CVE Feed

    Dashboard / CVE

    8.1
    High

    CVE-2016-7191

    Last Modified: 12 Apr 2025

    The Microsoft Azure Active Directory Passport (aka Passport-Azure-AD) library 1.x before 1.4.6 and 2.x before 2.0.1 for Node.js does not recognize the validateIssuer setting, which allows remote attackers to bypass authentication via a crafted token.

    Published: 28 Sept 2016
    5.5
    Medium

    CVE-2016-7796

    Last Modified: 12 Apr 2025

    The manager_dispatch_notify_fd function in systemd allows local users to cause a denial of service (system hang) via a zero-length message received over a notify socket, which causes an error to be returned and the notification handler to be disabled.

    Published: 28 Sept 2016
    5.5
    Medium

    CVE-2016-7977

    Last Modified: 20 Apr 2025

    Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently read arbitrary files via the use of the .libfile operator in a crafted postscript document.

    Published: 28 Sept 2016
    5.4
    Medium

    CVE-2016-5398

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Business Process Editor in Red Hat JBoss BPM Suite before 6.3.3 allows remote authenticated users to inject arbitrary web script or HTML by levering permission to create business processes.

    Published: 28 Sept 2016
    5.5
    Medium

    CVE-2016-7795

    Last Modified: 12 Apr 2025

    The manager_invoke_notify_message function in systemd 231 and earlier allows local users to cause a denial of service (assertion failure and PID 1 hang) via a zero-length message received over a notify socket.

    Published: 28 Sept 2016
    7.5
    High

    CVE-2016-10397

    Last Modified: 20 Apr 2025

    In PHP before 5.6.28 and 7.x before 7.0.13, incorrect handling of various URI components in the URL parser could be used by attackers to bypass hostname-specific URL checks, as demonstrated by evil.example.com:80#@good.example.com/ and evil.example.com:[email protected]/ inputs to the parse_url function (implemented in the php_url_parse_ex function in ext/standard/url.c).

    Published: 28 Sept 2016
    5.9
    Medium

    CVE-2016-7099

    Last Modified: 12 Apr 2025

    The tls.checkServerIdentity function in Node.js 0.10.x before 0.10.47, 0.12.x before 0.12.16, 4.x before 4.6.0, and 6.x before 6.7.0 does not properly handle wildcards in name fields of X.509 certificates, which allows man-in-the-middle attackers to spoof servers via a crafted certificate.

    Published: 28 Sept 2016
    5.4
    Medium

    CVE-2016-4058

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Huawei Policy Center before V100R003C10SPC020 allows remote authenticated users to inject arbitrary web script or HTML via vectors related to "special characters on pages."

    Published: 27 Sept 2016
    9.8
    Critical

    CVE-2016-6137

    Last Modified: 12 Apr 2025

    An unspecified function in SAP TREX 7.10 Revision 63 allows remote attackers to execute arbitrary OS commands via unknown vectors, aka SAP Security Note 2203591.

    Published: 27 Sept 2016
    5.3
    Medium

    CVE-2016-6146

    Last Modified: 12 Apr 2025

    The NameServer in SAP TREX 7.10 Revision 63 allows remote attackers to obtain sensitive TNS information via an unspecified query, aka SAP Security Note 2234226.

    Published: 27 Sept 2016
    7.5
    High

    CVE-2016-2776

    Last Modified: 12 Apr 2025

    buffer.c in named in ISC BIND 9 before 9.9.9-P3, 9.10.x before 9.10.4-P3, and 9.11.x before 9.11.0rc3 does not properly construct responses, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted query.

    Published: 27 Sept 2016
    9.8
    Critical

    CVE-2016-7567

    Last Modified: 20 Apr 2025

    Buffer overflow in the SLPFoldWhiteSpace function in common/slp_compare.c in OpenSLP 2.0 allows remote attackers to have unspecified impact via a crafted string.

    Published: 27 Sept 2016
    6
    Medium

    CVE-2016-8577

    Last Modified: 12 Apr 2025

    Memory leak in the v9fs_read function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption) via vectors related to an I/O read operation.

