CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2016-5653

    Last Modified: 12 Apr 2025

    Multiple SQL injection vulnerabilities in Misys FusionCapital Opics Plus allow remote authenticated users to execute arbitrary SQL commands via the (1) ID or (2) Branch parameter.

    Published: 19 Jul 2016
    2.9
    Low

    CVE-2016-3485

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows local users to affect integrity via vectors related to Networking.

    Published: 19 Jul 2016
    5.3
    Medium

    CVE-2016-3498

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows remote attackers to affect availability via vectors related to JavaFX.

    Published: 19 Jul 2016
    5.3
    Medium

    CVE-2016-3500

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3508.

    Published: 19 Jul 2016
    7.7
    High

    CVE-2016-3511

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Deployment.

    Published: 19 Jul 2016
    9.6
    Critical

    CVE-2016-3606

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 7u101 and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot.

    Published: 19 Jul 2016
    9.6
    Critical

    CVE-2016-3610

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3598.

    Published: 19 Jul 2016
    7.5
    High

    CVE-2016-5391

    Last Modified: 20 Apr 2025

    libreswan before 3.18 allows remote attackers to cause a denial of service (NULL pointer dereference and pluto daemon restart).

    Published: 19 Jul 2016
    4.4
    Medium

    CVE-2016-6251

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 19 Jul 2016
    5.3
    Medium

    CVE-2016-3508

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2016-3500.

    Published: 19 Jul 2016
    8.8
    High

    CVE-2016-5401

    Last Modified: 20 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Red Hat JBoss BRMS and BPMS 6 allows remote attackers to hijack the authentication of users for requests that modify instances via a crafted web page.

    Published: 19 Jul 2016
    4.3
    Medium

    CVE-2016-3550

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality via vectors related to Hotspot.

    Published: 19 Jul 2016
    4.3
    Medium

    CVE-2016-3458

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; and Java SE Embedded 8u91 allows remote attackers to affect integrity via vectors related to CORBA.

    Published: 19 Jul 2016
    6.5
    Medium

    CVE-2016-3120

    Last Modified: 12 Apr 2025

    The validate_as_request function in kdc_util.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.13.6 and 1.4.x before 1.14.3, when restrict_anonymous_to_tgt is enabled, uses an incorrect client data structure, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via an S4U2Self request.

    Published: 19 Jul 2016
    8.1
    High

    CVE-2016-3552

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install.

    Published: 19 Jul 2016
    9.6
    Critical

    CVE-2016-3587

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot.

    Published: 19 Jul 2016
    9.6
    Critical

    CVE-2016-3598

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 8u92 and Java SE Embedded 8u91 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Libraries, a different vulnerability than CVE-2016-3610.

    Published: 19 Jul 2016
    7.8
    High

    CVE-2016-6252

    Last Modified: 20 Apr 2025

    Integer overflow in shadow 4.2.1 allows local users to gain privileges via crafted input to newuidmap.

    Published: 19 Jul 2016
    6.5
    Medium

    CVE-2016-6292

    Last Modified: 12 Apr 2025

    The exif_process_user_comment function in ext/exif/exif.c in PHP before 5.5.38, 5.6.x before 5.6.24, and 7.x before 7.0.9 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted JPEG image.

    Published: 19 Jul 2016
    7.7
    High

    CVE-2016-3503

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92 allows local users to affect confidentiality, integrity, and availability via vectors related to Install.

    Published: 19 Jul 2016
    6.6
    Medium

    CVE-2023-3106

    Last Modified: 20 Nov 2025

    A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although it is unlikely.

    Published: 18 Jul 2016
    8.1
    High

    CVE-2016-5388

    Last Modified: 12 Apr 2025

    Apache Tomcat 7.x through 7.0.70 and 8.x through 8.5.4, when the CGI Servlet is enabled, follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an application's outbound HTTP traffic to an arbitrary proxy server via a crafted Proxy header in an HTTP request, aka an "httpoxy" issue. NOTE: the vendor states "A mitigation is planned for future releases of Tomcat, tracked as CVE-2016-5388"; in other words, this is not a CVE ID for a vulnerability.

    Published: 18 Jul 2016
    8.8
    High

    CVE-2016-1000104

    Last Modified: 21 Nov 2024

    A security Bypass vulnerability exists in the FcgidPassHeader Proxy in mod_fcgid through 2016-07-07.

