CVE Feed

    Dashboard / CVE

    5.5
    Medium

    CVE-2016-10062

    Last Modified: 20 Apr 2025

    The ReadGROUP4Image function in coders/tiff.c in ImageMagick does not check the return value of the fwrite function, which allows remote attackers to cause a denial of service (application crash) via a crafted file.

    Published: 4 Jun 2016
    9.8
    Critical

    CVE-2016-4564

    Last Modified: 12 Apr 2025

    The DrawImage function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 makes an incorrect function call in attempting to locate the next token, which allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.

    Published: 4 Jun 2016
    7.5
    High

    CVE-2016-5300

    Last Modified: 12 Apr 2025

    The XML parser in Expat does not use sufficient entropy for hash initialization, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted identifiers in an XML document. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0876.

    Published: 4 Jun 2016
    7.5
    High

    CVE-2016-3944

    Last Modified: 12 Apr 2025

    UpdateAgent in Lenovo Accelerator Application allows man-in-the-middle attackers to execute arbitrary code by spoofing an update response from susapi.lenovomm.com.

    Published: 3 Jun 2016
    9.8
    Critical

    CVE-2016-1388

    Last Modified: 12 Apr 2025

    Cisco Prime Network Analysis Module (NAM) before 6.1(1) patch.6.1-2-final and 6.2.x before 6.2(1) and Prime Virtual Network Analysis Module (vNAM) before 6.1(1) patch.6.1-2-final and 6.2.x before 6.2(1) allow remote attackers to execute arbitrary OS commands via a crafted HTTP request, aka Bug ID CSCuy21882.

    Published: 3 Jun 2016
    5.3
    Medium

    CVE-2016-1370

    Last Modified: 12 Apr 2025

    Cisco Prime Network Analysis Module (NAM) before 6.2(1-b) miscalculates IPv6 payload lengths, which allows remote attackers to cause a denial of service (mond process crash and monitoring outage) via crafted IPv6 packets, aka Bug ID CSCuy37324.

    Published: 3 Jun 2016
    9.8
    Critical

    CVE-2016-4437

    Last Modified: 22 Apr 2026

    Apache Shiro before 1.2.5, when a cipher key has not been configured for the "remember me" feature, allows remote attackers to execute arbitrary code or bypass intended access restrictions via an unspecified request parameter.

    Published: 3 Jun 2016
    5.5
    Medium

    CVE-2016-5243

    Last Modified: 12 Apr 2025

    The tipc_nl_compat_link_dump function in net/tipc/netlink_compat.c in the Linux kernel through 4.6.3 does not properly copy a certain string, which allows local users to obtain sensitive information from kernel stack memory by reading a Netlink message.

    Published: 3 Jun 2016
    7.5
    High

    CVE-2016-5244

    Last Modified: 12 Apr 2025

    The rds_inc_info_copy function in net/rds/recv.c in the Linux kernel through 4.6.3 does not initialize a certain structure member, which allows remote attackers to obtain sensitive information from kernel stack memory by reading an RDS message.

    Published: 3 Jun 2016
    5.6
    Medium

    CVE-2016-5242

    Last Modified: 12 Apr 2025

    The p2m_teardown function in arch/arm/p2m.c in Xen 4.4.x through 4.6.x allows local guest OS users with access to the driver domain to cause a denial of service (NULL pointer dereference and host OS crash) by creating concurrent domains and holding references to them, related to VMID exhaustion.

    Published: 3 Jun 2016
    5.9
    Medium

    CVE-2016-4955

    Last Modified: 12 Apr 2025

    ntpd in NTP 4.x before 4.2.8p8, when autokey is enabled, allows remote attackers to cause a denial of service (peer-variable clearing and association outage) by sending (1) a spoofed crypto-NAK packet or (2) a packet with an incorrect MAC value at a certain time.

    Published: 2 Jun 2016
    5.5
    Medium

    CVE-2016-10047

    Last Modified: 20 Apr 2025

    Memory leak in the NewXMLTree function in magick/xml-tree.c in ImageMagick before 6.9.4-7 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML file.

    Published: 2 Jun 2016
    7.5
    High

    CVE-2016-10048

    Last Modified: 20 Apr 2025

    Directory traversal vulnerability in magick/module.c in ImageMagick 6.9.4-7 allows remote attackers to load arbitrary modules via unspecified vectors.

