Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
project 2016 vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2016-7569
Directory traversal vulnerability in docker2aci prior to 0.13.0 allows remote malicious users to write to arbitrary files via a .. (dot dot) in the embedded layer data in an image.
Docker2aci Project Docker2aci
5.9
CVSSv3
CVE-2016-10933
An issue exists in the portaudio crate up to and including 0.7.0 for Rust. There is a man-in-the-middle issue because the source code is downloaded over cleartext HTTP.
Portaudio Project Portaudio
6.1
CVSSv3
CVE-2016-1000138
Reflected XSS in wordpress plugin indexisto v1.0.5
Indexisto Project Indexisto
6.1
CVSSv3
CVE-2016-1000139
Reflected XSS in wordpress plugin infusionsoft v1.5.11
Infusionsoft Project Infusionsoft
6.1
CVSSv3
CVE-2016-1000144
Reflected XSS in wordpress plugin photoxhibit v2.1.8
Photoxhibit Project Photoxhibit
9.8
CVSSv3
CVE-2016-1000282
Haraka version 2.8.8 and previous versions comes with a plugin for processing attachments for zip files. Versions 2.8.8 and previous versions can be vulnerable to command injection.
Haraka Project Haraka
6.1
CVSSv3
CVE-2016-10006
In OWASP AntiSamy prior to 1.5.5, by submitting a specially crafted input (a tag that supports style with active content), you could bypass the library protections and supply executable code. The impact is XSS.
Antisamy Project Antisamy
7.5
CVSSv3
CVE-2016-5038
The dwarf_get_macro_startend_file function in dwarf_macro5.c in libdwarf prior to 20160923 allows remote malicious users to cause a denial of service (out-of-bounds read) via a crafted string offset for .debug_str.
Libdwarf Project Libdwarf
7.5
CVSSv3
CVE-2016-5040
libdwarf prior to 20160923 allows remote malicious users to cause a denial of service (out-of-bounds read and crash) via a large length value in a compilation unit header.
Libdwarf Project Libdwarf
7.5
CVSSv3
CVE-2016-5042
The dwarf_get_aranges_list function in libdwarf prior to 20160923 allows remote malicious users to cause a denial of service (infinite loop and crash) via a crafted DWARF section.
Libdwarf Project Libdwarf
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »