CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2016-9434

    Last Modified: 12 Apr 2025

    An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.

    Published: 16 Aug 2016
    7.1
    High

    CVE-2016-10165

    Last Modified: 20 Apr 2025

    The Type_MLU_Read function in cmstypes.c in Little CMS (aka lcms2) allows remote attackers to obtain sensitive information or cause a denial of service via an image with a crafted ICC profile, which triggers an out-of-bounds heap read.

    Published: 15 Aug 2016
    5.5
    Medium

    CVE-2016-6828

    Last Modified: 12 Apr 2025

    The tcp_check_send_head function in include/net/tcp.h in the Linux kernel before 4.7.5 does not properly maintain certain SACK state after a failed data copy, which allows local users to cause a denial of service (tcp_xmit_retransmit_queue use-after-free and system crash) via a crafted SACK option.

    Published: 15 Aug 2016
    6.5
    Medium

    CVE-2016-9431

    Last Modified: 12 Apr 2025

    An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Infinite recursion vulnerability in w3m allows remote attackers to cause a denial of service via a crafted HTML page.

    Published: 14 Aug 2016
    7.8
    High

    CVE-2016-10052

    Last Modified: 20 Apr 2025

    Buffer overflow in the WriteProfile function in coders/jpeg.c in ImageMagick before 6.9.5-6 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file.

    Published: 13 Aug 2016
    5.5
    Medium

    CVE-2016-10374

    Last Modified: 20 Apr 2025

    perltidy through 20160302, as used by perlcritic, check-all-the-things, and other software, relies on the current working directory for certain output files and does not have a symlink-attack protection mechanism, which allows local users to overwrite arbitrary files by creating a symlink, as demonstrated by creating a perltidy.ERR symlink that the victim cannot delete.

    Published: 13 Aug 2016
    5.5
    Medium

    CVE-2016-5845

    Last Modified: 12 Apr 2025

    SAP SAPCAR does not check the return value of file operations when extracting files, which allows remote attackers to cause a denial of service (program crash) via an invalid file name in an archive file, aka SAP Security Note 2312905.

    Published: 12 Aug 2016
    5.8
    Medium

    CVE-2016-5847

    Last Modified: 12 Apr 2025

    SAP SAPCAR allows local users to change the permissions of arbitrary files and consequently gain privileges via a hard link attack on files extracted from an archive, possibly related to SAP Security Note 2327384.

    Published: 12 Aug 2016
    8.8
    High

    CVE-2016-4471

    Last Modified: 20 Apr 2025

    ManageIQ in CloudForms before 4.1 allows remote authenticated users to execute arbitrary code.

    Published: 12 Aug 2016
    8.8
    High

    CVE-2016-9423

    Last Modified: 12 Apr 2025

    An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.

    Published: 12 Aug 2016
    8.8
    High

    CVE-2016-9422

    Last Modified: 12 Apr 2025

    An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. The feed_table_tag function in w3m doesn't properly validate the value of table span, which allows remote attackers to cause a denial of service (stack and/or heap buffer overflow) and possibly execute arbitrary code via a crafted HTML page.

    Published: 11 Aug 2016
    6.1
    Medium

    CVE-2016-6316

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Action View in Ruby on Rails 3.x before 3.2.22.3, 4.x before 4.2.7.1, and 5.x before 5.0.0.1 might allow remote attackers to inject arbitrary web script or HTML via text declared as "HTML safe" and used as attribute values in tag handlers.

    Published: 11 Aug 2016
    7.1
    High

    CVE-2016-5424

    Last Modified: 12 Apr 2025

    PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 might allow remote authenticated users with the CREATEDB or CREATEROLE role to gain superuser privileges via a (1) " (double quote), (2) \ (backslash), (3) carriage return, or (4) newline character in a (a) database or (b) role name that is mishandled during an administrative operation.

    Published: 11 Aug 2016
    8.1
    High

    CVE-2016-7098

    Last Modified: 12 Apr 2025

    Race condition in wget 1.17 and earlier, when used in recursive or mirroring mode to download a single file, might allow remote servers to bypass intended access list restrictions by keeping an HTTP connection open.

    Published: 11 Aug 2016
    6.1
    Medium

    CVE-2016-3709

    Last Modified: 4 Nov 2025

    Possible cross-site scripting vulnerability in libxml after commit 960f0e2.

    Published: 11 Aug 2016
    8.3
    High

    CVE-2016-5423

    Last Modified: 12 Apr 2025

    PostgreSQL before 9.1.23, 9.2.x before 9.2.18, 9.3.x before 9.3.14, 9.4.x before 9.4.9, and 9.5.x before 9.5.4 allow remote authenticated users to cause a denial of service (NULL pointer dereference and server crash), obtain sensitive memory information, or possibly execute arbitrary code via (1) a CASE expression within the test value subexpression of another CASE or (2) inlining of an SQL function that implements the equality operator used for a CASE expression involving values of different types.

