|
211441
|
7.5 |
HIGH
Network
|
microsoft
|
windows_server_2012
|
The forms-based authentication implementation in Active Directory Federation Services (ADFS) 3.0 in Microsoft Windows Server 2012 R2 allows remote attackers to cause a denial of service (daemon outag…
|
CWE-20
Improper Input Validation
|
CVE-2016-0037
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211442
|
8.1 |
HIGH
Network
|
microsoft
|
windows_server_2012 windows_8.1 windows_7 windows_10
|
The Remote Desktop Protocol (RDP) implementation in Microsoft Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 allows remote authenticated users to execute arbitrary code v…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0036
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211443
|
7.5 |
HIGH
Network
|
microsoft
|
.net_framework
|
Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, and 4.6.1 does not prevent recursive compilation of XSLT transforms, which allows remote attackers to cause a denial of service (performance …
|
CWE-94
Code Injection
|
CVE-2016-0033
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211444
|
7.8 |
HIGH
Local
|
microsoft
|
word word_for_mac office_web_apps_server sharepoint_server office_compatibility_pack word_viewer
|
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Word for Mac 2011, Word 2016 for Mac, Office Compatibility Pack SP3, Word Viewer, Word Automation …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0022
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211445
|
7.8 |
HIGH
Local
|
microsoft
|
excel excel_viewer excel_for_mac office_compatibility_pack
|
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel for Mac 2011, Excel 2016 for Mac, Office Compatibility Pack SP3, and Excel Viewer allow remote attackers…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0035
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211446
|
8.8 |
HIGH
Network
|
microsoft
|
silverlight
|
Microsoft Silverlight 5 before 5.1.41212.0 mishandles negative offsets during decoding, which allows remote attackers to execute arbitrary code or cause a denial of service (object-header corruption)…
|
NVD-CWE-noinfo
|
CVE-2016-0034
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211447
|
6.1 |
MEDIUM
Network
|
microsoft
|
exchange_server
|
Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) in Microsoft Exchange Server 2013 PS1, 2013 Cumulative Update 10, 2013 Cumulative Update 11, and 2016 allows remote attackers to i…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0032
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211448
|
6.1 |
MEDIUM
Network
|
microsoft
|
exchange_server
|
Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) in Microsoft Exchange Server 2016 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Exchange …
|
CWE-79
Cross-site Scripting
|
CVE-2016-0031
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211449
|
6.1 |
MEDIUM
Network
|
microsoft
|
exchange_server
|
Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) in Microsoft Exchange Server 2013 PS1, 2013 Cumulative Update 10, and 2016 allows remote attackers to inject arbitrary web script …
|
CWE-79
Cross-site Scripting
|
CVE-2016-0030
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211450
|
6.1 |
MEDIUM
Network
|
microsoft
|
exchange_server
|
Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) in Microsoft Exchange Server 2016 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "Exchange …
|
CWE-79
Cross-site Scripting
|
CVE-2016-0029
|
2024-11-21 11:40 |
2016-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|