    Published: 27 Sept 2016
    6
    Medium

    CVE-2016-8578

    Last Modified: 12 Apr 2025

    The v9fs_iov_vunmarshal function in fsdev/9p-iov-marshal.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) by sending an empty string parameter to a 9P operation.

    Published: 27 Sept 2016
    9.1
    Critical

    CVE-2016-9180

    Last Modified: 12 Apr 2025

    perl-XML-Twig: The option to `expand_external_ents`, documented as controlling external entity expansion in XML::Twig does not work. External entities are always expanded, regardless of the option's setting.

    Published: 27 Sept 2016
    7.1
    High

    CVE-2016-9181

    Last Modified: 12 Apr 2025

    perl-Image-Info: When parsing an SVG file, external entity expansion (XXE) was not disabled. An attacker could craft an SVG file which, when processed by an application using perl-Image-Info, could cause denial of service or, potentially, information disclosure.

    Published: 27 Sept 2016
    Unknown

    CVE-2016-7554

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 26 Sept 2016
    6.5
    Medium

    CVE-2016-6038

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote authenticated users to read arbitrary files via a crafted URL.

    Published: 26 Sept 2016
    9.8
    Critical

    CVE-2016-6980

    Last Modified: 12 Apr 2025

    Use-after-free vulnerability in Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4263.

    Published: 26 Sept 2016
    4.3
    Medium

    CVE-2016-3639

    Last Modified: 12 Apr 2025

    SAP HANA DB 1.00.091.00.1418659308 allows remote attackers to obtain sensitive topology information via an unspecified HTTP request, aka SAP Security Note 2176128.

    Published: 26 Sept 2016
    7.5
    High

    CVE-2016-6142

    Last Modified: 12 Apr 2025

    SAP HANA DB 1.00.73.00.389160 (NewDB100_REL) allows remote attackers to inject arbitrary audit trail fields into the SYSLOG via vectors related to the SQL protocol, aka SAP Security Note 2197459.

    Published: 26 Sept 2016
    6.8
    Medium

    CVE-2016-6172

    Last Modified: 12 Apr 2025

    PowerDNS (aka pdns) Authoritative Server before 4.0.1 allows remote primary DNS servers to cause a denial of service (memory exhaustion and secondary DNS server crash) via a large (1) AXFR or (2) IXFR response.

    Published: 26 Sept 2016
    5.4
    Medium

    CVE-2016-6913

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in AlienVault OSSIM before 5.3 and USM before 5.3 allows remote attackers to inject arbitrary web script or HTML via the back parameter to ossim/conf/reload.php.

    Published: 26 Sept 2016
    6.5
    Medium

    CVE-2016-6826

    Last Modified: 12 Apr 2025

    Huawei AnyMail before 2.6.0301.0060 allows remote attackers to cause a denial of service (application crash) via a crafted compressed email attachment.

    Published: 26 Sept 2016
    6.5
    Medium

    CVE-2016-6901

    Last Modified: 12 Apr 2025

    Format string vulnerability in Huawei AR100, AR120, AR150, AR200, AR500, AR550, AR1200, AR2200, AR2500, AR3200, and AR3600 routers with software before V200R007C00SPC900 and NetEngine 16EX routers with software before V200R007C00SPC900 allows remote authenticated users to cause a denial of service via format string specifiers in vectors involving partial commands.

    Published: 26 Sept 2016
    6.5
    Medium

    CVE-2016-6827

    Last Modified: 12 Apr 2025

    Huawei FusionCompute before V100R005C10CP7002 stores cleartext AES keys in a file, which allows remote authenticated users to obtain sensitive information via unspecified vectors.

    Published: 26 Sept 2016
    7.5
    High

    CVE-2016-6518

    Last Modified: 12 Apr 2025

    Memory leak in Huawei S9300, S5300, S5700, S6700, S7700, S9700, and S12700 devices allows remote attackers to cause a denial of service (memory consumption and restart) via a large number of malformed packets.

