Latest CVE Feed
-
5.9
MEDIUMCVE-2016-7176
epan/dissectors/packet-h225.c in the H.225 dissector in Wireshark 2.x before 2.0.6 calls snprintf with one of its input buffers as the output buffer, which allows remote attackers to cause a denial of service (copy overlap and application crash) via a cra... Read more
- EPSS Score: %0.31
- Published: Sep. 09, 2016
- Modified: Apr. 12, 2025
-
5.9
MEDIUMCVE-2016-7175
epan/dissectors/packet-qnet6.c in the QNX6 QNET dissector in Wireshark 2.x before 2.0.6 mishandles MAC address data, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted packet.... Read more
Affected Products : wireshark- EPSS Score: %0.19
- Published: Sep. 09, 2016
- Modified: Apr. 12, 2025
-
4.5
MEDIUMCVE-2016-4381
HPE XP7 Command View Advanced Edition (CVAE) Suite 6.x through 8.x before 8.4.1-02, when Replication Manager (RepMgr) and Device Manager (DevMgr) are enabled, allows local users to bypass intended access restrictions via unspecified vectors.... Read more
- EPSS Score: %0.06
- Published: Sep. 08, 2016
- Modified: Apr. 12, 2025
-
5.4
MEDIUMCVE-2016-4380
Cross-site scripting (XSS) vulnerability in the AdminUI in HPE Operations Manager 9.21.x before 9.21.130 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.... Read more
Affected Products : operations_manager- EPSS Score: %0.27
- Published: Sep. 08, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-4379
The TLS implementation in HPE Integrated Lights-Out 3 (aka iLO3) firmware before 1.88 does not properly use a MAC protection mechanism in conjunction with CBC padding, which allows remote attackers to obtain sensitive information via a padding-oracle atta... Read more
- EPSS Score: %0.46
- Published: Sep. 08, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4375
Multiple unspecified vulnerabilities in HPE Integrated Lights-Out 3 (aka iLO 3) firmware before 1.88, Integrated Lights-Out 4 (aka iLO 4) firmware before 2.44, and Integrated Lights-Out 4 (aka iLO 4) mRCA firmware before 2.32 allow remote attackers to obt... Read more
- EPSS Score: %1.85
- Published: Sep. 08, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-6263
The stringprep_utf8_nfkc_normalize function in lib/nfkc.c in libidn before 1.33 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via crafted UTF-8 data.... Read more
Affected Products : libidn- EPSS Score: %4.50
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-6262
idn in libidn before 1.33 might allow remote attackers to obtain sensitive memory information by reading a zero byte as input, which triggers an out-of-bounds read, a different vulnerability than CVE-2015-8948.... Read more
- EPSS Score: %2.29
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-6261
The idna_to_ascii_4i function in lib/idna.c in libidn before 1.33 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via 64 bytes of input.... Read more
- EPSS Score: %4.50
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
7.0
HIGHCVE-2016-6179
The WiFi driver in Huawei Honor 6 smartphones with software H60-L01 before H60-L01C00B850, H60-L11 before H60-L11C00B850, H60-L21 before H60-L21C00B850, H60-L02 before H60-L02C00B850, H60-L12 before H60-L12C00B850, and H60-L03 before H60-L03C01B850 allows... Read more
- EPSS Score: %0.05
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2016-5404
The cert_revoke command in FreeIPA does not check for the "revoke certificate" permission, which allows remote authenticated users to revoke arbitrary certificates by leveraging the "retrieve certificate" permission.... Read more
- EPSS Score: %0.66
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2015-8948
idn in GNU libidn before 1.33 might allow remote attackers to obtain sensitive memory information by reading a zero byte as input, which triggers an out-of-bounds read.... Read more
- EPSS Score: %2.61
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-7110
Huawei Unified Maintenance Audit (UMA) before V200R001C00SPC200 allows remote attackers to execute arbitrary commands via "special characters," a different vulnerability than CVE-2016-7109.... Read more
Affected Products : uma- EPSS Score: %1.75
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-7109
Huawei Unified Maintenance Audit (UMA) before V200R001C00SPC200 allows remote attackers to execute arbitrary commands via "special characters," a different vulnerability than CVE-2016-7110.... Read more
Affected Products : uma- EPSS Score: %1.14
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
6.5
MEDIUMCVE-2016-7108
Huawei Unified Maintenance Audit (UMA) before V200R001C00SPC200 SPH206 allows remote authenticated users to obtain the MD5 hashes of arbitrary user passwords via unspecified vectors.... Read more
Affected Products : uma- EPSS Score: %0.17
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-7107
Huawei Unified Maintenance Audit (UMA) before V200R001C00SPC200 SPH206 allows remote attackers to reset arbitrary user passwords and consequently affect system data integrity via unspecified vectors.... Read more
Affected Products : uma- EPSS Score: %0.16
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-6900
The Intelligent Baseboard Management Controller (iBMC) in Huawei RH1288 V3 servers with software before V100R003C00SPC613; RH2288 V3 servers with software before V100R003C00SPC617; RH2288H V3 servers with software before V100R003C00SPC515; RH5885 V3 serve... Read more
- EPSS Score: %0.06
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-6899
The Intelligent Baseboard Management Controller (iBMC) in Huawei RH1288 V3 servers with software before V100R003C00SPC613, RH2288 V3 servers with software before V100R003C00SPC617, RH2288H V3 servers with software before V100R003C00SPC515, RH5885 V3 serve... Read more
- EPSS Score: %0.12
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
6.6
MEDIUMCVE-2016-6898
XML external entity (XXE) vulnerability in the Hyper Management Module (HMM) in Huawei E9000 rack servers with software before V100R001C00SPC296 allows remote authenticated users to read arbitrary files or cause a denial of service (web service outage) vi... Read more
Affected Products : e9000_chassis- EPSS Score: %0.17
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-6876
The RESOLV::lookup iRule command in F5 BIG-IP LTM, APM, ASM, and Link Controller 10.2.1 through 10.2.4, 11.2.1, 11.4.x, 11.5.x before 11.5.4 HF2, 11.6.x before 11.6.1, and 12.0.0 before HF3; BIG-IP AAM, AFM, and PEM 11.4.x, 11.5.x before 11.5.4 HF2, 11.6.... Read more
Affected Products : big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system big-ip_global_traffic_manager big-ip_link_controller big-ip_local_traffic_manager big-ip_policy_enforcement_manager +4 more products- EPSS Score: %0.89
- Published: Sep. 07, 2016
- Modified: Apr. 12, 2025