CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2016-3804

    Last Modified: 12 Apr 2025

    The MediaTek power management driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28332766 and MediaTek internal bug ALPS02694410.

    Published: 11 Jul 2016
    7.8
    High

    CVE-2016-3805

    Last Modified: 12 Apr 2025

    The MediaTek power management driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28333002 and MediaTek internal bug ALPS02694412.

    Published: 11 Jul 2016
    7.8
    High

    CVE-2016-3806

    Last Modified: 12 Apr 2025

    The MediaTek display driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28402341 and MediaTek internal bug ALPS02715341.

    Published: 11 Jul 2016
    7.8
    High

    CVE-2016-3807

    Last Modified: 12 Apr 2025

    The serial peripheral interface driver in Android before 2016-07-05 on Nexus 5X and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 28402196.

    Published: 11 Jul 2016
    5.5
    Medium

    CVE-2016-3810

    Last Modified: 12 Apr 2025

    The MediaTek Wi-Fi driver in Android before 2016-07-05 on Android One devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28175522 and MediaTek internal bug ALPS02694389.

    Published: 11 Jul 2016
    7.8
    High

    CVE-2016-3811

    Last Modified: 12 Apr 2025

    The kernel video driver in Android before 2016-07-05 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 28447556.

    Published: 11 Jul 2016
    5.5
    Medium

    CVE-2016-3812

    Last Modified: 12 Apr 2025

    The MediaTek video codec driver in Android before 2016-07-05 on Android One devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28174833 and MediaTek internal bug ALPS02688832.

    Published: 11 Jul 2016
    5.5
    Medium

    CVE-2016-3813

    Last Modified: 12 Apr 2025

    The Qualcomm USB driver in Android before 2016-07-05 on Nexus 5, 5X, 6, and 6P devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28172322 and Qualcomm internal bug CR1010222.

    Published: 11 Jul 2016
    5.5
    Medium

    CVE-2016-3814

    Last Modified: 12 Apr 2025

    The NVIDIA camera driver in Android before 2016-07-05 on Nexus 9 devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28193342.

    Published: 11 Jul 2016
    5.5
    Medium

    CVE-2016-3815

    Last Modified: 12 Apr 2025

    The NVIDIA camera driver in Android before 2016-07-05 on Nexus 9 devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28522274.

    Published: 11 Jul 2016
    5.5
    Medium

    CVE-2016-3818

    Last Modified: 12 Apr 2025

    libc in Android 4.x before 4.4.4 allows remote attackers to cause a denial of service (device hang or reboot) via a crafted file, aka internal bug 28740702.

    Published: 11 Jul 2016
    5.5
    Medium

    CVE-2016-6197

    Last Modified: 12 Apr 2025

    fs/overlayfs/dir.c in the OverlayFS filesystem implementation in the Linux kernel before 4.6 does not properly verify the upper dentry before proceeding with unlink and rename system-call processing, which allows local users to cause a denial of service (system crash) via a rename system call that specifies a self-hardlink.

    Published: 11 Jul 2016
    5.5
    Medium

    CVE-2016-6198

    Last Modified: 12 Apr 2025

    The filesystem layer in the Linux kernel before 4.5.5 proceeds with post-rename operations after an OverlayFS file is renamed to a self-hardlink, which allows local users to cause a denial of service (system crash) via a rename system call, related to fs/namei.c and fs/open.c.

    Published: 11 Jul 2016
    4.6
    Medium

    CVE-2016-5011

    Last Modified: 20 Apr 2025

    The parse_dos_extended function in partitions/dos.c in the libblkid library in util-linux allows physically proximate attackers to cause a denial of service (memory consumption) via a crafted MSDOS partition table with an extended partition boot record at zero offset.

    Published: 11 Jul 2016
    9.1
    Critical

    CVE-2016-6223

    Last Modified: 20 Apr 2025

    The TIFFReadRawStrip1 and TIFFReadRawTile1 functions in tif_read.c in libtiff before 4.0.7 allows remote attackers to cause a denial of service (crash) or possibly obtain sensitive information via a negative index in a file-content buffer.

    Published: 10 Jul 2016
    Unknown

    CVE-2016-3794

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-3814. Reason: This candidate is a reservation duplicate of CVE-2016-3814. Notes: All CVE users should reference CVE-2016-3814 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 8 Jul 2016
    8.8
    High

    CVE-2016-0315

    Last Modified: 12 Apr 2025

    The Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 maintain session ID validity after a logout action, which allows remote authenticated users to hijack sessions by leveraging an unattended workstation.

    Published: 8 Jul 2016
    7.8
    High

    CVE-2016-0287

    Last Modified: 12 Apr 2025

    IBM i Access 7.1 on Windows allows local users to discover registry passwords via unspecified vectors.

    Published: 8 Jul 2016
    5.4
    Medium

    CVE-2016-0350

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-2888 and CVE-2016-0313.

    Published: 8 Jul 2016
    5.1
    Medium

    CVE-2016-0252

    Last Modified: 12 Apr 2025

    IBM Control Center 6.x before 6.0.0.1 iFix06 and Sterling Control Center 5.4.x before 5.4.2.1 iFix09 allow local users to decrypt the master key via unspecified vectors.