    Published: 18 Jul 2016
    5
    Medium

    CVE-2016-1000105

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 18 Jul 2016
    5.3
    Medium

    CVE-2016-1000111

    Last Modified: 25 Nov 2024

    Twisted before 16.3.1 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect CGI applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect a CGI application's outbound HTTP traffic to an arbitrary proxy server via a crafted Proxy header in an HTTP request, aka an "httpoxy" issue.

    Published: 18 Jul 2016
    5.9
    Medium

    CVE-2016-2775

    Last Modified: 12 Apr 2025

    ISC BIND 9.x before 9.9.9-P2, 9.10.x before 9.10.4-P2, and 9.11.x before 9.11.0b2, when lwresd or the named lwres option is enabled, allows remote attackers to cause a denial of service (daemon crash) via a long request that uses the lightweight resolver protocol.

    Published: 18 Jul 2016
    7.8
    High

    CVE-2016-5399

    Last Modified: 20 Apr 2025

    The bzread function in ext/bz2/bz2.c in PHP before 5.5.38, 5.6.x before 5.6.24, and 7.x before 7.0.9 allows remote attackers to cause a denial of service (out-of-bounds write) or execute arbitrary code via a crafted bz2 archive.

    Published: 18 Jul 2016
    6.1
    Medium

    CVE-2016-6186

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the dismissChangeRelatedObjectPopup function in contrib/admin/static/admin/js/admin/RelatedObjectLookups.js in Django before 1.8.14, 1.9.x before 1.9.8, and 1.10.x before 1.10rc1 allows remote attackers to inject arbitrary web script or HTML via vectors involving unsafe usage of Element.innerHTML.

    Published: 18 Jul 2016
    6.1
    Medium

    CVE-2016-1000110

    Last Modified: 21 Nov 2024

    The CGIHandler class in Python before 2.7.12 does not protect against the HTTP_PROXY variable name clash in a CGI script, which could allow a remote attacker to redirect HTTP requests.

    Published: 18 Jul 2016
    8.1
    High

    CVE-2016-5386

    Last Modified: 12 Apr 2025

    The net/http package in Go through 1.6 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect CGI applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect a CGI application's outbound HTTP traffic to an arbitrary proxy server via a crafted Proxy header in an HTTP request, aka an "httpoxy" issue.

    Published: 18 Jul 2016
    9.8
    Critical

    CVE-2016-6354

    Last Modified: 12 Apr 2025

    Heap-based buffer overflow in the yy_get_next_buffer function in Flex before 2.6.1 might allow context-dependent attackers to cause a denial of service or possibly execute arbitrary code via vectors involving num_to_read.

    Published: 18 Jul 2016
    8.1
    High

    CVE-2016-5385

    Last Modified: 12 Apr 2025

    PHP through 7.0.8 does not attempt to address RFC 3875 section 4.1.18 namespace conflicts and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an application's outbound HTTP traffic to an arbitrary proxy server via a crafted Proxy header in an HTTP request, as demonstrated by (1) an application that makes a getenv('HTTP_PROXY') call or (2) a CGI configuration of PHP, aka an "httpoxy" issue.

    Published: 18 Jul 2016
    8.1
    High

    CVE-2016-5387

    Last Modified: 12 Apr 2025

    The Apache HTTP Server through 2.4.23 follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an application's outbound HTTP traffic to an arbitrary proxy server via a crafted Proxy header in an HTTP request, aka an "httpoxy" issue. NOTE: the vendor states "This mitigation has been assigned the identifier CVE-2016-5387"; in other words, this is not a CVE ID for a vulnerability.

    Published: 18 Jul 2016
    6.2
    Medium

    CVE-2016-0321

    Last Modified: 12 Apr 2025

    IBM Personal Communications (aka PCOMM) 6.x before 6.0.17 and 12.x before 12.0.0.1 does not properly restrict credential extraction, which allows local users to discover passwords by leveraging access to the victim account and executing a PowerShell script.

    Published: 17 Jul 2016
    5.3
    Medium

    CVE-2016-0393

    Last Modified: 12 Apr 2025

    IBM Maximo Asset Management 7.5 before 7.5.0.10-TIV-MBS-IFIX002 and 7.6 before 7.6.0.5-TIV-MAMMT-FP001 allows remote attackers to obtain sensitive URL information by reading log files.

    Published: 17 Jul 2016
    8.8
    High

    CVE-2016-1448

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server 2.7 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuy92706.

