Total
82469 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2016-10915 | 1 Supsystic | 1 Popup | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The popup-by-supsystic plugin before 1.7.9 for WordPress has CSRF. | |||||
CVE-2016-10914 | 1 Add From Server Project | 1 Add From Server | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The add-from-server plugin before 3.3.2 for WordPress has CSRF for importing a large file. | |||||
CVE-2016-10907 | 1 Linux | 1 Linux Kernel | 2024-11-21 | 4.6 MEDIUM | 7.8 HIGH |
An issue was discovered in drivers/iio/dac/ad5755.c in the Linux kernel before 4.8.6. There is an out of bounds write in the function ad5755_parse_dt. | |||||
CVE-2016-10906 | 1 Linux | 1 Linux Kernel | 2024-11-21 | 4.4 MEDIUM | 7.0 HIGH |
An issue was discovered in drivers/net/ethernet/arc/emac_main.c in the Linux kernel before 4.5. A use-after-free is caused by a race condition between the functions arc_emac_tx and arc_emac_tx_clean. | |||||
CVE-2016-10905 | 1 Linux | 1 Linux Kernel | 2024-11-21 | 6.1 MEDIUM | 7.8 HIGH |
An issue was discovered in fs/gfs2/rgrp.c in the Linux kernel before 4.8. A use-after-free is caused by the functions gfs2_clear_rgrpd and read_rindex_entry. | |||||
CVE-2016-10903 | 1 Godaddy | 1 Godaddy Email Marketing | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The GoDaddy godaddy-email-marketing-sign-up-forms plugin before 1.1.3 for WordPress has CSRF. | |||||
CVE-2016-10902 | 1 Gowebsolutions | 1 Wp Customer Reviews | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The wp-customer-reviews plugin before 3.0.9 for WordPress has CSRF in the admin tools. | |||||
CVE-2016-10885 | 1 Benjaminrojas | 1 Wp Editor | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The wp-editor plugin before 1.2.6 for WordPress has CSRF. | |||||
CVE-2016-10884 | 1 Simple-membership-plugin | 1 Simple Membership | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The simple-membership plugin before 3.3.3 for WordPress has multiple CSRF issues. | |||||
CVE-2016-10882 | 1 Google Doc Embedder Project | 1 Google Doc Embedder | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The google-document-embedder plugin before 2.6.2 for WordPress has CSRF. | |||||
CVE-2016-10876 | 1 Wpseeds | 1 Wp Database Backup | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The wp-database-backup plugin before 4.3.1 for WordPress has CSRF. | |||||
CVE-2016-10874 | 1 Wpseeds | 1 Wp Database Backup | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
The wp-database-backup plugin before 4.3.3 for WordPress has CSRF. | |||||
CVE-2016-10863 | 1 Edimax | 4 7237rpd, 7237rpd Firmware, Ew-7438rpn Mini and 1 more | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
Edimax Wi-Fi Extender devices allow goform/formwlencryptvxd CSRF with resultant PSK key disclosure. | |||||
CVE-2016-10862 | 1 Neetcables | 2 Airstream Nas, Airstream Nas Firmware | 2024-11-21 | 6.8 MEDIUM | 8.8 HIGH |
Neet AirStream NAS1.1 devices have a password of ifconfig for the root account. This cannot be changed via the configuration page. | |||||
CVE-2016-10860 | 1 Cpanel | 1 Cpanel | 2024-11-21 | 5.5 MEDIUM | 8.1 HIGH |
cPanel before 11.54.0.0 allows unauthorized zone modification via the WHM API (SEC-66). | |||||
CVE-2016-10859 | 1 Cpanel | 1 Cpanel | 2024-11-21 | 5.5 MEDIUM | 8.1 HIGH |
cPanel before 11.54.0.0 allows unauthorized password changes via Webmail API commands (SEC-65). | |||||
CVE-2016-10850 | 1 Cpanel | 1 Cpanel | 2024-11-21 | 9.0 HIGH | 8.8 HIGH |
cPanel before 11.54.0.4 allows arbitrary code execution via scripts/synccpaddonswithsqlhost (SEC-83). | |||||
CVE-2016-10848 | 1 Cpanel | 1 Cpanel | 2024-11-21 | 9.0 HIGH | 7.2 HIGH |
cPanel before 11.54.0.4 allows arbitrary file-overwrite operations in scripts/quotacheck (SEC-81). | |||||
CVE-2016-10847 | 1 Cpanel | 1 Cpanel | 2024-11-21 | 5.5 MEDIUM | 8.1 HIGH |
cPanel before 11.54.0.4 allows arbitrary file-read and file-write operations via scripts/fixmailboxpath (SEC-80). | |||||
CVE-2016-10846 | 1 Cpanel | 1 Cpanel | 2024-11-21 | 8.5 HIGH | 8.1 HIGH |
cPanel before 11.54.0.4 allows arbitrary file-chown and file-chmod operations during Roundcube database conversions (SEC-79). |