CVE-2016-3477
- EPSS 0.09%
- Veröffentlicht 21.07.2016 10:12:30
- Zuletzt bearbeitet 06.05.2026 22:30:45
Unspecified vulnerability in Oracle MySQL 5.5.49 and earlier, 5.6.30 and earlier, and 5.7.12 and earlier and MariaDB before 5.5.50, 10.0.x before 10.0.26, and 10.1.x before 10.1.15 allows local users to affect confidentiality, integrity, and availabi...
CVE-2016-5387
- EPSS 60.28%
- Veröffentlicht 19.07.2016 02:00:19
- Zuletzt bearbeitet 06.05.2026 22:30:45
The Apache HTTP Server through 2.4.23 follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an app...
CVE-2016-4324
- EPSS 0.67%
- Veröffentlicht 08.07.2016 19:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
Use-after-free vulnerability in LibreOffice before 5.1.4 allows remote attackers to execute arbitrary code via a crafted RTF file, related to stylesheet and superscript tokens.
CVE-2016-3092
- EPSS 40.25%
- Veröffentlicht 04.07.2016 22:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
The MultipartStream class in Apache Commons Fileupload before 1.3.2, as used in Apache Tomcat 7.x before 7.0.70, 8.x before 8.0.36, 8.5.x before 8.5.3, and 9.x before 9.0.0.M7 and other products, allows remote attackers to cause a denial of service (...
CVE-2016-4998
- EPSS 1.63%
- Veröffentlicht 03.07.2016 21:59:17
- Zuletzt bearbeitet 06.05.2026 22:30:45
The IPT_SO_SET_REPLACE setsockopt implementation in the netfilter subsystem in the Linux kernel before 4.6 allows local users to cause a denial of service (out-of-bounds read) or possibly obtain sensitive information from kernel heap memory by levera...
CVE-2016-4997
- EPSS 4.79%
- Veröffentlicht 03.07.2016 21:59:16
- Zuletzt bearbeitet 06.05.2026 22:30:45
The compat IPT_SO_SET_REPLACE and IP6T_SO_SET_REPLACE setsockopt implementations in the netfilter subsystem in the Linux kernel before 4.6.3 allow local users to gain privileges or cause a denial of service (memory corruption) by leveraging in-contai...
- EPSS 12.8%
- Veröffentlicht 03.07.2016 21:59:15
- Zuletzt bearbeitet 06.05.2026 22:30:45
The usbip_recv_xbuff function in drivers/usb/usbip/usbip_common.c in the Linux kernel before 4.5.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted length value in a US...
CVE-2016-1704
- EPSS 0.8%
- Veröffentlicht 03.07.2016 21:59:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.103 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
CVE-2016-5360
- EPSS 46.08%
- Veröffentlicht 30.06.2016 17:59:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
HAproxy 1.6.x before 1.6.6, when a deny comes from a reqdeny rule, allows remote attackers to cause a denial of service (uninitialized memory access and crash) or possibly have unspecified other impact via unknown vectors.
CVE-2016-4971
- EPSS 75%
- Veröffentlicht 30.06.2016 17:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
GNU wget before 1.18 allows remote servers to write to arbitrary files by redirecting a request from HTTP to a crafted FTP resource.