Vulnerabilities > 7PK - Errors

DATE CVE VULNERABILITY TITLE RISK
2016-12-16 CVE-2016-9965 7PK - Errors vulnerability in Samsung Mobile
Lack of appropriate exception handling in some receivers of the Telecom application on Samsung Note devices with L(5.0/5.1), M(6.0), and N(7.0) software allows attackers to crash the system easily resulting in a possible DoS attack, or possibly gain privileges.
network
low complexity
samsung CWE-388
critical
10.0
2016-10-31 CVE-2016-7991 7PK - Errors vulnerability in Google Android
On Samsung Galaxy S4 through S7 devices, the "omacp" app ignores security information embedded in the OMACP messages resulting in remote unsolicited WAP Push SMS messages being accepted, parsed, and handled by the device, leading to unauthorized configuration changes, a subset of SVE-2016-6542.
network
low complexity
google samsung CWE-388
7.8
2016-10-31 CVE-2016-7990 7PK - Errors vulnerability in Google Android
On Samsung Galaxy S4 through S7 devices, an integer overflow condition exists within libomacp.so when parsing OMACP messages (within WAP Push SMS messages) leading to a heap corruption that can result in Denial of Service and potentially remote code execution, a subset of SVE-2016-6542.
network
low complexity
google samsung CWE-388
critical
10.0
2016-10-28 CVE-2016-6357 7PK - Errors vulnerability in Cisco Email Security Appliance 9.7.1066/9.9.6026
A vulnerability in the configured security policies, including drop email filtering, in Cisco AsyncOS for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass a configured drop filter by using an email with a corrupted attachment.
network
low complexity
cisco CWE-388
5.0
2016-10-28 CVE-2016-1480 7PK - Errors vulnerability in Cisco Email Security Appliance
A vulnerability in the Multipurpose Internet Mail Extensions (MIME) scanner of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) and Web Security Appliances (WSA) could allow an unauthenticated, remote attacker to bypass configured user filters on the device.
network
low complexity
cisco CWE-388
5.0
2006-12-21 CVE-2006-6682 7PK - Errors vulnerability in Chetcpasswd Project Chetcpasswd 2.3.3
Pedro Lineu Orso chetcpasswd 2.3.3 provides a different error message when a request with a valid username fails, compared to a request with an invalid username, which allows remote attackers to determine valid usernames on the system.
network
low complexity
chetcpasswd-project CWE-388
5.0