CVE Feed

    Dashboard / CVE

    8.8
    High

    CVE-2016-0891

    Last Modified: 12 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in administrative pages in EMC ViPR SRM before 3.7 allow remote attackers to hijack the authentication of administrators.

    Published: 20 Apr 2016
    7.5
    High

    CVE-2016-1384

    Last Modified: 12 Apr 2025

    The NTP implementation in Cisco IOS 15.1 and 15.5 and IOS XE 3.2 through 3.17 allows remote attackers to modify the system time via crafted packets, aka Bug ID CSCux46898.

    Published: 20 Apr 2016
    8.8
    High

    CVE-2016-3628

    Last Modified: 12 Apr 2025

    Buffer overflow in tibemsd in the server in TIBCO Enterprise Message Service (EMS) before 8.3.0 and EMS Appliance before 2.4.0 allows remote authenticated users to cause a denial of service or possibly execute arbitrary code via crafted inbound data.

    Published: 20 Apr 2016
    3.7
    Low

    CVE-2016-4053

    Last Modified: 12 Apr 2025

    Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote attackers to obtain sensitive stack layout information via crafted Edge Side Includes (ESI) responses, related to incorrect use of assert and compiler optimization.

    Published: 20 Apr 2016
    8.8
    High

    CVE-2016-4051

    Last Modified: 12 Apr 2025

    Buffer overflow in cachemgr.cgi in Squid 2.x, 3.x before 3.5.17, and 4.x before 4.0.9 might allow remote attackers to cause a denial of service or execute arbitrary code by seeding manager reports with crafted data.

    Published: 20 Apr 2016
    8.1
    High

    CVE-2016-4052

    Last Modified: 12 Apr 2025

    Multiple stack-based buffer overflows in Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote HTTP servers to cause a denial of service or execute arbitrary code via crafted Edge Side Includes (ESI) responses.

    Published: 20 Apr 2016
    9.8
    Critical

    CVE-2016-5408

    Last Modified: 12 Apr 2025

    Stack-based buffer overflow in the munge_other_line function in cachemgr.cgi in the squid package before 3.1.23-16.el6_8.6 in Red Hat Enterprise Linux 6 allows remote attackers to execute arbitrary code via unspecified vectors. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-4051.

    Published: 20 Apr 2016
    5.5
    Medium

    CVE-2016-3695

    Last Modified: 20 Apr 2025

    The einj_error_inject function in drivers/acpi/apei/einj.c in the Linux kernel allows local users to simulate hardware errors and consequently cause a denial of service by leveraging failure to disable APEI error injection through EINJ when securelevel is set.

    Published: 20 Apr 2016
    9.8
    Critical

    CVE-2016-1000031

    Last Modified: 12 Apr 2025

    Apache Commons FileUpload before 1.3.3 DiskFileItem File Manipulation Remote Code Execution

    Published: 20 Apr 2016
    5.5
    Medium

    CVE-2016-3696

    Last Modified: 20 Apr 2025

    The pulp-qpid-ssl-cfg script in Pulp before 2.8.5 allows local users to obtain the CA key.

    Published: 20 Apr 2016
    8.1
    High

    CVE-2016-4054

    Last Modified: 12 Apr 2025

    Buffer overflow in Squid 3.x before 3.5.17 and 4.x before 4.0.9 allows remote attackers to execute arbitrary code via crafted Edge Side Includes (ESI) responses.

    Published: 20 Apr 2016
    9.8
    Critical

    CVE-2016-4540

    Last Modified: 12 Apr 2025

    The grapheme_stripos function in ext/intl/grapheme/grapheme_string.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a negative offset.

    Published: 20 Apr 2016
    9.8
    Critical

    CVE-2016-4541

    Last Modified: 12 Apr 2025

    The grapheme_strpos function in ext/intl/grapheme/grapheme_string.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a negative offset.

    Published: 20 Apr 2016
    6.2
    Medium

    CVE-2015-1776

    Last Modified: 12 Apr 2025

    Apache Hadoop 2.6.x encrypts intermediate data generated by a MapReduce job and stores it along with the encryption key in a credentials file on disk when the Intermediate data encryption feature is enabled, which allows local users to obtain sensitive information by reading the file.

    Published: 19 Apr 2016
    6.5
    Medium

    CVE-2015-5479

    Last Modified: 12 Apr 2025

    The ff_h263_decode_mba function in libavcodec/ituh263dec.c in Libav before 11.5 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a file with crafted dimensions.

    Published: 19 Apr 2016
    6.5
    Medium

    CVE-2016-3688

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in dotCMS before 3.5 allows remote administrators to execute arbitrary SQL commands via the c0-e3 parameter to dwr/call/plaincall/UserAjax.getUsersList.dwr.

