Latest CVE Feed
-
6.5
MEDIUMCVE-2016-4644
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a downgrade issue existed with HTTP authentication credentials saved in Keychain. This issue was addressed by storing the authentication types with t... Read more
- EPSS Score: %0.45
- Published: Jan. 11, 2019
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2016-4643
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a validation issue existed in the parsing of 407 responses. This issue was addressed through improved response validation.... Read more
- EPSS Score: %0.37
- Published: Jan. 11, 2019
- Modified: Nov. 21, 2024
-
5.9
MEDIUMCVE-2016-4642
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, proxy authentication incorrectly reported HTTP proxies received credentials securely. This issue was addressed through improved warnings.... Read more
- EPSS Score: %0.36
- Published: Jan. 11, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2016-4606
Curl before 7.49.1 in Apple OS X before macOS Sierra prior to 10.12 allows remote or local attackers to execute arbitrary code, gain sensitive information, cause denial-of-service conditions, bypass security restrictions, and perform unauthorized actions.... Read more
- EPSS Score: %0.22
- Published: Feb. 21, 2020
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2016-4572
In Cloudera CDH before 5.7.1, Impala REVOKE ALL ON SERVER commands do not revoke all privileges.... Read more
Affected Products : cdh- EPSS Score: %0.34
- Published: Nov. 26, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2016-4427
In zulip before 1.3.12, deactivated users could access messages if SSO was enabled.... Read more
Affected Products : zulip- EPSS Score: %0.26
- Published: Jul. 28, 2022
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2016-4426
In zulip before 1.3.12, bot API keys were accessible to other users in the same realm.... Read more
Affected Products : zulip- EPSS Score: %0.15
- Published: Jul. 28, 2022
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2016-4406
A remote cross site scripting vulnerability was identified in HPE iLO 3 all version prior to v1.88 and HPE iLO 4 all versions prior to v2.44.... Read more
Affected Products : integrated_lights-out_4_firmware integrated_lights-out_3_firmware integrated_lights-out- EPSS Score: %0.54
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2016-4405
A remote code execution vulnerability was identified in HP Business Service Management (BSM) using Apache Commons Collection Java Deserialization versions v9.20-v9.26... Read more
Affected Products : business_service_management- EPSS Score: %20.31
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2016-4404
A security vulnerability was identified in the Filter SDK component of HP KeyView earlier than v11.2. The vulnerability could be exploited remotely to allow code execution via a memory allocation issue.... Read more
Affected Products : keyview- EPSS Score: %12.00
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2016-4403
A security vulnerability was identified in the Filter SDK component of HP KeyView earlier than v11.2. The vulnerability could be exploited remotely to allow code execution via memory corruption.... Read more
Affected Products : keyview- EPSS Score: %12.00
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2016-4402
A security vulnerability was identified in the Filter SDK component of HP KeyView earlier than v11.2. The vulnerability could be exploited remotely to allow code execution via buffer overflow.... Read more
Affected Products : keyview- EPSS Score: %12.80
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2016-4401
Aruba ClearPass Policy Manager before 6.5.7 and 6.6.x before 6.6.2 allows attackers to obtain database credentials.... Read more
Affected Products : clearpass- EPSS Score: %0.47
- Published: Nov. 06, 2019
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2016-4400
A security vulnerability was identified in HP Network Node Manager i (NNMi) Software 10.00, 10.01 (patch1), 10.01 (patch 2), 10.10. The vulnerability could result in cross-site scripting (XSS).... Read more
Affected Products : network_node_manager_i- EPSS Score: %0.31
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2016-4399
A security vulnerability was identified in HP Network Node Manager i (NNMi) Software 10.00, 10.01 (patch1), 10.01 (patch 2), 10.10. The vulnerability could result in cross-site scripting (XSS).... Read more
Affected Products : network_node_manager_i- EPSS Score: %0.27
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2016-4398
A remote arbitrary code execution vulnerability was identified in HP Network Node Manager i (NNMi) Software 10.00, 10.01 (patch1), 10.01 (patch 2), 10.10 using Java Deserialization.... Read more
Affected Products : network_node_manager_i- EPSS Score: %20.31
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2016-4397
A local code execution security vulnerability was identified in HP Network Node Manager i (NNMi) v10.00, v10.10 and v10.20 Software.... Read more
Affected Products : network_node_manager_i- EPSS Score: %0.23
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2016-4392
A remote cross site scripting vulnerability has been identified in HP Business Service Management software v9.1x, v9.20 - v9.25IP1.... Read more
Affected Products : business_service_management- EPSS Score: %0.27
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2016-4391
A remote code execution security vulnerability has been identified in all versions of the HP ArcSight WINC Connector prior to v7.3.0.... Read more
Affected Products : arcsight_winc_connector- EPSS Score: %41.61
- Published: Aug. 06, 2018
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2016-4289
A stack based buffer overflow vulnerability exists in the method receiving data from SysTreeView32 control of the GMER 2.1.19357 application. A specially created long path can lead to a buffer overflow on the stack resulting in code execution. An attacker... Read more
Affected Products : gmer- EPSS Score: %0.13
- Published: Oct. 29, 2019
- Modified: Nov. 21, 2024