Show filters
251 Total Results
Displaying 151-160 of 251
Sort by:
Attacker Value
Unknown
CVE-2016-3129
Disclosure Date: December 16, 2016 (last updated November 25, 2024)
A remote shell execution vulnerability in the BlackBerry Good Enterprise Mobility Server (GEMS) implementation of the Apache Karaf command shell in GEMS versions 2.1.5.3 to 2.2.22.25 allows remote attackers to obtain local administrator rights on the GEMS server via commands executed on the Karaf command shell.
0
Attacker Value
Unknown
CVE-2016-2311
Disclosure Date: May 30, 2016 (last updated November 25, 2024)
Black Box AlertWerks ServSensor with firmware before SP473, AlertWerks ServSensor Junior with firmware before SP473, AlertWerks ServSensor Junior with PoE with firmware before SP473, and AlertWerks ServSensor Contact with firmware before SP473 allow remote authenticated users to discover administrator and user passwords via unspecified vectors.
0
Attacker Value
Unknown
CVE-2016-3126
Disclosure Date: April 22, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
0
Attacker Value
Unknown
CVE-2016-1916
Disclosure Date: April 22, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote authenticated users to inject arbitrary web script or HTML by leveraging basic administrative access to create a crafted policy, leading to improper rendering on a certain Export IT screen.
0
Attacker Value
Unknown
CVE-2016-1917
Disclosure Date: April 22, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-1918.
0
Attacker Value
Unknown
CVE-2016-1918
Disclosure Date: April 22, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-1917.
0
Attacker Value
Unknown
CVE-2015-4112
Disclosure Date: November 19, 2015 (last updated October 05, 2023)
The Management Console in BlackBerry Enterprise Server (BES) 12 before 12.2 does not properly restrict use of FRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site, related to a "cross frame scripting" issue.
0
Attacker Value
Unknown
CVE-2015-7230
Disclosure Date: September 17, 2015 (last updated October 05, 2023)
The Workbench Email module 7.x-3.x before 7.x-3.4 for Drupal allows remote authenticated users with certain permissions to bypass node and field validation by saving a node.
0
Attacker Value
Unknown
CVE-2015-4111
Disclosure Date: July 20, 2015 (last updated October 05, 2023)
mc_demux_mp4_ds.ax in an unspecified third-party codec demux in BlackBerry Link before 1.2.3.53 with installer before 1.1.0.22 allows remote attackers to execute arbitrary code via a crafted MP4 file.
0
Attacker Value
Unknown
CVE-2015-0875
Disclosure Date: February 15, 2015 (last updated October 05, 2023)
The Ogaki Kyoritsu Bank Smartphone Passbook application 1.0.0 for Android creates a log file containing input data from the user, which allows attackers to obtain sensitive information by reading a file.
0