CVE-2016-2883
published 2016-07-02CVE-2016-2883: Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote…
PriorityP422medium5.4CVSS 3.0
AVNACLPRLUIRSCCLILAN
EPSS
0.62%
45.7th percentile
Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-0387.
Affected
25 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
| ibm | tririga_application_platform | — | — |
CVSS provenance
nvdv3.05.4MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:N/I:P/A:N
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-f9vr-wq8p-q8xx: Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3
ghsa_unreviewed·2022-05-17·CVSS 5.4
CVE-2016-2883 [MEDIUM] CWE-79 GHSA-f9vr-wq8p-q8xx: Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3
Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-0387.
GHSA
GHSA-rq44-xxjr-cc48: Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3
ghsa_unreviewed·2022-05-17·CVSS 5.4
CVE-2016-0387 [MEDIUM] CWE-79 GHSA-rq44-xxjr-cc48: Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3
Cross-site scripting (XSS) vulnerability in IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-2883.
Red Hat
chromium-browser: same-origin bypass in pdfium
vendor_redhat·2016-12-01·CVSS 8.8
CVE-2016-5206 [HIGH] chromium-browser: same-origin bypass in pdfium
chromium-browser: same-origin bypass in pdfium
The PDF plugin in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly followed redirects, which allowed a remote attacker to bypass the Same Origin Policy via a crafted HTML page.
Red Hat
chromium-browser: universal xss in blink
vendor_redhat·2016-12-01·CVSS 6.1
CVE-2016-5208 [MEDIUM] chromium-browser: universal xss in blink
chromium-browser: universal xss in blink
Blink in Google Chrome prior to 55.0.2883.75 for Linux and Windows, and 55.0.2883.84 for Android allowed possible corruption of the DOM tree during synchronous event handling, which allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page.
Red Hat
chromium-browser: universal xss in blink
vendor_redhat·2016-12-01·CVSS 6.1
CVE-2016-5204 [MEDIUM] chromium-browser: universal xss in blink
chromium-browser: universal xss in blink
Leaking of an SVG shadow tree leading to corruption of the DOM tree in Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page.
Red Hat
chromium-browser: universal xss in blink
vendor_redhat·2016-12-01·CVSS 6.1
CVE-2016-5205 [MEDIUM] chromium-browser: universal xss in blink
chromium-browser: universal xss in blink
Blink in Google Chrome prior to 55.0.2883.75 for Linux, Windows and Mac, incorrectly handles deferred page loads, which allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page.
Red Hat
chromium-browser: integer overflow in pdfium
vendor_redhat·2016-12-01·CVSS 6.5
CVE-2016-5223 [MEDIUM] chromium-browser: integer overflow in pdfium
chromium-browser: integer overflow in pdfium
Integer overflow in PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption or DoS via a crafted PDF file.
Red Hat
chromium-browser: file download protection bypass
vendor_redhat·2016-12-01·CVSS 4.3
CVE-2016-5214 [MEDIUM] chromium-browser: file download protection bypass
chromium-browser: file download protection bypass
Google Chrome prior to 55.0.2883.75 for Windows mishandled downloaded files, which allowed a remote attacker to prevent the downloaded file from receiving the Mark of the Web via a crafted HTML page.
Red Hat
chromium-browser: private property access in v8
vendor_redhat·2016-12-01·CVSS 8.8
CVE-2016-9651 [HIGH] chromium-browser: private property access in v8
chromium-browser: private property access in v8
A missing check for whether a property of a JS object is private in V8 in Google Chrome prior to 55.0.2883.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
Red Hat
chromium-browser: csp referrer disclosure
vendor_redhat·2016-12-01·CVSS 4.3
CVE-2016-9650 [MEDIUM] chromium-browser: csp referrer disclosure
chromium-browser: csp referrer disclosure
Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handled iframes, which allowed a remote attacker to bypass a no-referrer policy via a crafted HTML page.
Red Hat
chromium-browser: integer overflow in angle
vendor_redhat·2016-12-01·CVSS 6.3
CVE-2016-5221 [MEDIUM] chromium-browser: integer overflow in angle
chromium-browser: integer overflow in angle
Type confusion in libGLESv2 in ANGLE in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android possibly allowed a remote attacker to bypass buffer validation via a crafted HTML page.
Red Hat
chromium-browser: address spoofing in omnibox
vendor_redhat·2016-12-01·CVSS 6.5
CVE-2016-5222 [MEDIUM] chromium-browser: address spoofing in omnibox
chromium-browser: address spoofing in omnibox
Incorrect handling of invalid URLs in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
Red Hat
chromium-browser: universal xss in blink
vendor_redhat·2016-12-01·CVSS 6.1
CVE-2016-5207 [MEDIUM] chromium-browser: universal xss in blink
chromium-browser: universal xss in blink
In Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android, corruption of the DOM tree could occur during the removal of a full screen element, which allowed a remote attacker to achieve arbitrary code execution via a crafted HTML page.
Red Hat
chromium-browser: same-origin bypass in svg
vendor_redhat·2016-12-01·CVSS 4.3
CVE-2016-5224 [MEDIUM] chromium-browser: same-origin bypass in svg
chromium-browser: same-origin bypass in svg
A timing attack on denormalized floating point arithmetic in SVG filters in Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to bypass the Same Origin Policy via a crafted HTML page.