    Published: 11 Aug 2016
    7.5
    High

    CVE-2016-6317

    Last Modified: 12 Apr 2025

    Action Record in Ruby on Rails 4.2.x before 4.2.7.1 does not properly consider differences in parameter handling between the Active Record component and the JSON implementation, which allows remote attackers to bypass intended database-query restrictions and perform NULL checks or trigger missing WHERE clauses via a crafted request, as demonstrated by certain "[nil]" values, a related issue to CVE-2012-2660, CVE-2012-2694, and CVE-2013-0155.

    Published: 11 Aug 2016
    6
    Medium

    CVE-2016-6836

    Last Modified: 12 Apr 2025

    The vmxnet3_complete_packet function in hw/net/vmxnet3.c in QEMU (aka Quick Emulator) allows local guest OS administrators to obtain sensitive host memory information by leveraging failure to initialize the txcq_descr object.

    Published: 11 Aug 2016
    6
    Medium

    CVE-2016-7116

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to access host files outside the export path via a .. (dot dot) in an unspecified string.

    Published: 11 Aug 2016
    8.6
    High

    CVE-2016-6597

    Last Modified: 12 Apr 2025

    Sophos EAS Proxy before 6.2.0 for Sophos Mobile Control, when Lotus Traveler is enabled, allows remote attackers to access arbitrary web-resources from the backend mail system via a request for the resource, aka an Open Reverse Proxy vulnerability.

    Published: 10 Aug 2016
    5.4
    Medium

    CVE-2016-6320

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in app/assets/javascripts/host_edit_interfaces.js in Foreman before 1.12.2 allows remote authenticated users to inject arbitrary web script or HTML via the network interface device identifier in the host interface form.

    Published: 10 Aug 2016
    7.8
    High

    CVE-2016-3317

    Last Modified: 12 Apr 2025

    Microsoft Office 2010 SP2, Word 2007 SP3, Word 2010 SP2, Word for Mac 2011, Word 2016 for Mac, and Word Viewer allow remote attackers to execute arbitrary code via a crafted file, aka "Microsoft Office Memory Corruption Vulnerability."

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3313

    Last Modified: 12 Apr 2025

    Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016, Word 2016 for Mac, and Word Viewer allow remote attackers to execute arbitrary code via a crafted file, aka "Microsoft Office Memory Corruption Vulnerability."

    Published: 9 Aug 2016
    9.1
    Critical

    CVE-2016-3312

    Last Modified: 12 Apr 2025

    ActiveSyncProvider in Microsoft Windows 10 Gold and 1511 allows attackers to discover credentials by leveraging failure of Universal Outlook to obtain a secure connection, aka "Universal Outlook Information Disclosure Vulnerability."

    Published: 9 Aug 2016
    7.5
    High

    CVE-2016-3288

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code via a crafted web page, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3290.

    Published: 9 Aug 2016
    7.5
    High

    CVE-2016-3293

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 9 through 11 and Edge allow remote attackers to execute arbitrary code via a crafted web page, aka "Microsoft Browser Memory Corruption Vulnerability."

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3300

    Last Modified: 12 Apr 2025

    The Netlogon service in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT 8.1 improperly establishes secure communications channels, which allows local users to gain privileges by leveraging access to a domain-joined machine, aka "Netlogon Elevation of Privilege Vulnerability."

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3310

    Last Modified: 12 Apr 2025

    The kernel-mode drivers in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3308, CVE-2016-3309, and CVE-2016-3311.

    Published: 9 Aug 2016
    7
    High

    CVE-2016-3319

    Last Modified: 12 Apr 2025

    The PDF library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allows remote attackers to execute arbitrary code via a crafted PDF file, aka "Microsoft PDF Remote Code Execution Vulnerability."

    Published: 9 Aug 2016
    7.5
    High

    CVE-2016-3322

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 11 and Edge allow remote attackers to execute arbitrary code via a crafted web page, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3289.

    Published: 9 Aug 2016
    7.5
    High

    CVE-2016-3237

    Last Modified: 12 Apr 2025

    Kerberos in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allows man-in-the-middle attackers to bypass authentication via vectors related to a fallback to NTLM authentication during a domain account password change, aka "Kerberos Security Feature Bypass Vulnerability."

    Published: 9 Aug 2016
    5.3
    Medium

    CVE-2016-3299

    Last Modified: 12 Apr 2025

    Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow remote attackers to hijack network traffic or bypass intended Enhanced Protected Mode (EPM) or application container protection mechanisms, and consequently render untrusted content in a browser, by leveraging how NetBIOS validates responses, aka "NetBIOS Spoofing Vulnerability."

