Show filters
1,598 Total Results
Displaying 561-570 of 1,598
Sort by:
Attacker Value
Unknown
CVE-2016-6376
Disclosure Date: September 02, 2016 (last updated November 25, 2024)
The Adaptive Wireless Intrusion Prevention System (wIPS) feature on Cisco Wireless LAN Controller (WLC) devices before 8.0.140.0, 8.1.x and 8.2.x before 8.2.121.0, and 8.3.x before 8.3.102.0 allows remote attackers to cause a denial of service (device restart) via a malformed wIPS packet, aka Bug ID CSCuz40263.
0
Attacker Value
Unknown
CVE-2016-0370
Disclosure Date: September 01, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in IBM Forms Experience Builder 8.5.x and 8.6.x before 8.6.3 allows remote authenticated users to inject arbitrary web script or HTML via crafted input to an application that was built with this product.
0
Attacker Value
Unknown
CVE-2016-6355
Disclosure Date: August 23, 2016 (last updated November 25, 2024)
Memory leak in Cisco IOS XR 5.1.x through 5.1.3, 5.2.x through 5.2.5, and 5.3.x through 5.3.2 on ASR 9001 devices allows remote attackers to cause a denial of service (control-plane protocol outage) via crafted fragmented packets, aka Bug ID CSCux26791.
0
Attacker Value
Unknown
CVE-2015-3854
Disclosure Date: August 07, 2016 (last updated November 25, 2024)
packages/SystemUI/src/com/android/systemui/power/PowerNotificationWarnings.java in Android 5.x allows attackers to bypass a DEVICE_POWER permission requirement via a broadcast intent with the PNW.stopSaver action, aka internal bug 20918350.
0
Attacker Value
Unknown
CVE-2016-5254
Disclosure Date: August 05, 2016 (last updated October 23, 2024)
Use-after-free vulnerability in the nsXULPopupManager::KeyDown function in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allows attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) by leveraging keyboard access to use the Alt key during selection of top-level menu items.
0
Attacker Value
Unknown
CVE-2016-5258
Disclosure Date: August 05, 2016 (last updated October 23, 2024)
Use-after-free vulnerability in the WebRTC socket thread in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allows remote attackers to execute arbitrary code by leveraging incorrect free operations on DTLS objects during the shutdown of a WebRTC session.
0
Attacker Value
Unknown
CVE-2016-2837
Disclosure Date: August 05, 2016 (last updated October 23, 2024)
Heap-based buffer overflow in the ClearKey Content Decryption Module (CDM) in the Encrypted Media Extensions (EME) API in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 might allow remote attackers to execute arbitrary code by providing a malformed video and leveraging a Gecko Media Plugin (GMP) sandbox bypass.
0
Attacker Value
Unknown
CVE-2016-5265
Disclosure Date: August 05, 2016 (last updated October 23, 2024)
Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allow user-assisted remote attackers to bypass the Same Origin Policy, and conduct Universal XSS (UXSS) attacks or read arbitrary files, by arranging for the presence of a crafted HTML document and a crafted shortcut file in the same local directory.
0
Attacker Value
Unknown
CVE-2016-2838
Disclosure Date: August 05, 2016 (last updated October 23, 2024)
Heap-based buffer overflow in the nsBidi::BracketData::AddOpening function in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allows remote attackers to execute arbitrary code via directional content in an SVG document.
0
Attacker Value
Unknown
CVE-2016-2839
Disclosure Date: August 05, 2016 (last updated October 23, 2024)
Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 on Linux make cairo _cairo_surface_get_extents calls that do not properly interact with libav header allocation in FFmpeg 0.10, which allows remote attackers to cause a denial of service (application crash) via a crafted video.
0