CVE-2017-14053
- EPSS 0.3%
- Published 01.09.2017 21:29:00
- Last modified 20.04.2025 01:37:25
NetApp OnCommand Unified Manager for Clustered Data ONTAP before 7.2P1 does not set the secure flag for an unspecified cookie in an HTTPS session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission with...
CVE-2016-6667
- EPSS 2.64%
- Published 07.02.2017 17:59:00
- Last modified 20.04.2025 01:37:25
NetApp OnCommand Unified Manager for Clustered Data ONTAP 6.3 through 6.4P1 contain a default privileged account, which allows remote attackers to execute arbitrary code via unspecified vectors.
CVE-2016-2518
- EPSS 1.47%
- Published 30.01.2017 21:59:01
- Last modified 20.04.2025 01:37:25
The MATCH_ASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote attackers to cause an out-of-bounds reference via an addpeer request with a large hmode value.
CVE-2016-5195
- EPSS 94.25%
- Published 10.11.2016 21:59:00
- Last modified 12.04.2025 10:46:40
Race condition in mm/gup.c in the Linux kernel 2.x through 4.x before 4.8.3 allows local users to gain privileges by leveraging incorrect handling of a copy-on-write (COW) feature to write to a read-only memory mapping, as exploited in the wild in Oc...