    Published: 17 Jul 2016
    5.3
    Medium

    CVE-2016-1459

    Last Modified: 12 Apr 2025

    Cisco IOS 12.4 and 15.0 through 15.5 and IOS XE 3.13 through 3.17 allow remote authenticated users to cause a denial of service (device reload) via crafted attributes in a BGP message, aka Bug ID CSCuz21061.

    Published: 17 Jul 2016
    8.1
    High

    CVE-2016-3039

    Last Modified: 12 Apr 2025

    IBM Traveler 8.x and 9.x before 9.0.1.12 allows remote authenticated users to read arbitrary files or cause a denial of service (memory consumption) via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

    Published: 17 Jul 2016
    9.8
    Critical

    CVE-2016-6296

    Last Modified: 12 Apr 2025

    Integer signedness error in the simplestring_addn function in simplestring.c in xmlrpc-epi through 0.54.2, as used in PHP before 5.5.38, 5.6.x before 5.6.24, and 7.x before 7.0.9, allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a long first argument to the PHP xmlrpc_encode_request function.

    Published: 17 Jul 2016
    7.5
    High

    CVE-2015-1977

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in the Web Administration tool in IBM Tivoli Directory Server (ITDS) before 6.1.0.74-ISS-ISDS-IF0074, 6.2.x before 6.2.0.50-ISS-ISDS-IF0050, and 6.3.x before 6.3.0.43-ISS-ISDS-IF0043 and IBM Security Directory Server (ISDS) before 6.3.1.18-ISS-ISDS-IF0018 and 6.4.x before 6.4.0.9-ISS-ISDS-IF0009 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL.

    Published: 15 Jul 2016
    7.3
    High

    CVE-2016-0330

    Last Modified: 12 Apr 2025

    IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 mishandles password creation, which makes it easier for remote attackers to obtain access by leveraging an attack against the password algorithm.

    Published: 15 Jul 2016
    7.4
    High

    CVE-2016-0340

    Last Modified: 12 Apr 2025

    IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 mishandles session expiration, which allows remote attackers to hijack sessions by leveraging an unattended workstation.

    Published: 15 Jul 2016
    4.3
    Medium

    CVE-2016-0357

    Last Modified: 12 Apr 2025

    IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 allows remote attackers to conduct clickjacking attacks via a crafted web site.

    Published: 15 Jul 2016
    8.8
    High

    CVE-2016-5661

    Last Modified: 12 Apr 2025

    Accela Civic Platform Citizen Access portal relies on the client to restrict file types for uploads, which allows remote authenticated users to execute arbitrary code via modified _EventArgument and filename parameters.

    Published: 15 Jul 2016
    6.5
    Medium

    CVE-2016-2865

    Last Modified: 12 Apr 2025

    The GIT Integration component in IBM Rational Team Concert (RTC) 5.x before 5.0.2 iFix14 and 6.x before 6.0.1 iFix5 and Rational Collaborative Lifecycle Management 5.x before 5.0.2 iFix14 and 6.x before 6.0.1 iFix5 allows remote authenticated users to obtain sensitive information via a malformed request.

    Published: 15 Jul 2016
    5.4
    Medium

    CVE-2016-0269

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in IBM BigFix Platform 9.x before 9.1.8 and 9.2.x before 9.2.7 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.

    Published: 15 Jul 2016
    6.2
    Medium

    CVE-2016-0338

    Last Modified: 12 Apr 2025

    IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 allows local users to discover cleartext passwords by (1) reading a configuration file or (2) examining a process.

    Published: 15 Jul 2016
    5.6
    Medium

    CVE-2016-0339

    Last Modified: 12 Apr 2025

    IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 mishandles session identifiers after logout, which makes it easier for remote attackers to spoof users by leveraging knowledge of "traffic records."

    Published: 15 Jul 2016
    6.1
    Medium

    CVE-2016-5660

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in AttachmentsList.aspx in Accela Civic Platform Citizen Access portal allows remote attackers to inject arbitrary web script or HTML via the iframeid parameter.

    Published: 15 Jul 2016
    8.8
    High

    CVE-2016-5637

    Last Modified: 12 Apr 2025

    The restore_tqb_pixels function in libbpg 0.9.5 through 0.9.7 mishandles the transquant_bypass_enable_flag value, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds write) via a crafted BPG image, related to a "type confusion" issue.

    Published: 15 Jul 2016