Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 54 399

Количество 54 399

redhat логотип

CVE-2016-5690

около 10 лет назад

The ReadDCMImage function in DCM reader in ImageMagick before 6.9.4-5 and 7.x before 7.0.1-7 allows remote attackers to have unspecified impact via vectors involving the for statement in computing the pixel scaling table.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-5689

около 10 лет назад

The DCM reader in ImageMagick before 6.9.4-5 and 7.x before 7.0.1-7 allows remote attackers to have unspecified impact by leveraging lack of NULL pointer checks.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-5688

около 10 лет назад

The WPG parser in ImageMagick before 6.9.4-4 and 7.x before 7.0.1-5, when a memory limit is set, allows remote attackers to have unspecified impact via vectors related to the SetImageExtent return-value check, which trigger (1) a heap-based buffer overflow in the SetPixelIndex function or an invalid write operation in the (2) ScaleCharToQuantum or (3) SetPixelIndex functions.

CVSS2: 5.8
EPSS: Низкий
redhat логотип

CVE-2016-5687

около 10 лет назад

The VerticalFilter function in the DDS coder in ImageMagick before 6.9.4-3 and 7.x before 7.0.1-4 allows remote attackers to have unspecified impact via a crafted DDS file, which triggers an out-of-bounds read.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-5682

почти 10 лет назад

Swagger-UI before 2.2.1 has XSS via the Default field in the Definitions section.

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2016-5652

почти 10 лет назад

An exploitable heap-based buffer overflow exists in the handling of TIFF images in LibTIFF's TIFF2PDF tool. A crafted TIFF document can lead to a heap-based buffer overflow resulting in remote code execution. Vulnerability can be triggered via a saved TIFF file delivered by other means.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2016-5636

больше 10 лет назад

Integer overflow in the get_data function in zipimport.c in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 allows remote attackers to have unspecified impact via a negative data size value, which triggers a heap-based buffer overflow.

CVSS3: 4.5
EPSS: Средний
redhat логотип

CVE-2016-5635

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: Security: Audit.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2016-5634

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to RBR.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2016-5633

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: Performance Schema, a different vulnerability than CVE-2016-8290.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2016-5632

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.7.14 and earlier allows remote administrators to affect availability via vectors related to Server: Optimizer.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2016-5631

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: Memcached.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2016-5630

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.6.31 and earlier and 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: InnoDB.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2016-5629

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 and earlier, and 5.7.14 and earlier allows remote administrators to affect availability via vectors related to Server: Federated.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2016-5628

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: DML.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2016-5627

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.6.31 and earlier and 5.7.13 and earlier allows remote authenticated users to affect availability via vectors related to Server: InnoDB.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-5626

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 and earlier, and 5.7.14 and earlier allows remote authenticated users to affect availability via vectors related to GIS.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-5625

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.7.14 and earlier allows local users to affect confidentiality, integrity, and availability via vectors related to Server: Packaging.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2016-5624

почти 10 лет назад

Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier allows remote authenticated users to affect availability via vectors related to DML.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-5617

почти 10 лет назад

A flaw was found in the way the mysqld_safe script handled creation of error log file. The mysql operating system user could use this flaw to escalate their privileges to root.

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2016-5690

The ReadDCMImage function in DCM reader in ImageMagick before 6.9.4-5 and 7.x before 7.0.1-7 allows remote attackers to have unspecified impact via vectors involving the for statement in computing the pixel scaling table.

CVSS2: 4.3
5%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-5689

The DCM reader in ImageMagick before 6.9.4-5 and 7.x before 7.0.1-7 allows remote attackers to have unspecified impact by leveraging lack of NULL pointer checks.

CVSS2: 4.3
5%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-5688

The WPG parser in ImageMagick before 6.9.4-4 and 7.x before 7.0.1-5, when a memory limit is set, allows remote attackers to have unspecified impact via vectors related to the SetImageExtent return-value check, which trigger (1) a heap-based buffer overflow in the SetPixelIndex function or an invalid write operation in the (2) ScaleCharToQuantum or (3) SetPixelIndex functions.

CVSS2: 5.8
5%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-5687

The VerticalFilter function in the DDS coder in ImageMagick before 6.9.4-3 and 7.x before 7.0.1-4 allows remote attackers to have unspecified impact via a crafted DDS file, which triggers an out-of-bounds read.

CVSS2: 4.3
5%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-5682

Swagger-UI before 2.2.1 has XSS via the Default field in the Definitions section.

CVSS3: 5.4
1%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5652

An exploitable heap-based buffer overflow exists in the handling of TIFF images in LibTIFF's TIFF2PDF tool. A crafted TIFF document can lead to a heap-based buffer overflow resulting in remote code execution. Vulnerability can be triggered via a saved TIFF file delivered by other means.

CVSS3: 8.1
4%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5636

Integer overflow in the get_data function in zipimport.c in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 allows remote attackers to have unspecified impact via a negative data size value, which triggers a heap-based buffer overflow.

CVSS3: 4.5
25%
Средний
больше 10 лет назад
redhat логотип
CVE-2016-5635

Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: Security: Audit.

CVSS3: 4.9
2%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5634

Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to RBR.

CVSS3: 4.9
2%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5633

Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: Performance Schema, a different vulnerability than CVE-2016-8290.

CVSS3: 4.9
2%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5632

Unspecified vulnerability in Oracle MySQL 5.7.14 and earlier allows remote administrators to affect availability via vectors related to Server: Optimizer.

CVSS3: 4.9
2%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5631

Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: Memcached.

CVSS3: 4.9
2%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5630

Unspecified vulnerability in Oracle MySQL 5.6.31 and earlier and 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: InnoDB.

CVSS3: 4.9
2%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5629

Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 and earlier, and 5.7.14 and earlier allows remote administrators to affect availability via vectors related to Server: Federated.

CVSS3: 4.9
3%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5628

Unspecified vulnerability in Oracle MySQL 5.7.13 and earlier allows remote administrators to affect availability via vectors related to Server: DML.

CVSS3: 4.9
3%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5627

Unspecified vulnerability in Oracle MySQL 5.6.31 and earlier and 5.7.13 and earlier allows remote authenticated users to affect availability via vectors related to Server: InnoDB.

CVSS3: 6.5
3%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5626

Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 and earlier, and 5.7.14 and earlier allows remote authenticated users to affect availability via vectors related to GIS.

CVSS3: 6.5
6%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5625

Unspecified vulnerability in Oracle MySQL 5.7.14 and earlier allows local users to affect confidentiality, integrity, and availability via vectors related to Server: Packaging.

CVSS3: 7
0%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5624

Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier allows remote authenticated users to affect availability via vectors related to DML.

CVSS3: 6.5
5%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-5617

A flaw was found in the way the mysqld_safe script handled creation of error log file. The mysql operating system user could use this flaw to escalate their privileges to root.

CVSS3: 7.8
почти 10 лет назад

Уязвимостей на страницу