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3301

    Last Modified: 12 Apr 2025

    The Windows font library in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; Office 2007 SP3; Office 2010 SP2; Word Viewer; Skype for Business 2016; Lync 2013 SP1; Lync 2010; Lync 2010 Attendee; and Live Meeting 2007 Console allows remote attackers to execute arbitrary code via a crafted embedded font, aka "Windows Graphics Component RCE Vulnerability."

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3308

    Last Modified: 12 Apr 2025

    The kernel-mode drivers in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3309, CVE-2016-3310, and CVE-2016-3311.

    Published: 9 Aug 2016
    4.9
    Medium

    CVE-2016-3320

    Last Modified: 12 Apr 2025

    Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow attackers to bypass the Secure Boot protection mechanism by leveraging (1) administrative or (2) physical access to install a crafted boot manager, aka "Secure Boot Security Feature Bypass."

    Published: 9 Aug 2016
    2.5
    Low

    CVE-2016-3321

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 10 and 11 load different files for attempts to open a file:// URL depending on whether the file exists, which allows local users to enumerate files via vectors involving a file:// URL and an HTML5 sandbox iframe, aka "Internet Explorer Information Disclosure Vulnerability."

    Published: 9 Aug 2016
    7.5
    High

    CVE-2016-3289

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 11 and Edge allow remote attackers to execute arbitrary code via a crafted web page, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3322.

    Published: 9 Aug 2016
    7.5
    High

    CVE-2016-3290

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code via a crafted web page, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3288.

    Published: 9 Aug 2016
    7.5
    High

    CVE-2016-3296

    Last Modified: 12 Apr 2025

    The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability."

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3303

    Last Modified: 12 Apr 2025

    The Windows font library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Office 2007 SP3, Office 2010 SP2, Word Viewer, Skype for Business 2016, Lync 2013 SP1, Lync 2010, Lync 2010 Attendee, and Live Meeting 2007 Console allows remote attackers to execute arbitrary code via a crafted embedded font, aka "Windows Graphics Component RCE Vulnerability," a different vulnerability than CVE-2016-3304.

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3304

    Last Modified: 12 Apr 2025

    The Windows font library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Office 2007 SP3, Office 2010 SP2, Word Viewer, Skype for Business 2016, Lync 2013 SP1, Lync 2010, Lync 2010 Attendee, and Live Meeting 2007 Console allows remote attackers to execute arbitrary code via a crafted embedded font, aka "Windows Graphics Component RCE Vulnerability," a different vulnerability than CVE-2016-3303.

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3318

    Last Modified: 12 Apr 2025

    Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2013 RT SP1 allow remote attackers to execute arbitrary code via a crafted file, aka "Graphics Component Memory Corruption Vulnerability."

    Published: 9 Aug 2016
    5.5
    Medium

    CVE-2016-3315

    Last Modified: 12 Apr 2025

    Microsoft OneNote 2007 SP3, 2010 SP2, 2013 SP1, 2013 RT SP1, 2016, and 2016 for Mac allow remote attackers to obtain sensitive information via a crafted OneNote file, aka "Microsoft OneNote Information Disclosure Vulnerability."

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3316

    Last Modified: 12 Apr 2025

    Microsoft Word 2013 SP1, 2013 RT SP1, 2016, and 2016 for Mac allow remote attackers to execute arbitrary code via a crafted file, aka "Microsoft Office Memory Corruption Vulnerability."

    Published: 9 Aug 2016
    5.3
    Medium

    CVE-2016-3326

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 9 through 11 and Edge allow remote attackers to obtain sensitive information via a crafted web page, aka "Microsoft Browser Information Disclosure Vulnerability," a different vulnerability than CVE-2016-3327.

    Published: 9 Aug 2016
    5.3
    Medium

    CVE-2016-3327

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 9 through 11 and Edge allow remote attackers to obtain sensitive information via a crafted web page, aka "Microsoft Browser Information Disclosure Vulnerability," a different vulnerability than CVE-2016-3326.

    Published: 9 Aug 2016
    5.3
    Medium

    CVE-2016-3329

    Last Modified: 12 Apr 2025

    Microsoft Internet Explorer 9 through 11 and Edge allow remote attackers to determine the existence of files via a crafted webpage, aka "Internet Explorer Information Disclosure Vulnerability."

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3309

    Last Modified: 22 Apr 2026

    The kernel-mode drivers in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3308, CVE-2016-3310, and CVE-2016-3311.

    Published: 9 Aug 2016
    7.8
    High

    CVE-2016-3311

    Last Modified: 12 Apr 2025

    The kernel-mode drivers in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3308, CVE-2016-3309, and CVE-2016-3310.

    Published: 9 Aug 2016
    6.1
    Medium

    CVE-2016-4168

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Adobe Experience Manager 5.6.1, 6.0, and 6.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 9 Aug 2016