Latest CVE Feed
-
8.8
HIGHCVE-2016-0326
IBM Rational Quality Manager (RQM) and Rational Collaborative Lifecycle Management 3.0.1.6 before iFix8, 4.x before 4.0.7 iFix11, 5.x before 5.0.2 iFix17, and 6.x before 6.0.1 ifix3 allow remote authenticated users to execute arbitrary OS commands via a c... Read more
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-0247
IBM Security Guardium 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows local users to obtain sensitive cleartext information via unspecified vectors, as demonstrated by password information.... Read more
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
6.1
MEDIUMCVE-2016-0246
Cross-site scripting (XSS) vulnerability in IBM Security Guardium 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.... Read more
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-0242
IBM Security Guardium 10.x through 10.1 before p100 allows remote authenticated users to obtain sensitive information by reading an Application Error message.... Read more
- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-0241
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to spoof administrator accounts by sending a modified login request over HTTP.... Read more
Affected Products : security_guardium_database_activity_monitor- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-0240
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 does not enable the HSTS protection mechanism, which makes it easier for remote attackers to obtain sensitive information by le... Read more
Affected Products : security_guardium_database_activity_monitor- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-0239
IBM Security Guardium Database Activity Monitor 9.x through 9.5 before p700 and 10.x through 10.0.1 before p100 allows remote authenticated users to make HTTP requests with administrator privileges via unspecified vectors.... Read more
Affected Products : security_guardium_database_activity_monitor- Published: Oct. 22, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-7854
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-7853
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
10.0
HIGHCVE-2016-7852
Adobe Reader and Acrobat before 11.0.18, Acrobat and Acrobat Reader DC Classic before 15.006.30243, and Acrobat and Acrobat Reader DC Continuous before 15.020.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service... Read more
- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
9.0
HIGHCVE-2016-0236
IBM Security Guardium Database Activity Monitor 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows remote authenticated users to execute arbitrary commands with root privileges via the search field.... Read more
Affected Products : security_guardium_database_activity_monitor- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.2
HIGHCVE-2016-1000119
SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla... Read more
Affected Products : catalog- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.2
HIGH- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.2
HIGH- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.2
HIGH- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.2
HIGH- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.5
HIGHCVE-2016-2848
ISC BIND 9.1.0 through 9.8.4-P2 and 9.9.0 through 9.9.2-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via malformed options data in an OPT resource record.... Read more
Affected Products : bind- Published: Oct. 21, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-8666
The IP stack in the Linux kernel before 4.6 allows remote attackers to cause a denial of service (stack consumption and panic) or possibly have unspecified other impact by triggering use of the GRO path for packets with tunnel stacking, as demonstrated by... Read more
Affected Products : linux_kernel- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-8660
The XFS subsystem in the Linux kernel through 4.8.2 allows local users to cause a denial of service (fdatasync failure and system hang) by using the vfs syscall group in the trinity program, related to a "page lock order bug in the XFS seek hole/data impl... Read more
Affected Products : linux_kernel- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025
-
6.1
MEDIUMCVE-2016-8658
Stack-based buffer overflow in the brcmf_cfg80211_start_ap function in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux kernel before 4.7.5 allows local users to cause a denial of service (system crash) or possibly have unspecified... Read more
Affected Products : linux_kernel- Published: Oct. 16, 2016
- Modified: Apr. 12, 2025