CVE Feed

    Dashboard / CVE

    7.8
    High

    CVE-2016-2855

    Last Modified: 12 Apr 2025

    The Huawei Mobile Broadband HL Service 22.001.25.00.03 and earlier uses a weak ACL for the MobileBrServ program data directory, which allows local users to gain SYSTEM privileges by modifying VERSION.dll.

    Published: 23 May 2016
    7.4
    High

    CVE-2016-3664

    Last Modified: 12 Apr 2025

    Trend Micro Mobile Security for iOS before 3.2.1188 does not verify the X.509 certificate of the mobile application login server, which allows man-in-the-middle attackers to spoof this server and obtain sensitive information via a crafted certificate.

    Published: 23 May 2016
    7.8
    High

    CVE-2016-3958

    Last Modified: 12 Apr 2025

    Untrusted search path vulnerability in Go before 1.5.4 and 1.6.x before 1.6.1 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, related to use of the LoadLibrary function.

    Published: 23 May 2016
    7.5
    High

    CVE-2016-4577

    Last Modified: 12 Apr 2025

    Buffer overflow in the Smart DNS functionality in the Huawei NGFW Module and Secospace USG6300, USG6500, USG6600, and USG9500 firewalls with software before V500R001C20SPC100 allows remote attackers to cause a denial of service or execute arbitrary code via a crafted packet, related to "illegitimate parameters."

    Published: 23 May 2016
    6.1
    Medium

    CVE-2016-4783

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Lenovo SHAREit before 3.5.98_ww on Android before 4.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Universal XSS (UXSS)."

    Published: 23 May 2016
    9.8
    Critical

    CVE-2016-4576

    Last Modified: 12 Apr 2025

    Buffer overflow in the Application Specific Packet Filtering (ASPF) functionality in the Huawei IPS Module, NGFW Module, NIP6300, NIP6600, Secospace USG6300, USG6500, USG6600, USG9500, and AntiDDoS8000 devices with software before V500R001C20SPC100 allows remote attackers to cause a denial of service or execute arbitrary code via a crafted packet, related to "illegitimate parameters."

    Published: 23 May 2016
    5.5
    Medium

    CVE-2016-2178

    Last Modified: 12 Apr 2025

    The dsa_sign_setup function in crypto/dsa/dsa_ossl.c in OpenSSL through 1.0.2h does not properly ensure the use of constant-time operations, which makes it easier for local users to discover a DSA private key via a timing side-channel attack.

    Published: 23 May 2016
    6.5
    Medium

    CVE-2014-3672

    Last Modified: 12 Apr 2025

    The qemu implementation in libvirt before 1.3.0 and Xen allows local guest OS users to cause a denial of service (host disk consumption) by writing to stdout or stderr.

    Published: 23 May 2016
    7.5
    High

    CVE-2016-4447

    Last Modified: 12 Apr 2025

    The xmlParseElementDecl function in parser.c in libxml2 before 2.9.4 allows context-dependent attackers to cause a denial of service (heap-based buffer underread and application crash) via a crafted file, involving xmlParseName.

    Published: 23 May 2016
    6.5
    Medium

    CVE-2016-5028

    Last Modified: 20 Apr 2025

    The print_frame_inst_bytes function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via an object file with empty bss-like sections.

    Published: 23 May 2016
    9.8
    Critical

    CVE-2016-4448

    Last Modified: 12 Apr 2025

    Format string vulnerability in libxml2 before 2.9.4 allows attackers to have unspecified impact via format string specifiers in unknown vectors.

    Published: 23 May 2016
    7.1
    High

    CVE-2016-4449

    Last Modified: 12 Apr 2025

    XML external entity (XXE) vulnerability in the xmlStringLenDecodeEntities function in parser.c in libxml2 before 2.9.4, when not in validating mode, allows context-dependent attackers to read arbitrary files or cause a denial of service (resource consumption) via unspecified vectors.

    Published: 23 May 2016
    6
    Medium

    CVE-2016-4952

    Last Modified: 12 Apr 2025

    QEMU (aka Quick Emulator), when built with VMWARE PVSCSI paravirtual SCSI bus emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds array access) via vectors related to the (1) PVSCSI_CMD_SETUP_RINGS or (2) PVSCSI_CMD_SETUP_MSG_RING SCSI command.

    Published: 23 May 2016
    4.3
    Medium

    CVE-2016-2151

    Last Modified: 12 Apr 2025

    user/index.php in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 grants excessive authorization on the basis of the moodle/course:viewhiddenuserfields capability, which allows remote authenticated users to discover student e-mail addresses by leveraging the teacher role and reading a Participants list.