    Published: 8 Jul 2016
    8.2
    High

    CVE-2016-0271

    Last Modified: 12 Apr 2025

    The agents in IBM UrbanCode Deploy 6.x before 6.0.1.14, 6.1.x before 6.1.3.3, and 6.2.x before 6.2.1.1 do not verify a server's identity in a JMS session or an HTTP session, which allows local users to obtain root access to arbitrary agents via unspecified vectors.

    Published: 8 Jul 2016
    5.4
    Medium

    CVE-2016-0313

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-2888 and CVE-2016-0350.

    Published: 8 Jul 2016
    6.5
    Medium

    CVE-2016-0314

    Last Modified: 12 Apr 2025

    The Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allow remote authenticated users to conduct clickjacking attacks via unspecified vectors.

    Published: 8 Jul 2016
    5.4
    Medium

    CVE-2016-2888

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016 and 6.x before 6.0.1 ifix005 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-0313 and CVE-2016-0350.

    Published: 8 Jul 2016
    8.8
    High

    CVE-2016-2889

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in the Report Builder and Data Collection Component (DCC) in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2 ifix016, 6.0 and 6.0.1 before 6.0.1 ifix005, and 6.0.2 before ifix002 allows remote authenticated users to hijack the authentication of arbitrary users.

    Published: 8 Jul 2016
    7.5
    High

    CVE-2016-2945

    Last Modified: 12 Apr 2025

    The API Discovery implementation in IBM WebSphere Application Server (WAS) 8.5.5.8 through 8.5.5.9 Liberty before Liberty Fix Pack 16.0.0.2 allows remote authenticated users to gain privileges via an external reference in a Swagger document.

    Published: 8 Jul 2016
    9.8
    Critical

    CVE-2016-1000027

    Last Modified: 21 Nov 2024

    Pivotal Spring Framework through 5.3.16 suffers from a potential remote code execution (RCE) issue if used for Java deserialization of untrusted data. Depending on how the library is implemented within a product, this issue may or not occur, and authentication may be required. NOTE: the vendor's position is that untrusted data is not an intended use case. The product's behavior will not be changed because some users rely on deserialization of trusted data.

    Published: 8 Jul 2016
    7.8
    High

    CVE-2016-6187

    Last Modified: 12 Apr 2025

    The apparmor_setprocattr function in security/apparmor/lsm.c in the Linux kernel before 4.6.5 does not validate the buffer size, which allows local users to gain privileges by triggering an AppArmor setprocattr hook.

    Published: 8 Jul 2016
    9.8
    Critical

    CVE-2014-9410

    Last Modified: 12 Apr 2025

    The vfe31_proc_general function in drivers/media/video/msm/vfe/msm_vfe31.c in the MSM-VFE31 driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not validate a certain id value, which allows attackers to gain privileges or cause a denial of service (memory corruption) via an application that makes a crafted ioctl call.

    Published: 8 Jul 2016
    7.5
    High

    CVE-2016-5409

    Last Modified: 20 Apr 2025

    Red Hat OpenShift Enterprise 2 does not include the HTTPOnly flag in a Set-Cookie header for the GEARID cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to the cookies.

    Published: 8 Jul 2016
    9.8
    Critical

    CVE-2016-6290

    Last Modified: 12 Apr 2025

    ext/session/session.c in PHP before 5.5.38, 5.6.x before 5.6.24, and 7.x before 7.0.9 does not properly maintain a certain hash data structure, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via vectors related to session deserialization.

    Published: 8 Jul 2016
    8.8
    High

    CVE-2016-1442

    Last Modified: 12 Apr 2025

    The administrative web interface in Cisco Prime Infrastructure (PI) before 3.1.1 allows remote authenticated users to execute arbitrary commands via crafted field values, aka Bug ID CSCuy96280.

    Published: 7 Jul 2016
    8.1
    High

    CVE-2016-1443

    Last Modified: 12 Apr 2025

    The virtual network stack on Cisco AMP Threat Grid Appliance devices before 2.1.1 allows remote attackers to bypass a sandbox protection mechanism, and consequently obtain sensitive interprocess information or modify interprocess data, via a crafted malware sample.

    Published: 7 Jul 2016
    6.8
    Medium

    CVE-2016-0230

    Last Modified: 12 Apr 2025

    IBM Power Hardware Management Console (HMC) 7.3 through 7.3.0 SP7, 7.9 through 7.9.0 SP3, 8.1 through 8.1.0 SP3, 8.2 through 8.2.0 SP2, 8.3 through 8.3.0 SP2, 8.4 through 8.4.0 SP1, and 8.5.0 allows physically proximate attackers to obtain root access via unspecified vectors.

    Published: 7 Jul 2016
    5.3
    Medium

    CVE-2016-0389

    Last Modified: 12 Apr 2025

    Admin Center in IBM WebSphere Application Server (WAS) 8.5.5.2 through 8.5.5.9 Liberty before Liberty Fix Pack 16.0.0.2 allows remote attackers to obtain sensitive information via unspecified vectors.

