Vulnerabilities (CVE)

Total 398493 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-5091 1 Typo3 1 Typo3 2026-06-17 6.8 MEDIUM 8.1 HIGH
Extbase in TYPO3 4.3.0 before 6.2.24, 7.x before 7.6.8, and 8.1.1 allows remote attackers to obtain sensitive information or possibly execute arbitrary code via a crafted Extbase action.
CVE-2016-5087 1 Alertus 1 Alertus Desktop Notification For Os X 2026-06-17 3.6 LOW 4.4 MEDIUM
Alertus Desktop Notification before 2.9.31.1710 on OS X uses weak permissions for configuration files and unspecified other files, which allows local users to suppress emergency notifications or change content via standard filesystem operations.
CVE-2016-5086 1 Animas 2 Onetouch Ping, Onetouch Ping Firmware 2026-06-17 9.3 HIGH 9.8 CRITICAL
Johnson & Johnson Animas OneTouch Ping devices allow remote attackers to bypass authentication via replay attacks.
CVE-2016-5085 1 Animas 2 Onetouch Ping, Onetouch Ping Firmware 2026-06-17 7.8 HIGH 7.5 HIGH
Johnson & Johnson Animas OneTouch Ping devices do not properly generate random numbers, which makes it easier for remote attackers to spoof meters by sniffing the network and then engaging in an authentication handshake.
CVE-2016-5084 1 Animas 2 Onetouch Ping, Onetouch Ping Firmware 2026-06-17 5.0 MEDIUM 7.5 HIGH
Johnson & Johnson Animas OneTouch Ping devices do not use encryption for certain data, which might allow remote attackers to obtain sensitive information by sniffing the network.
CVE-2016-5081 1 Zmodo 2 Zp-ibh-13w, Zp-ne-14-s 2026-06-17 10.0 HIGH 9.8 CRITICAL
ZModo ZP-NE14-S and ZP-IBH-13W devices have a hardcoded root password, which makes it easier for remote attackers to obtain access via a TELNET session.
CVE-2016-5080 1 Objective Systems 1 Asn1c 2026-06-17 10.0 HIGH 9.8 CRITICAL
Integer overflow in the rtxMemHeapAlloc function in asn1rt_a.lib in Objective Systems ASN1C for C/C++ before 7.0.2 allows context-dependent attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow), on a system running an application compiled by ASN1C, via crafted ASN.1 data.
CVE-2016-5078 1 Paessler 1 Prtg Network Monitor 2026-06-17 4.3 MEDIUM 6.1 MEDIUM
Paessler PRTG before 16.2.24.4045 has XSS via SNMP.
CVE-2016-5077 1 Netikus 1 Eventsentry 2026-06-17 4.3 MEDIUM 6.1 MEDIUM
Netikus EventSentry before 3.2.1.44 has XSS via SNMP.
CVE-2016-5076 1 Cloudviewnms 1 Cloudview Nms 2026-06-17 5.0 MEDIUM 7.5 HIGH
CloudView NMS before 2.10a allows remote attackers to obtain sensitive information via a direct request for admin/auto.def.
CVE-2016-5075 1 Cloudviewnms 1 Cloudview Nms 2026-06-17 4.3 MEDIUM 6.1 MEDIUM
CloudView NMS before 2.10a has XSS via a TELNET login.
CVE-2016-5074 1 Cloudviewnms 1 Cloudview Nms 2026-06-17 7.5 HIGH 9.8 CRITICAL
CloudView NMS before 2.10a has a format string issue exploitable over SNMP.
CVE-2016-5073 1 Cloudviewnms 1 Cloudview Nms 2026-06-17 4.3 MEDIUM 6.1 MEDIUM
CloudView NMS before 2.10a has XSS via SNMP.
CVE-2016-5072 1 Oxidforge 1 Oxid Eshop 2026-06-17 6.5 MEDIUM 8.8 HIGH
OXID eShop before 2016-06-13 allows remote attackers to execute arbitrary code via a GET or POST request to the oxuser class. Fixed versions are Enterprise Edition v5.1.12, Enterprise Edition v5.2.9, Professional Edition v4.8.12, Professional Edition v4.9.9, Community Edition v4.8.12, Community Edition v4.9.9.
CVE-2016-5071 1 Sierrawireless 2 Aleos Firmware, Gx 440 2026-06-17 10.0 HIGH 8.8 HIGH
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 execute the management web application as root.
CVE-2016-5070 1 Sierrawireless 2 Aleos Firmware, Gx 440 2026-06-17 5.0 MEDIUM 9.8 CRITICAL
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 store passwords in cleartext.
CVE-2016-5069 1 Sierrawireless 2 Aleos Firmware, Gx 440 2026-06-17 7.5 HIGH 9.8 CRITICAL
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 use guessable session tokens, which are in the URL.
CVE-2016-5068 1 Sierrawireless 2 Aleos Firmware, Gx 440 2026-06-17 7.5 HIGH 9.8 CRITICAL
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 do not require authentication for Embedded_Ace_Get_Task.cgi requests.
CVE-2016-5067 1 Sierrawireless 2 Aleos Firmware, Gx 440 2026-06-17 9.0 HIGH 8.8 HIGH
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Hayes AT command injection.
CVE-2016-5066 1 Sierrawireless 2 Aleos Firmware, Gx 440 2026-06-17 10.0 HIGH 9.8 CRITICAL
Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 have weak passwords for admin, rauser, sconsole, and user.