    Published: 26 Sept 2016
    5.9
    Medium

    CVE-2016-7142

    Last Modified: 12 Apr 2025

    The m_sasl module in InspIRCd before 2.0.23, when used with a service that supports SASL_EXTERNAL authentication, allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted SASL message.

    Published: 26 Sept 2016
    5.1
    Medium

    CVE-2016-5746

    Last Modified: 12 Apr 2025

    libstorage, libstorage-ng, and yast-storage improperly store passphrases for encrypted storage devices in a temporary file on disk, which might allow local users to obtain sensitive information by reading the file, as demonstrated by /tmp/libstorage-XXXXXX/pwdf.

    Published: 26 Sept 2016
    9.8
    Critical

    CVE-2016-4303

    Last Modified: 12 Apr 2025

    The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a non-hex character in a JSON string, which triggers a heap-based buffer overflow.

    Published: 26 Sept 2016
    5.5
    Medium

    CVE-2016-8279

    Last Modified: 12 Apr 2025

    The video driver in Huawei Mate S smartphones with software CRR-TL00 before CRR-TL00C01B362, CRR-UL20 before CRR-UL20C00B362, CRR-CL00 before CRR-CL00C92B362, and CRR-CL20 before CRR-CL20C92B362; P8 smartphones with software GRA-TL00 before GRA-TL00C01B366, GRA-UL00 before GRA-UL00C00B366, GRA-UL10 before GRA-UL10C00B366, and GRA-CL00 before GRA-CL00C92B366; and Honor 6 and Honor 6 Plus smartphones with software before 6.9.16 allows attackers to cause a denial of service (device reboot) via a crafted application.

    Published: 26 Sept 2016
    7.8
    High

    CVE-2016-6276

    Last Modified: 12 Apr 2025

    Citrix Linux Virtual Delivery Agent (aka VDA, formerly Linux Virtual Desktop) before 1.4.0 allows local users to gain root privileges via unspecified vectors.

    Published: 26 Sept 2016
    4.8
    Medium

    CVE-2016-5395

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the create user functionality in the policy admin tool in Apache Ranger before 0.6.1 allows remote authenticated administrators to inject arbitrary web script or HTML via vectors related to policies.

    Published: 26 Sept 2016
    6.1
    Medium

    CVE-2016-6840

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the management interface in Huawei OceanStor ISM before V200R001C04SPC200 allows remote attackers to inject arbitrary web script or HTML via the loginName parameter to cgi-bin/doLogin_CgiEntry and possibly other unspecified vectors.

    Published: 26 Sept 2016
    3.1
    Low

    CVE-2016-0379

    Last Modified: 12 Apr 2025

    IBM WebSphere MQ 7.5 before 7.5.0.7 and 8.0 before 8.0.0.5 mishandles protocol flows, which allows remote authenticated users to cause a denial of service (channel outage) by leveraging queue-manager rights.

    Published: 26 Sept 2016
    8.8
    High

    CVE-2016-3007

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to hijack the authentication of arbitrary users.

    Published: 26 Sept 2016
    7.5
    High

    CVE-2016-5957

    Last Modified: 12 Apr 2025

    IBM Security Privileged Identity Manager (ISPIM) Virtual Appliance 2.x before 2.0.2 FP8 allows remote attackers to defeat cryptographic protection mechanisms and obtain sensitive information by leveraging a weak algorithm.

    Published: 26 Sept 2016
    6.8
    Medium

    CVE-2016-5977

    Last Modified: 12 Apr 2025

    Open redirect vulnerability in the web portal in IBM Tealeaf Customer Experience before 8.7.1.8847 FP10, 8.8 before 8.8.0.9049 FP9, 9.0.0 and 9.0.1 before 9.0.1.1117 FP5, 9.0.1A before 9.0.1.5108_9.0.1A FP5, 9.0.2 before 9.0.2.1223 FP3, and 9.0.2A before 9.0.2.5224_9.0.2A FP3 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

    Published: 26 Sept 2016
    6.5
    Medium

    CVE-2016-5970

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in IBM Security Privileged Identity Manager (ISPIM) Virtual Appliance 2.x before 2.0.2 FP8 allows remote authenticated users to read arbitrary files via a .. (dot dot) in a URL.

