CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2016-9210

    Last Modified: 12 Apr 2025

    A vulnerability in the Cisco Unified Reporting upload tool accessed via the Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to modify arbitrary files on the file system. More Information: CSCvb61698. Known Affected Releases: 11.5(1.11007.2). Known Fixed Releases: 12.0(0.98000.168) 12.0(0.98000.178) 12.0(0.98000.399) 12.0(0.98000.510) 12.0(0.98000.536) 12.0(0.98500.7).

    Published: 14 Dec 2016
    7.5
    High

    CVE-2016-9212

    Last Modified: 12 Apr 2025

    A vulnerability in the Decrypt for End-User Notification configuration parameter of Cisco AsyncOS Software for Cisco Web Security Appliances could allow an unauthenticated, remote attacker to connect to a secure website over Secure Sockets Layer (SSL) or Transport Layer Security (TLS), even if the WSA is configured to block connections to the website. Affected Products: This vulnerability affects Cisco Web Security Appliances if the HTTPS decryption options are enabled and configured for the device to block connections to certain websites. More Information: CSCvb49012. Known Affected Releases: 9.0.1-162 9.1.1-074.

    Published: 14 Dec 2016
    8.8
    High

    CVE-2016-9905

    Last Modified: 25 Nov 2025

    A potentially exploitable crash in "EnumerateSubDocuments" while adding or removing sub-documents. This vulnerability affects Firefox ESR < 45.6 and Thunderbird < 45.6.

    Published: 14 Dec 2016
    7.5
    High

    CVE-2016-9904

    Last Modified: 25 Nov 2025

    An attacker could use a JavaScript Map/Set timing attack to determine whether an atom is used by another compartment/zone in specific contexts. This could be used to leak information, such as usernames embedded in JavaScript code, across websites. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.

    Published: 14 Dec 2016
    7.5
    High

    CVE-2016-9902

    Last Modified: 25 Nov 2025

    The Pocket toolbar button, once activated, listens for events fired from it's own pages but does not verify the origin of incoming events. This allows content from other origins to fire events and inject content and commands into the Pocket context. Note: this issue does not affect users with e10s enabled. This vulnerability affects Firefox ESR < 45.6 and Firefox < 50.1.

    Published: 14 Dec 2016
    7.5
    High

    CVE-2016-9900

    Last Modified: 25 Nov 2025

    External resources that should be blocked when loaded by SVG images can bypass security restrictions through the use of "data:" URLs. This could allow for cross-domain data leakage. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.

    Published: 14 Dec 2016
    9.8
    Critical

    CVE-2016-9899

    Last Modified: 25 Nov 2025

    Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.

    Published: 14 Dec 2016
    9.8
    Critical

    CVE-2016-9898

    Last Modified: 25 Nov 2025

    Use-after-free resulting in potentially exploitable crash when manipulating DOM subtrees in the Editor. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.

    Published: 14 Dec 2016
    6.1
    Medium

    CVE-2016-9895

    Last Modified: 25 Nov 2025

    Event handlers on "marquee" elements were executed despite a strict Content Security Policy (CSP) that disallowed inline JavaScript. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.

    Published: 14 Dec 2016
    9.8
    Critical

    CVE-2016-9893

    Last Modified: 25 Nov 2025

    Memory safety bugs were reported in Thunderbird 45.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.

    Published: 14 Dec 2016
    9.8
    Critical

    CVE-2016-9901

    Last Modified: 25 Nov 2025

    HTML tags received from the Pocket server will be processed without sanitization and any JavaScript code executed will be run in the "about:pocket-saved" (unprivileged) page, giving it access to Pocket's messaging API through HTML injection. This vulnerability affects Firefox ESR < 45.6 and Firefox < 50.1.

    Published: 14 Dec 2016
    7.5
    High

    CVE-2016-7030

    Last Modified: 20 Apr 2025

    FreeIPA uses a default password policy that locks an account after 5 unsuccessful authentication attempts, which allows remote attackers to cause a denial of service by locking out the account in which system services run on.

    Published: 14 Dec 2016
    5.3
    Medium

    CVE-2016-9585

    Last Modified: 21 Nov 2024

    Red Hat JBoss EAP version 5 is vulnerable to a deserialization of untrusted data in the JMX endpoint when deserializes the credentials passed to it. An attacker could exploit this vulnerability resulting in a denial of service attack.

    Published: 14 Dec 2016
    5.5
    Medium

    CVE-2016-10154

    Last Modified: 20 Apr 2025

    The smbhash function in fs/cifs/smbencrypt.c in the Linux kernel 4.9.x before 4.9.1 interacts incorrectly with the CONFIG_VMAP_STACK option, which allows local users to cause a denial of service (system crash or memory corruption) or possibly have unspecified other impact by leveraging use of more than one virtual page for a scatterlist.

    Published: 14 Dec 2016
    6.3
    Medium

    CVE-2016-9575

    Last Modified: 21 Nov 2024

    Ipa versions 4.2.x, 4.3.x before 4.3.3 and 4.4.x before 4.4.3 did not properly check the user's permissions while modifying certificate profiles in IdM's certprofile-mod command. An authenticated, unprivileged attacker could use this flaw to modify profiles to issue certificates with arbitrary naming or key usage information and subsequently use such certificates for other attacks.

    Published: 14 Dec 2016
    5.5
    Medium

    CVE-2016-9588

    Last Modified: 12 Apr 2025

    arch/x86/kvm/vmx.c in the Linux kernel through 4.9 mismanages the #BP and #OF exceptions, which allows guest OS users to cause a denial of service (guest OS crash) by declining to handle an exception thrown by an L2 guest.

    Published: 14 Dec 2016
    7.5
    High

    CVE-2016-9897

    Last Modified: 21 Nov 2024

    Memory corruption resulting in a potentially exploitable crash during WebGL functions using a vector constructor with a varying array within libGLES. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.

    Published: 14 Dec 2016
    7.8
    High

    CVE-2016-2334

    Last Modified: 12 Apr 2025

    Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZlibFile method in 7zip before 16.00 and p7zip allows remote attackers to execute arbitrary code via a crafted HFS+ image.

    Published: 13 Dec 2016
    6.1
    Medium

    CVE-2016-5060

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in nGrinder before 3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) description, (2) email, or (3) username parameter to user/save.

    Published: 13 Dec 2016
    9.8
    Critical

    CVE-2016-4322

    Last Modified: 12 Apr 2025

    BMC BladeLogic Server Automation (BSA) before 8.7 Patch 3 allows remote attackers to bypass authentication and consequently read arbitrary files or possibly have unspecified other impact by leveraging a "logic flaw" in the authentication process.

    Published: 13 Dec 2016
    7.8
    High

    CVE-2016-6699

    Last Modified: 12 Apr 2025

    A remote code execution vulnerability in libstagefright in Mediaserver in Android 7.0 before 2016-11-01 could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical due to the possibility of remote code execution within the context of the Mediaserver process. Android ID: A-31373622.

    Published: 13 Dec 2016
    5.5
    Medium

    CVE-2016-6711

    Last Modified: 12 Apr 2025

    A remote denial of service vulnerability in libvpx in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-11-01 could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High due to the possibility of remote denial of service. Android ID: A-30593765.

    Published: 13 Dec 2016
    5.5
    Medium

    CVE-2016-6722

    Last Modified: 12 Apr 2025

    An information disclosure vulnerability in libstagefright in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Android ID: A-31091777.

    Published: 13 Dec 2016
    7.8
    High

    CVE-2016-6706

    Last Modified: 12 Apr 2025

    An elevation of privilege vulnerability in libstagefright in Mediaserver in Android 7.0 before 2016-11-01 could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Android ID: A-31385713.

    Published: 13 Dec 2016
    5.5
    Medium

    CVE-2016-6712

    Last Modified: 12 Apr 2025

    A remote denial of service vulnerability in libvpx in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-11-01 could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High due to the possibility of remote denial of service. Android ID: A-30593752.

    Published: 13 Dec 2016
    5.5
    Medium

    CVE-2016-6720

    Last Modified: 12 Apr 2025

    An information disclosure vulnerability in libstagefright in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access sensitive data without permission. Android ID: A-29422020.