    Published: 7 Jul 2016
    6.5
    Medium

    CVE-2016-1444

    Last Modified: 12 Apr 2025

    The Mobile and Remote Access (MRA) component in Cisco TelePresence Video Communication Server (VCS) X8.1 through X8.7 and Expressway X8.1 through X8.6 mishandles certificates, which allows remote attackers to bypass authentication via an arbitrary trusted certificate, aka Bug ID CSCuz64601.

    Published: 7 Jul 2016
    7.5
    High

    CVE-2016-2923

    Last Modified: 12 Apr 2025

    IBM WebSphere Application Server (WAS) 8.5 through 8.5.5.9 Liberty before Liberty Fix Pack 16.0.0.2 does not include the HTTPOnly flag in a Set-Cookie header for an unspecified JAX-RS API cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.

    Published: 7 Jul 2016
    7.5
    High

    CVE-2016-5007

    Last Modified: 20 Apr 2025

    Both Spring Security 3.2.x, 4.0.x, 4.1.0 and the Spring Framework 3.2.x, 4.0.x, 4.1.x, 4.2.x rely on URL pattern mappings for authorization and for mapping requests to controllers respectively. Differences in the strictness of the pattern matching mechanisms, for example with regards to space trimming in path segments, can lead Spring Security to not recognize certain paths as not protected that are in fact mapped to Spring MVC controllers that should be protected. The problem is compounded by the fact that the Spring Framework provides richer features with regards to pattern matching as well as by the fact that pattern matching in each Spring Security and the Spring Framework can easily be customized creating additional differences.

    Published: 7 Jul 2016
    6.5
    Medium

    CVE-2016-6207

    Last Modified: 12 Apr 2025

    Integer overflow in the _gdContributionsAlloc function in gd_interpolation.c in GD Graphics Library (aka libgd) before 2.2.3 allows remote attackers to cause a denial of service (out-of-bounds memory write or memory consumption) via unspecified vectors.

    Published: 7 Jul 2016
    7.5
    High

    CVE-2016-2119

    Last Modified: 12 Apr 2025

    libcli/smb/smbXcli_base.c in Samba 4.x before 4.2.14, 4.3.x before 4.3.11, and 4.4.x before 4.4.5 allows man-in-the-middle attackers to bypass a client-signing protection mechanism, and consequently spoof SMB2 and SMB3 servers, via the (1) SMB2_SESSION_FLAG_IS_GUEST or (2) SMB2_SESSION_FLAG_IS_NULL flag.

    Published: 7 Jul 2016
    8.8
    High

    CVE-2016-0906

    Last Modified: 12 Apr 2025

    The web-restore interface in Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) in EMC Avamar through 7.1.2 and 7.2.x through 7.2.1 allows remote authenticated users to read or delete directories via a Linux backup-restore operation.

    Published: 6 Jul 2016
    6.4
    Medium

    CVE-2016-4507

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in Rexroth Bosch BLADEcontrol-WebVIS 3.0.2 and earlier allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.

    Published: 6 Jul 2016
    6.1
    Medium

    CVE-2016-4508

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Rexroth Bosch BLADEcontrol-WebVIS 3.0.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 6 Jul 2016
    3.3
    Low

    CVE-2016-6224

    Last Modified: 12 Apr 2025

    ecryptfs-setup-swap in eCryptfs does not prevent the unencrypted swap partition from activating during boot when using GPT partitioning on a (1) NVMe or (2) MMC drive, which allows local users to obtain sensitive information via unspecified vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-8946.

    Published: 6 Jul 2016
    7.8
    High

    CVE-2016-10064

    Last Modified: 20 Apr 2025

    Buffer overflow in coders/tiff.c in ImageMagick before 6.9.5-1 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file.

    Published: 6 Jul 2016
    7.8
    High

    CVE-2016-10063

    Last Modified: 20 Apr 2025

    Buffer overflow in coders/tiff.c in ImageMagick before 6.9.5-1 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file, related to extend validity.

    Published: 6 Jul 2016
    5.3
    Medium

    CVE-2016-5098

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in libraries/error_report.lib.php in phpMyAdmin before 4.6.2-prerelease allows remote attackers to determine the existence of arbitrary files by triggering an error.

    Published: 5 Jul 2016
    5.3
    Medium

    CVE-2016-5097

    Last Modified: 12 Apr 2025

    phpMyAdmin before 4.6.2 places tokens in query strings and does not arrange for them to be stripped before external navigation, which allows remote attackers to obtain sensitive information by reading (1) HTTP requests or (2) server logs.

    Published: 5 Jul 2016
    6.1
    Medium

    CVE-2016-5099

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in phpMyAdmin 4.4.x before 4.4.15.6 and 4.6.x before 4.6.2 allows remote attackers to inject arbitrary web script or HTML via special characters that are mishandled during double URL decoding.

    Published: 5 Jul 2016
    7.8
    High

    CVE-2016-6162

    Last Modified: 12 Apr 2025

    net/core/skbuff.c in the Linux kernel 4.7-rc6 allows local users to cause a denial of service (panic) or possibly have unspecified other impact via certain IPv6 socket operations.

    Published: 5 Jul 2016