    Published: 2 Jun 2016
    2.4
    Low

    CVE-2016-1000002

    Last Modified: 21 Nov 2024

    gdm3 3.14.2 and possibly later has an information leak before screen lock

    Published: 2 Jun 2016
    5.3
    Medium

    CVE-2016-4956

    Last Modified: 12 Apr 2025

    ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (interleaved-mode transition and time change) via a spoofed broadcast packet. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-1548.

    Published: 2 Jun 2016
    6.7
    Medium

    CVE-2016-4962

    Last Modified: 12 Apr 2025

    The libxl device-handling in Xen 4.6.x and earlier allows local OS guest administrators to cause a denial of service (resource consumption or management facility confusion) or gain host OS privileges by manipulating information in guest controlled areas of xenstore.

    Published: 2 Jun 2016
    4.7
    Medium

    CVE-2016-4963

    Last Modified: 12 Apr 2025

    The libxl device-handling in Xen through 4.6.x allows local guest OS users with access to the driver domain to cause a denial of service (management tool confusion) by manipulating information in the backend directories in xenstore.

    Published: 2 Jun 2016
    8.8
    High

    CVE-2016-4475

    Last Modified: 12 Apr 2025

    The (1) Organization and (2) Locations APIs and UIs in Foreman before 1.11.4 and 1.12.x before 1.12.0-RC3 allow remote authenticated users to bypass organization and location restrictions and (a) read, (b) edit, or (c) delete arbitrary organizations or locations via unspecified vectors.

    Published: 2 Jun 2016
    7.5
    High

    CVE-2016-4953

    Last Modified: 12 Apr 2025

    ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (ephemeral-association demobilization) by sending a spoofed crypto-NAK packet with incorrect authentication data at a certain time.

    Published: 2 Jun 2016
    7.5
    High

    CVE-2016-4954

    Last Modified: 12 Apr 2025

    The process_packet function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (peer-variable modification) by sending spoofed packets from many source IP addresses in a certain scenario, as demonstrated by triggering an incorrect leap indication.

    Published: 2 Jun 2016
    7.5
    High

    CVE-2016-4957

    Last Modified: 12 Apr 2025

    ntpd in NTP before 4.2.8p8 allows remote attackers to cause a denial of service (daemon crash) via a crypto-NAK packet. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-1547.

    Published: 2 Jun 2016
    7.5
    High

    CVE-2016-1902

    Last Modified: 12 Apr 2025

    The nextBytes function in the SecureRandom class in Symfony before 2.3.37, 2.6.x before 2.6.13, and 2.7.x before 2.7.9 does not properly generate random numbers when used with PHP 5.x without the paragonie/random_compat library and the openssl_random_pseudo_bytes function fails, which makes it easier for attackers to defeat cryptographic protection mechanisms via unspecified vectors.

    Published: 1 Jun 2016
    7.5
    High

    CVE-2016-4423

    Last Modified: 12 Apr 2025

    The attemptAuthentication function in Component/Security/Http/Firewall/UsernamePasswordFormAuthenticationListener.php in Symfony before 2.3.41, 2.7.x before 2.7.13, 2.8.x before 2.8.6, and 3.0.x before 3.0.6 does not limit the length of a username stored in a session, which allows remote attackers to cause a denial of service (session storage consumption) via a series of authentication attempts with long, non-existent usernames.

    Published: 1 Jun 2016
    6.1
    Medium

    CVE-2016-4945

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in vpn/js/gateway_login_form_view.js in Citrix NetScaler Gateway 11.0 before Build 66.11 allows remote attackers to inject arbitrary web script or HTML via the NSC_TMAC cookie.

    Published: 1 Jun 2016
    7.5
    High

    CVE-2016-4810

    Last Modified: 12 Apr 2025

    Citrix Studio before 7.6.1000, Citrix XenDesktop 7.x before 7.6 LTSR Cumulative Update 1 (CU1), and Citrix XenApp 7.5 and 7.6 allow attackers to set Access Policy rules on the XenDesktop Delivery Controller via unspecified vectors.

    Published: 1 Jun 2016
    Unknown

    CVE-2014-2656

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that the vulnerability report was not valid. Notes: none

    Published: 1 Jun 2016
    6.5
    Medium

    CVE-2016-0288

    Last Modified: 12 Apr 2025

    IBM Security AppScan Standard 8.7.x, 8.8.x, and 9.x before 9.0.3.2 and Security AppScan Enterprise allow remote authenticated users to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.

    Published: 1 Jun 2016
    5.8
    Medium

    CVE-2016-4500

    Last Modified: 12 Apr 2025

    Moxa UC-7408 LX-Plus devices allow remote authenticated users to write to the firmware, and consequently render a device unusable, by leveraging root access.

    Published: 1 Jun 2016
    8.8
    High

    CVE-2016-1697

    Last Modified: 12 Apr 2025

    The FrameLoader::startLoad function in WebKit/Source/core/loader/FrameLoader.cpp in Blink, as used in Google Chrome before 51.0.2704.79, does not prevent frame navigations during DocumentLoader detach operations, which allows remote attackers to bypass the Same Origin Policy via crafted JavaScript code.

    Published: 1 Jun 2016
    6.5
    Medium

    CVE-2016-1699

    Last Modified: 12 Apr 2025

    WebKit/Source/devtools/front_end/devtools.js in the Developer Tools (aka DevTools) subsystem in Blink, as used in Google Chrome before 51.0.2704.79, does not ensure that the remoteFrontendUrl parameter is associated with a chrome-devtools-frontend.appspot.com URL, which allows remote attackers to bypass intended access restrictions via a crafted URL.

    Published: 1 Jun 2016
    8.8
    High

    CVE-2016-1701

    Last Modified: 12 Apr 2025

    The Autofill implementation in Google Chrome before 51.0.2704.79 mishandles the interaction between field updates and JavaScript code that triggers a frame deletion, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted web site, a different vulnerability than CVE-2016-1690.

    Published: 1 Jun 2016
    8.8
    High

    CVE-2016-1696

    Last Modified: 12 Apr 2025

    The extensions subsystem in Google Chrome before 51.0.2704.79 does not properly restrict bindings access, which allows remote attackers to bypass the Same Origin Policy via unspecified vectors.

    Published: 1 Jun 2016
    7.5
    High

    CVE-2016-1700

    Last Modified: 12 Apr 2025

    extensions/renderer/runtime_custom_bindings.cc in Google Chrome before 51.0.2704.79 does not consider side effects during creation of an array of extension views, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via vectors related to extensions.

    Published: 1 Jun 2016
    6.5
    Medium

    CVE-2016-1702

    Last Modified: 12 Apr 2025

    The SkRegion::readFromMemory function in core/SkRegion.cpp in Skia, as used in Google Chrome before 51.0.2704.79, does not validate the interval count, which allows remote attackers to cause a denial of service (out-of-bounds read) via crafted serialized data.

    Published: 1 Jun 2016
    6.5
    Medium

    CVE-2016-1698

    Last Modified: 12 Apr 2025

    The createCustomType function in extensions/renderer/resources/binding.js in the extension bindings in Google Chrome before 51.0.2704.79 does not validate module types, which might allow attackers to load arbitrary modules or obtain sensitive information by leveraging a poisoned definition.

    Published: 1 Jun 2016
    8.8
    High

    CVE-2016-1703

    Last Modified: 12 Apr 2025

    Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.79 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

    Published: 1 Jun 2016
    8.8
    High

    CVE-2016-2285

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability on Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242 devices with firmware 1.1 Build 10080614, MiiNePort_E2_4561 devices with firmware 1.1 Build 10080614, and MiiNePort E3 devices with firmware 1.0 Build 11071409 allows remote attackers to hijack the authentication of arbitrary users.

    Published: 31 May 2016
    7.5
    High

    CVE-2016-2286

    Last Modified: 12 Apr 2025

    Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242 devices with firmware 1.1 Build 10080614, MiiNePort_E2_4561 devices with firmware 1.1 Build 10080614, and MiiNePort E3 devices with firmware 1.0 Build 11071409 have a blank default password, which allows remote attackers to obtain access via unspecified vectors.