    Published: 26 Sept 2016
    5.4
    Medium

    CVE-2016-5978

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Web UI in the web portal in IBM Tealeaf Customer Experience before 8.7.1.8847 FP10, 8.8 before 8.8.0.9049 FP9, 9.0.0 and 9.0.1 before 9.0.1.1117 FP5, 9.0.1A before 9.0.1.5108_9.0.1A FP5, 9.0.2 before 9.0.2.1223 FP3, and 9.0.2A before 9.0.2.5224_9.0.2A FP3 allows remote authenticated users to inject arbitrary web script or HTML via an embedded string, a different vulnerability than CVE-2016-5975.

    Published: 26 Sept 2016
    7.5
    High

    CVE-2016-5996

    Last Modified: 12 Apr 2025

    The web portal in IBM Tealeaf Customer Experience before 8.7.1.8847 FP10, 8.8 before 8.8.0.9049 FP9, 9.0.0 and 9.0.1 before 9.0.1.1117 FP5, 9.0.1A before 9.0.1.5108_9.0.1A FP5, 9.0.2 before 9.0.2.1223 FP3, and 9.0.2A before 9.0.2.5224_9.0.2A FP3 does not enforce password-length restrictions, which makes it easier for remote attackers to obtain access via a brute-force attack.

    Published: 26 Sept 2016
    5.4
    Medium

    CVE-2016-3006

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Web UI in IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to inject arbitrary web script or HTML via an embedded string, a different vulnerability than CVE-2016-3001 and CVE-2016-3003.

    Published: 26 Sept 2016
    3.7
    Low

    CVE-2016-0248

    Last Modified: 12 Apr 2025

    IBM Security Guardium 9.0 before p700 and 10.0 before p100 allows man-in-the-middle attackers to obtain sensitive query-string information from SSL sessions via unspecified vectors.

    Published: 26 Sept 2016
    6.5
    Medium

    CVE-2016-2999

    Last Modified: 12 Apr 2025

    IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to obtain sensitive information via an unspecified brute-force attack.

    Published: 26 Sept 2016
    4.3
    Medium

    CVE-2016-3000

    Last Modified: 12 Apr 2025

    The help service in IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to cause a denial of service (service degradation) via a crafted URL.

    Published: 26 Sept 2016
    5.4
    Medium

    CVE-2016-3001

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Web UI in IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to inject arbitrary web script or HTML via an embedded string, a different vulnerability than CVE-2016-3003 and CVE-2016-3006.

    Published: 26 Sept 2016
    5.4
    Medium

    CVE-2016-3003

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Web UI in IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to inject arbitrary web script or HTML via an embedded string, a different vulnerability than CVE-2016-3001 and CVE-2016-3006.

    Published: 26 Sept 2016
    6.8
    Medium

    CVE-2016-3040

    Last Modified: 12 Apr 2025

    IBM WebSphere Application Server (WAS) Liberty, as used in IBM Security Privileged Identity Manager (ISPIM) Virtual Appliance 2.x before 2.0.2 FP8, allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

    Published: 26 Sept 2016
    5.4
    Medium

    CVE-2016-5943

    Last Modified: 12 Apr 2025

    IBM Spectrum Control (formerly Tivoli Storage Productivity Center) 5.2.x before 5.2.11 allows remote authenticated users to bypass intended access restrictions, and read task details or edit properties, via unspecified vectors.

    Published: 26 Sept 2016
    5.4
    Medium

    CVE-2016-5944

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Web UI in IBM Spectrum Control (formerly Tivoli Storage Productivity Center) 5.2.x before 5.2.11 allows remote authenticated users to inject arbitrary web script or HTML via an embedded string.

    Published: 26 Sept 2016