Redhat

Enterprise Linux Server

1890 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.01%
  • Published 16.05.2016 10:59:03
  • Last modified 12.04.2025 10:46:40

PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 does not ensure that pathnames lack %00 sequences, which might allow remote attackers to read arbitrary files via crafted input to an application that calls the stream_resolve_include_pat...

Exploit
  • EPSS 0.26%
  • Published 16.05.2016 10:59:02
  • Last modified 12.04.2025 10:46:40

PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 does not ensure that pathnames lack %00 sequences, which might allow remote attackers to read or write to arbitrary files via crafted input to an application that calls (1) a DOMDocument ...

Exploit
  • EPSS 32.48%
  • Published 16.05.2016 10:59:01
  • Last modified 12.04.2025 10:46:40

Oracle MySQL before 5.7.3, Oracle MySQL Connector/C (aka libmysqlclient) before 6.1.3, and MariaDB before 5.5.44 use the --ssl option to mean that SSL is optional, which allows man-in-the-middle attackers to spoof servers via a cleartext-downgrade at...

  • EPSS 0.12%
  • Published 11.05.2016 21:59:02
  • Last modified 12.04.2025 10:46:40

Integer overflow in the VGA module in QEMU allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) by editing VGA registers in VBE mode.

  • EPSS 0.09%
  • Published 11.05.2016 21:59:01
  • Last modified 12.04.2025 10:46:40

The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes after setting the bank register, aka the "Dark Port...

Warning Exploit
  • EPSS 92.78%
  • Published 11.05.2016 01:59:46
  • Last modified 12.04.2025 10:46:40

Adobe Flash Player 21.0.0.226 and earlier allows remote attackers to execute arbitrary code via unspecified vectors, as exploited in the wild in May 2016.

Warning
  • EPSS 79.25%
  • Published 05.05.2016 18:59:08
  • Last modified 12.04.2025 10:46:40

The (1) HTTP and (2) FTP coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted image.

  • EPSS 26.22%
  • Published 05.05.2016 18:59:07
  • Last modified 12.04.2025 10:46:40

The LABEL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to read arbitrary files via a crafted image.

Exploit
  • EPSS 17.35%
  • Published 05.05.2016 18:59:06
  • Last modified 12.04.2025 10:46:40

The MSL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to move arbitrary files via a crafted image.

Warning Exploit
  • EPSS 79.8%
  • Published 05.05.2016 18:59:04
  • Last modified 12.04.2025 10:46:40

The EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to delete arbitrary files via a crafted image.