    Published: 22 May 2016
    8.8
    High

    CVE-2016-2157

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in mod/assign/adminmanageplugins.php in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 allows remote attackers to hijack the authentication of administrators for requests that manage Assignment plugins.

    Published: 22 May 2016
    4.3
    Medium

    CVE-2016-2159

    Last Modified: 12 Apr 2025

    The save_submission function in mod/assign/externallib.php in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 allows remote authenticated users to bypass intended due-date restrictions by leveraging the student role for a web-service request.

    Published: 22 May 2016
    4.3
    Medium

    CVE-2016-2156

    Last Modified: 12 Apr 2025

    calendar/externallib.php in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 provides calendar-event data without considering whether an activity is hidden, which allows remote authenticated users to obtain sensitive information via a web-service request.

    Published: 22 May 2016
    6.1
    Medium

    CVE-2016-2152

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in auth/db/auth.php in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 allow remote attackers to inject arbitrary web script or HTML via an external DB profile field.

    Published: 22 May 2016
    6.1
    Medium

    CVE-2016-2153

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the advanced-search feature in mod_data in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 allows remote attackers to inject arbitrary web script or HTML via a crafted field in a URL, as demonstrated by a search form field.

    Published: 22 May 2016
    4.3
    Medium

    CVE-2016-2154

    Last Modified: 12 Apr 2025

    admin/tool/monitor/lib.php in Event Monitor in Moodle 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 does not consider the moodle/course:viewhiddencourses capability, which allows remote authenticated users to discover hidden course names by subscribing to a rule.

    Published: 22 May 2016
    4.3
    Medium

    CVE-2016-2155

    Last Modified: 12 Apr 2025

    The grade-reporting feature in Singleview (aka Single View) in Moodle 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 does not consider the moodle/grade:manage capability, which allows remote authenticated users to modify "Exclude grade" settings by leveraging the Non-Editing Instructor role.

    Published: 22 May 2016
    4.3
    Medium

    CVE-2016-2158

    Last Modified: 12 Apr 2025

    lib/ajax/getnavbranch.php in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3, when the forcelogin feature is enabled, allows remote attackers to obtain sensitive category-detail information from the navigation branch by leveraging the guest role for an Ajax request.

    Published: 22 May 2016
    5.3
    Medium

    CVE-2016-2190

    Last Modified: 12 Apr 2025

    Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 does not properly restrict links, which allows remote attackers to obtain sensitive URL information by reading a Referer log.

    Published: 22 May 2016
    6.1
    Medium

    CVE-2016-1564

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in wp-includes/class-wp-theme.php in WordPress before 4.4.1 allow remote attackers to inject arbitrary web script or HTML via a (1) stylesheet name or (2) template name to wp-admin/customize.php.

    Published: 22 May 2016
    6.1
    Medium

    CVE-2016-4567

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in flash/FlashMediaElement.as in MediaElement.js before 2.21.0, as used in WordPress before 4.5.2, allows remote attackers to inject arbitrary web script or HTML via an obfuscated form of the jsinitfunction parameter, as demonstrated by "jsinitfunctio%gn."

    Published: 22 May 2016
    6.1
    Medium

    CVE-2015-5714

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in WordPress before 4.3.1 allows remote attackers to inject arbitrary web script or HTML by leveraging the mishandling of unclosed HTML elements during processing of shortcode tags.

    Published: 22 May 2016
    4.3
    Medium

    CVE-2015-5715

    Last Modified: 12 Apr 2025

    The mw_editPost function in wp-includes/class-wp-xmlrpc-server.php in the XMLRPC subsystem in WordPress before 4.3.1 allows remote authenticated users to bypass intended access restrictions, and arrange for a private post to be published and sticky, via unspecified vectors.

    Published: 22 May 2016
    5.4
    Medium

    CVE-2015-7989

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the user list table in WordPress before 4.3.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted e-mail address, a different vulnerability than CVE-2015-5714.

    Published: 22 May 2016
    6.1
    Medium

    CVE-2015-8834

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in wp-includes/wp-db.php in WordPress before 4.2.2 allows remote attackers to inject arbitrary web script or HTML via a long comment that is improperly stored because of limitations on the MySQL TEXT data type. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-3440.

    Published: 22 May 2016
    7.4
    High

    CVE-2016-2221

    Last Modified: 12 Apr 2025

    Open redirect vulnerability in the wp_validate_redirect function in wp-includes/pluggable.php in WordPress before 4.4.2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a malformed URL that triggers incorrect hostname parsing, as demonstrated by an https:example.com URL.

    Published: 22 May 2016
    8.6
    High

    CVE-2016-2222

    Last Modified: 12 Apr 2025

    The wp_http_validate_url function in wp-includes/http.php in WordPress before 4.4.2 allows remote attackers to conduct server-side request forgery (SSRF) attacks via a zero value in the first octet of an IPv4 address in the u parameter to wp-admin/press-this.php.

    Published: 22 May 2016
    6.1
    Medium

    CVE-2016-4566

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in plupload.flash.swf in Plupload before 2.1.9, as used in WordPress before 4.5.2, allows remote attackers to inject arbitrary web script or HTML via a Same-Origin Method Execution (SOME) attack.

    Published: 22 May 2016
    6.5
    Medium

    CVE-2016-5030

    Last Modified: 20 Apr 2025

    The _dwarf_calculate_info_section_end_ptr function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.

    Published: 22 May 2016
    6.5
    Medium

    CVE-2016-5029

    Last Modified: 20 Apr 2025

    The create_fullest_file_path function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted dwarf file.

    Published: 22 May 2016
    9.8
    Critical

    CVE-2016-6199

    Last Modified: 20 Apr 2025

    ObjectSocketWrapper.java in Gradle 2.12 allows remote attackers to execute arbitrary code via a crafted serialized object.

    Published: 22 May 2016
    6.1
    Medium

    CVE-2016-1401

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in the management interface in Cisco Unified Computing System (UCS) Central Software 1.4(1a) allows remote attackers to inject arbitrary web script or HTML via a crafted value, aka Bug ID CSCuy91250.

    Published: 21 May 2016
    7.5
    High

    CVE-2016-1402

    Last Modified: 12 Apr 2025

    The Active Directory (AD) integration component in Cisco Identity Service Engine (ISE) before 1.2.0.899 patch 7, when AD group-membership authorization is enabled, allows remote attackers to cause a denial of service (authentication outage) via a crafted Password Authentication Protocol (PAP) authentication request, aka Bug ID CSCun25815.

    Published: 21 May 2016
    7.8
    High

    CVE-2016-1834

    Last Modified: 4 Dec 2025

    Heap-based buffer overflow in the xmlStrncat function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted XML document.

    Published: 20 May 2016
    5.5
    Medium

    CVE-2016-1837

    Last Modified: 12 Apr 2025

    Multiple use-after-free vulnerabilities in the (1) htmlPArsePubidLiteral and (2) htmlParseSystemiteral functions in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allow remote attackers to cause a denial of service via a crafted XML document.

    Published: 20 May 2016
    7.8
    High

    CVE-2016-1850

    Last Modified: 12 Apr 2025

    SceneKit in Apple OS X before 10.11.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file.

    Published: 20 May 2016
    6.5
    Medium

    CVE-2016-1858

    Last Modified: 12 Apr 2025

    WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, improperly tracks taint attributes, which allows remote attackers to obtain sensitive information via a crafted web site.

    Published: 20 May 2016
    7.8
    High

    CVE-2016-1795

    Last Modified: 12 Apr 2025

    AppleGraphicsPowerManagement in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

    Published: 20 May 2016
    7.8
    High

    CVE-2016-1799

    Last Modified: 12 Apr 2025

    Audio in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

    Published: 20 May 2016
    7.8
    High

    CVE-2016-1812

    Last Modified: 12 Apr 2025

    Buffer overflow in Intel Graphics Driver in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context via a crafted app.

    Published: 20 May 2016
    7.8
    High

    CVE-2016-1813

    Last Modified: 12 Apr 2025

    The IOAccelSharedUserClient2::page_off_resource method in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app.

    Published: 20 May 2016
    7.8
    High

    CVE-2016-1817

    Last Modified: 12 Apr 2025

    IOAcceleratorFamily in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1818 and CVE-2016-1819.

    Published: 20 May 2016
    7.8
    High

    CVE-2016-1819

    Last Modified: 12 Apr 2025

    Use-after-free vulnerability in the IOAccelContext2::clientMemoryForType method in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1817 and CVE-2016-1818.

    Published: 20 May 2016
    7.8
    High

    CVE-2016-1827

    Last Modified: 12 Apr 2025

    The kernel in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1828, CVE-2016-1829, and CVE-2016-1830.

    Published: 20 May 2016
    7.8
    High

    CVE-2016-1829

    Last Modified: 12 Apr 2025

    The kernel in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1827, CVE-2016-1828, and CVE-2016-1830.

    Published: 20 May 2016
    7.8
    High

    CVE-2016-1840

    Last Modified: 12 Apr 2025

    Heap-based buffer overflow in the xmlFAParsePosCharGroup function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted XML document.

    Published: 20 May 2016