2016
    8.8
    High

    CVE-2015-8542

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange Guard before 2.2.0-rev8. The "getprivkeybyid" API call is used to download a PGP Private Key for a specific user after providing authentication credentials. Clients provide the "id" and "cid" parameter to specify the current user by its user- and context-ID. The "auth" parameter contains a hashed password string which gets created by the client by asking the user to enter his or her OX Guard password. This parameter is used as single point of authentication when accessing PGP Private Keys. In case a user has set the same password as another user, it is possible to download another user's PGP Private Key by iterating the "id" and "cid" parameters. This kind of attack would also be able by brute-forcing login credentials, but since the "id" and "cid" parameters are sequential they are much easier to predict than a user's login name. At the same time, there are some obvious insecure standard passwords that are widely used. A attacker could send the hashed representation of typically weak passwords and randomly fetch Private Key of matching accounts. The attack can be executed by both internal users and "guests" which use the external mail reader.

    Published: 15 Dec 2016
    5.4
    Medium

    CVE-2016-3173

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX AppSuite before 7.8.0-rev27. The aria-label parameter of tiles at the Portal can be used to inject script code. Those labels use the name of the file (e.g. an image) which gets displayed at the portal application. Using script code at the file name leads to script execution. Malicious script code can be executed within a user's context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.). Users actively need to add a file to the portal to enable this attack. In case of shared files however, a internal attacker may modify a previously embedded file to carry a malicious file name. Furthermore this vulnerability can be used to persistently execute code that got injected by a temporary script execution vulnerability.

    Published: 15 Dec 2016
    7.4
    High

    CVE-2016-3174

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX AppSuite before 7.8.0-rev27. The "defer" servlet offers to redirect a client to a specified URL. Since some checks were missing, arbitrary URLs could be provided as redirection target. Users can be tricked to follow a link to a trustworthy domain but end up at an unexpected service later on. This vulnerability can be used to prepare and enhance phishing attacks.

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-4026

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.1-rev11. The content sanitizer component has an issue with filtering malicious content in case invalid HTML code is provided. In such cases the filter will output a unsanitized representation of the content. Malicious script code can be executed within a user's context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.). Attackers can use this issue for filter evasion to inject script code later on.

    Published: 15 Dec 2016
    4.3
    Medium

    CVE-2016-4047

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.1-rev8. References to external Open XML document type definitions (.dtd resources) can be placed within .docx and .xslx files. Those resources were requested when parsing certain parts of the generated document. As a result an attacker can track access to a manipulated document. Usage of a document may get tracked and information about internal infrastructure may get exposed.

    Published: 15 Dec 2016
    4.3
    Medium

    CVE-2016-4048

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.1-rev11. Custom messages can be shown at the login screen to notify external users about issues with sharing links. This mechanism can be abused to inject arbitrary text messages. Users may get tricked to follow instructions injected by third parties as part of social engineering attacks.

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-6844

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.2-rev8. Script code within SVG files is maintained when opening such files "in browser" based on our Mail or Drive app. In case of "a" tags, this may include link targets with base64 encoded "data" references. Malicious script code can be executed within a user's context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.).

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-6845

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.2-rev8. Script code within hyperlinks at HTML E-Mails is not getting correctly sanitized when using base64 encoded "data" resources. This allows an attacker to provide hyperlinks that may execute script code instead of directing to a proper location. Malicious script code can be executed within a user's context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.).

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-6847

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.2-rev8. SVG files can be used as mp3 album covers. In case their XML structure contains script code, that code may get executed when calling the related cover URL. Malicious script code can be executed within a user's context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.).

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-6851

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX Guard before 2.4.2-rev5. Script code can be provided as parameter to the OX Guard guest reader web application. This allows cross-site scripting attacks against arbitrary users since no prior authentication is needed. Malicious script code can be executed within a user's context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.) in case the user has an active session on the same domain already.

    Published: 15 Dec 2016
    4.3
    Medium

    CVE-2016-6852

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.2-rev8. Users can provide local file paths to the RSS reader; the response and error code give hints about whether the provided file exists or not. Attackers may discover specific system files or library versions on the middleware server to prepare further attacks.

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-6853

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX Guard before 2.4.2-rev5. Script code and references to external websites can be injected to the names of PGP public keys. When requesting that key later on using a specific URL, such script code might get executed. In case of injecting external websites, users might get lured into a phishing scheme. Malicious script code can be executed within a user's context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.).

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-6854

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX Guard before 2.4.2-rev5. Script code which got injected to a mail with inline PGP signature gets executed when verifying the signature. Malicious script code can be executed within a user's context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.).

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-6933

    Last Modified: 12 Apr 2025

    Adobe Experience Manager Forms versions 6.2 and earlier, LiveCycle 11.0.1, LiveCycle 10.0.4 have an input validation issue in the AACComponent that could be used in cross-site scripting attacks.

    Published: 15 Dec 2016
    9.8
    Critical

    CVE-2016-7856

    Last Modified: 12 Apr 2025

    Adobe DNG Converter versions 9.7 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 15 Dec 2016
    9.8
    Critical

    CVE-2016-7866

    Last Modified: 12 Apr 2025

    Adobe Animate versions 15.2.1.95 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.

    Published: 15 Dec 2016
    6.1
    Medium

    CVE-2016-7882

    Last Modified: 12 Apr 2025

    Adobe Experience Manager versions 6.2 and earlier have an input validation issue in the WCMDebug filter that could be used in cross-site scripting attacks.

    Published: 15 Dec 2016
    8.8
    High

    CVE-2016-7885

    Last Modified: 12 Apr 2025

    Adobe Experience Manager versions 6.2 and earlier have a vulnerability that could be used in Cross-Site Request Forgery attacks.

    Published: 15 Dec 2016
    7.5
    High

    CVE-2016-7887

    Last Modified: 12 Apr 2025

    Adobe ColdFusion Builder versions 2016 update 2 and earlier, 3.0.3 and earlier have an important vulnerability that could lead to information disclosure.

    Published: 15 Dec 2016
    5.3
    Medium

    CVE-2016-7888

    Last Modified: 12 Apr 2025

    Adobe Digital Editions versions 4.5.2 and earlier has an important vulnerability that could lead to memory address leak.

    Published: 15 Dec 2016
    7.5
    High

    CVE-2016-7889

    Last Modified: 12 Apr 2025

    Adobe Digital Editions versions 4.5.2 and earlier has an issue with parsing crafted XML entries that could lead to information disclosure.

    Published: 15 Dec 2016
    3.5
    Low

    CVE-2016-4027

    Last Modified: 12 Apr 2025

    An issue was discovered in Open-Xchange OX App Suite before 7.8.1-rev10. App Suite frontend offers to control whether a user wants to store cookies that exceed the session duration. This functionality is useful when logging in from clients with reduced privileges or shared environments. However the setting was incorrectly recognized and cookies were stored regardless of this setting when the login was performed using a non-interactive login method. In case the setting was enforced by middleware configuration or the user went through the interactive login page, the workflow was correct. Cookies with authentication information may become available to other users on shared environments. In case the user did not properly log out from the session, third parties with access to the same client can access a user's account.

    Published: 15 Dec 2016