    Published: 19 Apr 2016
    7.2
    High

    CVE-2016-4040

    Last Modified: 12 Apr 2025

    SQL injection vulnerability in the Workflow Screen in dotCMS before 3.3.2 allows remote administrators to execute arbitrary SQL commands via the orderby parameter.

    Published: 19 Apr 2016
    9.6
    Critical

    CVE-2016-3443

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to 2D. NOTE: the previous information is from the April 2016 CPU. Oracle has not commented on third-party claims that this issue allows remote attackers to obtain sensitive information via crafted font data, which triggers an out-of-bounds read.

    Published: 19 Apr 2016
    9.8
    Critical

    CVE-2016-3427

    Last Modified: 22 Apr 2026

    Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JMX.

    Published: 19 Apr 2016
    5.9
    Medium

    CVE-2016-0695

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect confidentiality via vectors related to Security.

    Published: 19 Apr 2016
    4.3
    Medium

    CVE-2016-3425

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77; Java SE Embedded 8u77; and JRockit R28.3.9 allows remote attackers to affect availability via vectors related to JAXP.

    Published: 19 Apr 2016
    8.3
    High

    CVE-2016-3449

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Deployment.

    Published: 19 Apr 2016
    9.6
    Critical

    CVE-2016-0686

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Serialization.

    Published: 19 Apr 2016
    9.6
    Critical

    CVE-2016-0687

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to the Hotspot sub-component.

    Published: 19 Apr 2016
    3.1
    Low

    CVE-2016-3426

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 8u77 and Java SE Embedded 8u77 allows remote attackers to affect confidentiality via vectors related to JCE.

    Published: 19 Apr 2016
    4.3
    Medium

    CVE-2016-3422

    Last Modified: 12 Apr 2025

    Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect availability via vectors related to 2D.

    Published: 19 Apr 2016
    7.8
    High

    CVE-2016-3943

    Last Modified: 12 Apr 2025

    Panda Endpoint Administration Agent before 7.50.00, as used in Panda Security for Business products for Windows, uses a weak ACL for the Panda Security/WaAgent directory and sub-directories, which allows local users to gain SYSTEM privileges by modifying an executable module.

    Published: 18 Apr 2016
    7.8
    High

    CVE-2015-7378

    Last Modified: 12 Apr 2025

    Panda Security URL Filtering before 4.3.1.9 uses a weak ACL for the "Panda Security URL Filtering" directory and installed files, which allows local users to gain SYSTEM privileges by modifying Panda_URL_Filteringb.exe.

    Published: 18 Apr 2016
    5.5
    Medium

    CVE-2016-3941

    Last Modified: 12 Apr 2025

    Buffer overflow in the AStreamPeekStream function in input/stream.c in VideoLAN VLC media player before 2.2.0 allows remote attackers to cause a denial of service (crash) via a crafted wav file, related to "seek across EOF."

    Published: 18 Apr 2016
    4.8
    Medium

    CVE-2016-3971

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in lucene_search.jsp in dotCMS before 3.5.1 allows remote attackers to inject arbitrary web script or HTML via the query parameter to c/portal/layout.

    Published: 18 Apr 2016
    2.7
    Low

    CVE-2016-3972

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in the dotTailLogServlet in dotCMS before 3.5.1 allows remote authenticated administrators to read arbitrary files via a .. (dot dot) in the fileName parameter.

    Published: 18 Apr 2016
    5.5
    Medium

    CVE-2016-4036

    Last Modified: 12 Apr 2025

    The quagga package before 0.99.23-2.6.1 in openSUSE and SUSE Linux Enterprise Server 11 SP 1 uses weak permissions for /etc/quagga, which allows local users to obtain sensitive information by reading files in the directory.

    Published: 18 Apr 2016
    7.8
    High

    CVE-2015-8106

    Last Modified: 12 Apr 2025

    Format string vulnerability in the CmdKeywords function in funct1.c in latex2rtf before 2.3.10 allows remote attackers to execute arbitrary code via format string specifiers in the \keywords command in a crafted TeX file.

    Published: 18 Apr 2016
    6.5
    Medium

    CVE-2016-3950

    Last Modified: 12 Apr 2025

    Huawei AR3200 routers with software before V200R006C10SPC300 allow remote authenticated users to cause a denial of service (restart) via crafted packets.

    Published: 18 Apr 2016
    9.8
    Critical

    CVE-2016-0835

    Last Modified: 12 Apr 2025

    decoder/impeg2d_dec_hdr.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file that triggers a certain negative value, aka internal bug 26070014.