    Published: 31 May 2016
    7.5
    High

    CVE-2016-2295

    Last Modified: 12 Apr 2025

    Moxa MiiNePort_E1_4641 devices with firmware 1.1.10 Build 09120714, MiiNePort_E1_7080 devices with firmware 1.1.10 Build 09120714, MiiNePort_E2_1242 devices with firmware 1.1 Build 10080614, MiiNePort_E2_4561 devices with firmware 1.1 Build 10080614, and MiiNePort E3 devices with firmware 1.0 Build 11071409 allow remote attackers to obtain sensitive cleartext information by reading a configuration file.

    Published: 31 May 2016
    7.5
    High

    CVE-2016-0878

    Last Modified: 12 Apr 2025

    Moxa Secure Router EDR-G903 devices before 3.4.12 allow remote attackers to cause a denial of service (cold start) by sending two crafted ping requests.

    Published: 31 May 2016
    9.1
    Critical

    CVE-2016-4501

    Last Modified: 12 Apr 2025

    Environmental Systems Corporation (ESC) 8832 Data Controller 3.02 and earlier mishandles sessions, which allows remote attackers to bypass authentication and make arbitrary configuration changes via unspecified vectors.

    Published: 31 May 2016
    7.5
    High

    CVE-2016-0875

    Last Modified: 12 Apr 2025

    Moxa Secure Router EDR-G903 devices before 3.4.12 allow remote attackers to read configuration and log files via a crafted URL.

    Published: 31 May 2016
    7.5
    High

    CVE-2016-0876

    Last Modified: 12 Apr 2025

    Moxa Secure Router EDR-G903 devices before 3.4.12 allow remote attackers to discover cleartext passwords by reading a configuration file.

    Published: 31 May 2016
    7.5
    High

    CVE-2016-0877

    Last Modified: 12 Apr 2025

    Memory leak on Moxa Secure Router EDR-G903 devices before 3.4.12 allows remote attackers to cause a denial of service (memory consumption) by executing the ping function.

    Published: 31 May 2016
    7.5
    High

    CVE-2016-0879

    Last Modified: 12 Apr 2025

    Moxa Secure Router EDR-G903 devices before 3.4.12 do not delete copies of configuration and log files after completing the import function, which allows remote attackers to obtain sensitive information by requesting these files at an unspecified URL.

    Published: 31 May 2016
    8.8
    High

    CVE-2016-4505

    Last Modified: 12 Apr 2025

    Resource Data Management (RDM) Intuitive 650 TDB Controller devices before 2.1.24 allow remote authenticated users to modify arbitrary passwords via unspecified vectors.

    Published: 31 May 2016
    8
    High

    CVE-2016-4506

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability on Resource Data Management (RDM) Intuitive 650 TDB Controller devices before 2.1.24 allows remote authenticated users to hijack the authentication of arbitrary users.

    Published: 31 May 2016
    7.5
    High

    CVE-2016-4502

    Last Modified: 12 Apr 2025

    Environmental Systems Corporation (ESC) 8832 Data Controller 3.02 and earlier allows remote attackers to bypass intended access restrictions and execute arbitrary functions via a modified parameter.

    Published: 31 May 2016
    9.8
    Critical

    CVE-2016-4521

    Last Modified: 12 Apr 2025

    Sixnet BT-5xxx and BT-6xxx M2M devices before 3.8.21 and 3.9.x before 3.9.8 have hardcoded credentials, which allows remote attackers to obtain access via unspecified vectors.

    Published: 31 May 2016
    5.3
    Medium

    CVE-2016-4784

    Last Modified: 12 Apr 2025

    A vulnerability has been identified in firmware variant PROFINET IO for EN100 Ethernet module : All versions < V1.04.01; Firmware variant Modbus TCP for EN100 Ethernet module : All versions < V1.11.00; Firmware variant DNP3 TCP for EN100 Ethernet module : All versions < V1.03; Firmware variant IEC 104 for EN100 Ethernet module : All versions < V1.21; EN100 Ethernet module included in SIPROTEC Merging Unit 6MU80 : All versions < 1.02.02; SIPROTEC 7SJ686 : All versions < V 4.83; SIPROTEC 7UT686 : All versions < V 4.01; SIPROTEC 7SD686 : All versions < V 4.03; SIPROTEC 7SJ66 : All versions < V 4.20. The integrated web server (port 80/tcp) of the affected devices could allow remote attackers to obtain sensitive device information if network access was obtained.

    Published: 31 May 2016