    Published: 13 Dec 2016
    7.8
    High

    CVE-2016-5647

    Last Modified: 12 Apr 2025

    The igdkmd64 module in the Intel Graphics Driver through 15.33.42.435, 15.36.x through 15.36.30.4385, and 15.40.x through 15.40.4404 on Windows allows local users to cause a denial of service (crash) or gain privileges via a crafted D3DKMTEscape request.

    Published: 13 Dec 2016
    5.5
    Medium

    CVE-2016-7438

    Last Modified: 12 Apr 2025

    The C software implementation of ECC in wolfSSL (formerly CyaSSL) before 3.9.10 makes it easier for local users to discover RSA keys by leveraging cache-bank hit differences.

    Published: 13 Dec 2016
    5.5
    Medium

    CVE-2016-7439

    Last Modified: 12 Apr 2025

    The C software implementation of RSA in wolfSSL (formerly CyaSSL) before 3.9.10 makes it easier for local users to discover RSA keys by leveraging cache-bank hit differences.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7892

    Last Modified: 21 Apr 2026

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the TextField class. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    3.7
    Low

    CVE-2016-8609

    Last Modified: 21 Nov 2024

    It was found that the keycloak before 2.3.0 did not implement authentication flow correctly. An attacker could use this flaw to construct a phishing URL, from which he could hijack the user's session. This could lead to information disclosure, or permit further possible attacks.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7867

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable buffer overflow / underflow vulnerability in the RegExp class related to bookmarking in searches. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7872

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the MovieClip class related to objects at multiple presentation levels. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7877

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the Action Message Format serialization (AFM0). Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    3.3
    Low

    CVE-2016-9932

    Last Modified: 20 Apr 2025

    CMPXCHG8B emulation in Xen 3.3.x through 4.7.x on x86 systems allows local HVM guest OS users to obtain sensitive information from host stack memory via a "supposedly-ignored" operand size prefix.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7869

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable buffer overflow / underflow vulnerability in the RegExp class related to backtrack search functionality. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7870

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable buffer overflow / underflow vulnerability in the RegExp class for specific search strategies. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7871

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable memory corruption vulnerability in the Worker class. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7874

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable memory corruption vulnerability in the NetConnection class when handling the proxy types. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7875

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable integer overflow vulnerability in the BitmapData class. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7876

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable memory corruption vulnerability in the Clipboard class related to data handling functionality. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7879

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the NetConnection class when handling an attached script object. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7880

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability when setting the length property of an array object. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7881

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the MovieClip class when handling conversion to an object. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7873

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable memory corruption vulnerability in the PSDK class related to ad policy functionality method. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7868

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable buffer overflow / underflow vulnerability in the RegExp class related to alternation functionality. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7878

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the PSDK's MediaPlayer class. Successful exploitation could lead to arbitrary code execution.

    Published: 13 Dec 2016
    8.8
    High

    CVE-2016-7890

    Last Modified: 12 Apr 2025

    Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have security bypass vulnerability in the implementation of the same origin policy.

    Published: 13 Dec 2016
    9.8
    Critical

    CVE-2016-9565

    Last Modified: 12 Apr 2025

    MagpieRSS, as used in the front-end component in Nagios Core before 4.2.2 might allow remote attackers to read or write to arbitrary files by spoofing a crafted response from the Nagios RSS feed server. NOTE: this vulnerability exists because of an incomplete fix for CVE-2008-4796.

    Published: 13 Dec 2016
    7.5
    High

    CVE-2016-9937

    Last Modified: 12 Apr 2025

    An issue was discovered in Asterisk Open Source 13.12.x and 13.13.x before 13.13.1 and 14.x before 14.2.1. If an SDP offer or answer is received with the Opus codec and with the format parameters separated using a space the code responsible for parsing will recursively call itself until it crashes. This occurs as the code does not properly handle spaces separating the parameters. This does NOT require the endpoint to have Opus configured in Asterisk. This also does not require the endpoint to be authenticated. If guest is enabled for chan_sip or anonymous in chan_pjsip an SDP offer or answer is still processed and the crash occurs.

    Published: 12 Dec 2016