Red Hat
chromium-browser: use after free in v8
vendor_redhat·2016-12-01·CVSS 8.8
CVE-2016-5213 [HIGH] chromium-browser: use after free in v8
chromium-browser: use after free in v8
A use after free in V8 in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Red Hat
chromium-browser: out of bounds write in blink
vendor_redhat·2016-12-01·CVSS 8.8
CVE-2016-5209 [HIGH] chromium-browser: out of bounds write in blink
chromium-browser: out of bounds write in blink
Bad casting in bitmap manipulation in Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Red Hat
chromium-browser: csp bypass in blink
vendor_redhat·2016-12-01·CVSS 4.3
CVE-2016-5225 [MEDIUM] chromium-browser: csp bypass in blink
chromium-browser: csp bypass in blink
Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handled form actions, which allowed a remote attacker to bypass Content Security Policy via a crafted HTML page.
Red Hat
chromium-browser: local file access in pdfium
vendor_redhat·2016-12-01·CVSS 6.5
CVE-2016-5220 [MEDIUM] chromium-browser: local file access in pdfium
chromium-browser: local file access in pdfium
PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handled navigation within PDFs, which allowed a remote attacker to read local files via a crafted PDF file.
Red Hat
chromium-browser: local file disclosure in devtools
vendor_redhat·2016-12-01·CVSS 6.5
CVE-2016-5212 [MEDIUM] chromium-browser: local file disclosure in devtools
chromium-browser: local file disclosure in devtools
Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android insufficiently sanitized DevTools URLs, which allowed a remote attacker to read local files via a crafted HTML page.
Red Hat
chromium-browser: use after free in pdfium
vendor_redhat·2016-12-01·CVSS 8.8
CVE-2016-5211 [HIGH] chromium-browser: use after free in pdfium
chromium-browser: use after free in pdfium
A use after free in PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
Red Hat
chromium-browser: limited xss in blink
vendor_redhat·2016-12-01·CVSS 6.1
CVE-2016-5226 [MEDIUM] chromium-browser: limited xss in blink
chromium-browser: limited xss in blink
Blink in Google Chrome prior to 55.0.2883.75 for Linux, Windows and Mac executed javascript: URLs entered in the URL bar in the context of the current tab, which allowed a socially engineered user to XSS themselves by dragging and dropping a javascript: URL into the URL bar.
Red Hat
chromium-browser: use of unvalidated data in pdfium
vendor_redhat·2016-12-01·CVSS 6.5
CVE-2016-5217 [MEDIUM] chromium-browser: use of unvalidated data in pdfium
chromium-browser: use of unvalidated data in pdfium
The extensions API in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly permitted access to privileged plugins, which allowed a remote attacker to bypass site isolation via a crafted HTML page.
Red Hat
chromium-browser: use after free in pdfium
vendor_redhat·2016-12-01·CVSS 6.3
CVE-2016-5216 [MEDIUM] chromium-browser: use after free in pdfium
chromium-browser: use after free in pdfium
A use after free in PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file.
Red Hat
chromium-browser: various fixes from internal audits
vendor_redhat·2016-12-01·CVSS 9.8
CVE-2016-9652 [CRITICAL] chromium-browser: various fixes from internal audits
chromium-browser: various fixes from internal audits
Multiple unspecified vulnerabilities in Google Chrome before 55.0.2883.75.
Red Hat
chromium-browser: use after free in v8
vendor_redhat·2016-12-01·CVSS 6.3
CVE-2016-5219 [MEDIUM] chromium-browser: use after free in v8
chromium-browser: use after free in v8
A heap use after free in V8 in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Red Hat
chromium-browser: use after free in pdfium
vendor_redhat·2016-12-01·CVSS 8.8
CVE-2016-5203 [HIGH] chromium-browser: use after free in pdfium
chromium-browser: use after free in pdfium
A use after free in PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
Red Hat
chromium-browser: out of bounds write in pdfium
vendor_redhat·2016-12-01·CVSS 8.8
CVE-2016-5210 [HIGH] chromium-browser: out of bounds write in pdfium
chromium-browser: out of bounds write in pdfium
Heap buffer overflow during TIFF image parsing in PDFium in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
Red Hat
chromium-browser: use after free in webaudio
vendor_redhat·2016-12-01·CVSS 6.3
CVE-2016-5215 [MEDIUM] chromium-browser: use after free in webaudio
chromium-browser: use after free in webaudio
A use after free in webaudio in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
Red Hat
chromium-browser: address spoofing in omnibox
vendor_redhat·2016-12-01·CVSS 6.5
CVE-2016-5218 [MEDIUM] chromium-browser: address spoofing in omnibox
chromium-browser: address spoofing in omnibox
The extensions API in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android incorrectly handled navigation within PDFs, which allowed a remote attacker to temporarily spoof the contents of the Omnibox (URL bar) via a crafted HTML page containing PDF data.
Red Hat
chromium-browser: heap corruption in ffmpeg
vendor_redhat·2016-11-09·CVSS 8.8
CVE-2016-5199 [HIGH] chromium-browser: heap corruption in ffmpeg
chromium-browser: heap corruption in ffmpeg
An off by one error resulting in an allocation of zero size in FFmpeg in Google Chrome prior to 54.0.2840.98 for Mac, and 54.0.2840.99 for Windows, and 54.0.2840.100 for Linux, and 55.0.2883.84 for Android allowed a remote attacker to potentially exploit heap corruption via a crafted video file.
Red Hat
chromium-browser: out of bounds memory access in v8
vendor_redhat·2016-11-09·CVSS 8.8
CVE-2016-5200 [HIGH] chromium-browser: out of bounds memory access in v8
chromium-browser: out of bounds memory access in v8
V8 in Google Chrome prior to 54.0.2840.98 for Mac, and 54.0.2840.99 for Windows, and 54.0.2840.100 for Linux, and 55.0.2883.84 for Android incorrectly applied type rules, which allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2016-07-02
Published