CVE-2016-4956
- EPSS 2.28%
- Veröffentlicht 05.07.2016 01:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (interleaved-mode transition and time change) via a spoofed broadcast packet. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-1548.
CVE-2016-4955
- EPSS 5.19%
- Veröffentlicht 05.07.2016 01:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
ntpd in NTP 4.x before 4.2.8p8, when autokey is enabled, allows remote attackers to cause a denial of service (peer-variable clearing and association outage) by sending (1) a spoofed crypto-NAK packet or (2) a packet with an incorrect MAC value at a ...
CVE-2016-4954
- EPSS 2.18%
- Veröffentlicht 05.07.2016 01:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The process_packet function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (peer-variable modification) by sending spoofed packets from many source IP addresses in a certain scenario, as demonstr...
CVE-2016-4953
- EPSS 12.64%
- Veröffentlicht 05.07.2016 01:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
ntpd in NTP 4.x before 4.2.8p8 allows remote attackers to cause a denial of service (ephemeral-association demobilization) by sending a spoofed crypto-NAK packet with incorrect authentication data at a certain time.
CVE-2016-1704
- EPSS 0.8%
- Veröffentlicht 03.07.2016 21:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.103 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
CVE-2016-5739
- EPSS 0.92%
- Veröffentlicht 03.07.2016 01:59:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Transformation implementation in phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 does not use the no-referrer Content Security Policy (CSP) protection mechanism, which makes it easier for remote attackers to condu...
CVE-2016-5733
- EPSS 1.24%
- Veröffentlicht 03.07.2016 01:59:23
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) a crafted table name that ...
CVE-2016-5731
- EPSS 0.42%
- Veröffentlicht 03.07.2016 01:59:21
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in examples/openid.php in phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 allows remote attackers to inject arbitrary web script or HTML via vectors involving an OpenID error m...
CVE-2016-5730
- EPSS 1.32%
- Veröffentlicht 03.07.2016 01:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 allows remote attackers to obtain sensitive information via vectors involving (1) an array value to FormDisplay.php, (2) incorrect data to validate.php, (3) unexpected d...
CVE-2016-5706
- EPSS 2.78%
- Veröffentlicht 03.07.2016 01:59:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
js/get_scripts.js.php in phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 allows remote attackers to cause a denial of service via a large array in the scripts parameter.