    Published: 18 Apr 2016
    9.8
    Critical

    CVE-2016-0838

    Last Modified: 12 Apr 2025

    Sonivox in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not check for a negative number of samples, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, related to arm-wt-22k/lib_src/eas_wtengine.c and arm-wt-22k/lib_src/eas_wtsynth.c, aka internal bug 26366256.

    Published: 18 Apr 2016
    8.4
    High

    CVE-2016-0842

    Last Modified: 12 Apr 2025

    The H.264 decoder in libstagefright in Android 6.x before 2016-04-01 mishandles Memory Management Control Operation (MMCO) data, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 25818142.

    Published: 18 Apr 2016
    8.8
    High

    CVE-2016-0850

    Last Modified: 12 Apr 2025

    The PORCHE_PAIRING_CONFLICT feature in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows remote attackers to bypass intended pairing restrictions via a crafted device, aka internal bug 26551752.

    Published: 18 Apr 2016
    6.2
    Medium

    CVE-2016-2414

    Last Modified: 12 Apr 2025

    The Minikin library in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not properly consider negative size values in font data, which allows remote attackers to cause a denial of service (memory corruption and reboot loop) via a crafted font, aka internal bug 26413177.

    Published: 18 Apr 2016
    6.1
    Medium

    CVE-2016-2421

    Last Modified: 12 Apr 2025

    Setup Wizard in Android 5.1.x before 5.1.1 and 6.x before 2016-04-01 allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism and delete data via unspecified vectors, aka internal bug 26154410.

    Published: 18 Apr 2016
    5.5
    Medium

    CVE-2016-2427

    Last Modified: 12 May 2025

    The AES-GCM specification in RFC 5084, as used in Android 5.x and 6.x, recommends 12 octets for the aes-ICVlen parameter field, which might make it easier for attackers to defeat a cryptographic protection mechanism and discover an authentication key via a crafted application, aka internal bug 26234568. NOTE: The vendor disputes the existence of this potential issue in Android, stating "This CVE was raised in error: it referred to the authentication tag size in GCM, whose default according to ASN.1 encoding (12 bytes) can lead to vulnerabilities. After careful consideration, it was decided that the insecure default value of 12 bytes was a default only for the encoding and not default anywhere else in Android, and hence no vulnerability existed.

    Published: 18 Apr 2016
    5.5
    Medium

    CVE-2016-2415

    Last Modified: 12 Apr 2025

    exchange/eas/EasAutoDiscover.java in the Autodiscover implementation in Exchange ActiveSync in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to obtain sensitive information via a crafted application that triggers a spoofed response to a GET request, aka internal bug 26488455.

    Published: 18 Apr 2016
    7.8
    High

    CVE-2016-2422

    Last Modified: 12 Apr 2025

    Wi-Fi in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not prevent use of a Wi-Fi CA certificate in an unrelated CA role, which allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 26324357.

    Published: 18 Apr 2016
    7.8
    High

    CVE-2016-0836

    Last Modified: 12 Apr 2025

    Stack-based buffer overflow in decoder/impeg2d_vld.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 25812590.

    Published: 18 Apr 2016
    8.4
    High

    CVE-2016-0843

    Last Modified: 12 Apr 2025

    The Qualcomm ARM processor performance-event manager in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to gain privileges via a crafted application, aka internal bug 25801197.

    Published: 18 Apr 2016
    8.4
    High

    CVE-2016-0834

    Last Modified: 12 Apr 2025

    An unspecified media codec in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 26220548.

    Published: 18 Apr 2016
    9.8
    Critical

    CVE-2016-0837

    Last Modified: 12 Apr 2025

    MPEG4Extractor.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read and memory corruption) via a crafted media file, aka internal bug 27208621.

    Published: 18 Apr 2016
    9.8
    Critical

    CVE-2016-0839

    Last Modified: 12 Apr 2025

    post_proc/volume_listener.c in mediaserver in Android 6.x before 2016-04-01 mishandles deleted effect context, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 25753245.

    Published: 18 Apr 2016
    8.4
    High

    CVE-2016-0840

    Last Modified: 12 Apr 2025

    Multiple stack-based buffer underflows in decoder/ih264d_parse_cavlc.c in mediaserver in Android 6.x before 2016-04-01 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 26399350.

    Published: 18 Apr 2016
    9.8
    Critical

    CVE-2016-0841

    Last Modified: 12 Apr 2025

    media/libmedia/mediametadataretriever.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 mishandles cleared service binders, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 26040840.

    Published: 18 Apr 2016